aboutsummaryrefslogtreecommitdiff
path: root/manifests/vserver.pp
diff options
context:
space:
mode:
authorSilvio Rhatto <rhatto@riseup.net>2011-08-11 14:37:32 -0300
committerSilvio Rhatto <rhatto@riseup.net>2011-08-11 14:37:32 -0300
commit7f7d3cab9c4b4fc1bdc3827e8ea4c680c73da48d (patch)
tree36d470b1d000b89295c595f8f27d5cc89df46a59 /manifests/vserver.pp
parentfb4b9946ac9adeda2da07d80e65b56a0cf897339 (diff)
downloadpuppet-nodo-7f7d3cab9c4b4fc1bdc3827e8ea4c680c73da48d.tar.gz
puppet-nodo-7f7d3cab9c4b4fc1bdc3827e8ea4c680c73da48d.tar.bz2
Spliting firewall classes along files and separating rules for vservers and routers
Diffstat (limited to 'manifests/vserver.pp')
-rw-r--r--manifests/vserver.pp16
1 files changed, 8 insertions, 8 deletions
diff --git a/manifests/vserver.pp b/manifests/vserver.pp
index 29eef59..79b39bd 100644
--- a/manifests/vserver.pp
+++ b/manifests/vserver.pp
@@ -110,13 +110,13 @@ class nodo::vserver inherits nodo {
# Apply firewall rules just for running vservers
case $ensure {
'running': {
- firewall::router::ssh { "$name":
+ firewall::vserver::ssh { "$name":
destination => "192.168.0.$context",
port_orig => "22$id",
port_dest => "22",
}
- firewall::router::munin { "$name":
+ firewall::vserver::munin { "$name":
destination => "192.168.0.$context",
port_orig => "49$id",
port_dest => "49$id",
@@ -124,14 +124,14 @@ class nodo::vserver inherits nodo {
if $proxy {
class {
- "firewall::router::http": destination => "192.168.0.$context";
- "firewall::router::https": destination => "192.168.0.$context";
+ "firewall::vserver::http": destination => "192.168.0.$context";
+ "firewall::vserver::https": destination => "192.168.0.$context";
}
}
if $puppetmaster {
class {
- "firewall::router::puppetmaster":
+ "firewall::vserver::puppetmaster":
destination => "192.168.0.$context",
puppetmaster_port => $puppetmaster_port,
puppetmaster_nonssl_port => $puppetmaster_nonssl_port,
@@ -140,19 +140,19 @@ class nodo::vserver inherits nodo {
if $gitd {
class {
- "firewall::router::gitd": destination => "192.168.0.$context";
+ "firewall::vserver::gitd": destination => "192.168.0.$context";
}
}
if $icecast {
class {
- "firewall::router::icecast": destination => "192.168.0.$context";
+ "firewall::vserver::icecast": destination => "192.168.0.$context";
}
}
if $mail {
class {
- "firewall::router::mail": destination => "192.168.0.$context";
+ "firewall::vserver::mail": destination => "192.168.0.$context";
}
}
}