aboutsummaryrefslogtreecommitdiff
path: root/manifests
diff options
context:
space:
mode:
authorThore Bödecker <me@foxxx0.de>2019-09-11 16:01:32 +0200
committerThore Bödecker <me@foxxx0.de>2019-09-11 16:01:32 +0200
commit3d868fb81532d717fd625638781e4663a834260c (patch)
tree397bcfd1f98200da896b8d032cbd4b9bcb1a3749 /manifests
parent6d96e030be0db4a916dd6a9bd0b25570d359e634 (diff)
downloadpuppet-ferm-3d868fb81532d717fd625638781e4663a834260c.tar.gz
puppet-ferm-3d868fb81532d717fd625638781e4663a834260c.tar.bz2
allow using an array for $proto
This enables defining ferm::rule with multiple protocols at once, because using 'all' for $proto does not allow using $dport/$sport.
Diffstat (limited to 'manifests')
-rw-r--r--manifests/rule.pp6
1 files changed, 4 insertions, 2 deletions
diff --git a/manifests/rule.pp b/manifests/rule.pp
index 4f2c985..a973601 100644
--- a/manifests/rule.pp
+++ b/manifests/rule.pp
@@ -73,8 +73,10 @@ define ferm::rule (
Ferm::Chain <| chain == $action_temp and table == $table |> -> Ferm::Rule[$name]
}
-
- $proto_real = "proto ${proto}"
+ $proto_real = $proto ? {
+ Array => "proto (${join($proto, ' ')})",
+ String => "proto ${proto}",
+ }
$dport_real = $dport ? {
undef => '',