define firewal::virtual::web( $destination ) { shorewall::rule { "web-route-${name}-1": action => 'DNAT', source => 'vm', destination => "fw:${destination}:80", proto => 'tcp', destinationport => '80', originaldetst => $destination, ratelimit => '-', order => 600, } }