summaryrefslogtreecommitdiff
path: root/manifests/init.pp
diff options
context:
space:
mode:
Diffstat (limited to 'manifests/init.pp')
-rw-r--r--manifests/init.pp16
1 files changed, 8 insertions, 8 deletions
diff --git a/manifests/init.pp b/manifests/init.pp
index c812955..c760895 100644
--- a/manifests/init.pp
+++ b/manifests/init.pp
@@ -1,12 +1,12 @@
# Firewall definitions for physical servers
class firewall(
- $device = hiera('firewall::device', 'eth0'),
- $zone = hiera('firewall::zone', '-'),
- $local_net = hiera('firewall::local_net', false),
- $device_options = hiera('firewall::device_options', 'tcpflags,blacklist,routefilter,nosmurfs,logmartians'),
- $vm_address = hiera('firewall::vm_address', '192.168.0.0/24'),
- $vm_device = hiera('firewall::vm_device', false),
- $ssh = hiera('firewall::ssh', 'ACCEPT'),
+ $device = lookup('firewall::device', undef, undef, 'eth0'),
+ $zone = lookup('firewall::zone', undef, undef, '-'),
+ $local_net = lookup('firewall::local_net', undef, undef, false),
+ $device_options = lookup('firewall::device_options', undef, undef, 'tcpflags,blacklist,routefilter,nosmurfs,logmartians'),
+ $vm_address = lookup('firewall::vm_address', undef, undef, '192.168.0.0/24'),
+ $vm_device = lookup('firewall::vm_device', undef, undef, false),
+ $ssh = lookup('firewall::ssh', undef, undef, 'ACCEPT'),
) {
class { 'shorewall': }
@@ -175,7 +175,7 @@ class firewall(
destination => '$FW',
proto => '-',
destinationport => '-',
- ratelimit => hiera("firewall::ssl_ratelimit", '-'),
+ ratelimit => lookup("firewall::ssl_ratelimit", undef, undef, '-'),
order => 103,
}