aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorTim Meusel <tim@bastelfreak.de>2020-04-21 14:08:29 +0200
committerTim Meusel <tim@bastelfreak.de>2020-04-21 14:08:29 +0200
commit699c4a726d85ba5af123379a04f6f3ee6c9af990 (patch)
tree840fa4d248bc2c9fa9c2debb3adeaa393b2dbee2
parente36464557e1ad51d26da0450ab2604693fffb1f2 (diff)
downloadpuppet-ferm-699c4a726d85ba5af123379a04f6f3ee6c9af990.tar.gz
puppet-ferm-699c4a726d85ba5af123379a04f6f3ee6c9af990.tar.bz2
by default dont log dropped packets
-rw-r--r--REFERENCE.md2
-rw-r--r--manifests/chain.pp2
2 files changed, 3 insertions, 1 deletions
diff --git a/REFERENCE.md b/REFERENCE.md
index ec71f8f..2d0a4e3 100644
--- a/REFERENCE.md
+++ b/REFERENCE.md
@@ -269,6 +269,8 @@ Data type: `Boolean`
Enable/Disable logging of packets to the kernel log, if no explicit chain matched
+Default value: `false`
+
##### `policy`
Data type: `Optional[Ferm::Policies]`
diff --git a/manifests/chain.pp b/manifests/chain.pp
index 54eb455..ed58126 100644
--- a/manifests/chain.pp
+++ b/manifests/chain.pp
@@ -19,7 +19,7 @@
# @param ip_versions Set list of versions of ip we want ot use.
#
define ferm::chain (
- Boolean $log_dropped_packets,
+ Boolean $log_dropped_packets = false,
Boolean $drop_invalid_packets_with_conntrack = false,
Boolean $disable_conntrack = true,
String[1] $chain = $name,