aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--manifests/rule.pp4
-rw-r--r--spec/defines/rule_spec.rb2
2 files changed, 3 insertions, 3 deletions
diff --git a/manifests/rule.pp b/manifests/rule.pp
index 458bef6..e44d04a 100644
--- a/manifests/rule.pp
+++ b/manifests/rule.pp
@@ -98,7 +98,7 @@ define ferm::rule (
# ferm supports implicit multiport using the "dports" shortcut
if $dport =~ Array {
$dports = join($dport, ' ')
- $dport_real = "dports (${dports})"
+ $dport_real = "mod multiport destination-ports (${dports})"
} elsif $dport =~ Integer {
$dport_real = "dport ${dport}"
} else {
@@ -108,7 +108,7 @@ define ferm::rule (
# ferm supports implicit multiport using the "sports" shortcut
if $sport =~ Array {
$sports = join($sport, ' ')
- $sport_real = "sports (${sports})"
+ $sport_real = "mod multiport source-ports (${sports})"
} elsif $sport =~ Integer {
$sport_real = "sport ${sport}"
} else {
diff --git a/spec/defines/rule_spec.rb b/spec/defines/rule_spec.rb
index f1887b6..b2a2abd 100644
--- a/spec/defines/rule_spec.rb
+++ b/spec/defines/rule_spec.rb
@@ -127,7 +127,7 @@ describe 'ferm::rule', type: :define do
end
it { is_expected.to compile.with_all_deps }
- it { is_expected.to contain_concat__fragment('INPUT-filter-consul').with_content("mod comment comment 'filter-consul' proto (tcp udp) dports (8301 8302) saddr @ipfilter((127.0.0.1)) ACCEPT;\n") }
+ it { is_expected.to contain_concat__fragment('INPUT-filter-consul').with_content("mod comment comment 'filter-consul' proto (tcp udp) mod multiport destination-ports (8301 8302) saddr @ipfilter((127.0.0.1)) ACCEPT;\n") }
it { is_expected.to contain_concat__fragment('filter-INPUT-config-include') }
it { is_expected.to contain_concat__fragment('filter-FORWARD-config-include') }
it { is_expected.to contain_concat__fragment('filter-OUTPUT-config-include') }