- name: To prevent docker iptables Forward chain
lineinfile:
dest: /usr/lib/systemd/system/docker.service
insertbefore: "TimeoutSec=0(.*)"
line: "ExecStartPost=/usr/sbin/iptables -P FORWARD ACCEPT"
1、# 默认允许FORWARD
iptables -P FORWARD ACCEPT
2、#
systemd的service超时时间设定
TimeoutSec=0 单位是秒,默认是0不限制