Add iptables support
diff --git a/apache/meta/iptables.yml b/apache/meta/iptables.yml
new file mode 100644
index 0000000..54e817f
--- /dev/null
+++ b/apache/meta/iptables.yml
@@ -0,0 +1,14 @@
+{%- from "apache/map.jinja" import server, listen_ports with context -%}
+{%- for port in listen_ports.iterkeys() -%}
+
+iptables:
+  rules:
+    - destination_port: {{ port }}
+      protocol: tcp
+      jump: ACCEPT
+
+{%- endfor -%}
+
+{#-
+vim: syntax=jinja
+-#}
diff --git a/metadata/service/support.yml b/metadata/service/support.yml
index cb80bf3..b830c0e 100644
--- a/metadata/service/support.yml
+++ b/metadata/service/support.yml
@@ -9,3 +9,5 @@
         enabled: true
       sphinx:
         enabled: true
+      iptables:
+        enabled: true