diff options
Diffstat (limited to 'manifests/subsystems/firewall/vserver.pp')
-rw-r--r-- | manifests/subsystems/firewall/vserver.pp | 82 |
1 files changed, 41 insertions, 41 deletions
diff --git a/manifests/subsystems/firewall/vserver.pp b/manifests/subsystems/firewall/vserver.pp index 4415952..a83b608 100644 --- a/manifests/subsystems/firewall/vserver.pp +++ b/manifests/subsystems/firewall/vserver.pp @@ -6,7 +6,7 @@ class firewall::vserver::http($destination, $zone = 'vm') { proto => 'tcp', destinationport => '80', ratelimit => '-', - order => '600', + order => 600, } shorewall::rule { 'http-route-2': @@ -17,7 +17,7 @@ class firewall::vserver::http($destination, $zone = 'vm') { destinationport => '80', originaldest => "$ipaddress", ratelimit => '-', - order => '601', + order => 601, } } @@ -29,7 +29,7 @@ class firewall::vserver::https($destination, $zone = 'vm') { proto => 'tcp', destinationport => '443', ratelimit => "$firewall_ssl_ratelimit", - order => '602', + order => 602, } shorewall::rule { 'https-route-2': @@ -40,7 +40,7 @@ class firewall::vserver::https($destination, $zone = 'vm') { destinationport => '443', originaldest => "$ipaddress", ratelimit => "$firewall_ssl_ratelimit", - order => '602', + order => 602, } } @@ -52,7 +52,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', proto => 'tcp', destinationport => "$puppetmaster_port", ratelimit => "$firewall_ssl_ratelimit", - order => '700', + order => 700, } shorewall::rule { 'puppetmaster-2': @@ -62,7 +62,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', proto => 'udp', destinationport => "$puppetmaster_port", ratelimit => "$firewall_ssl_ratelimit", - order => '701', + order => 701, } shorewall::rule { 'puppetmaster-3': @@ -73,7 +73,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', destinationport => "$puppetmaster_port", originaldest => "$ipaddress", ratelimit => "$firewall_ssl_ratelimit", - order => '702', + order => 702, } shorewall::rule { 'puppetmaster-4': @@ -84,7 +84,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', destinationport => "$puppetmaster_port", originaldest => "$ipaddress", ratelimit => "$firewall_ssl_ratelimit", - order => '703', + order => 703, } shorewall::rule { 'puppetmaster-5': @@ -94,7 +94,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', proto => 'tcp', destinationport => "$puppetmaster_nonssl_port", ratelimit => '-', - order => '704', + order => 704, } shorewall::rule { 'puppetmaster-6': @@ -104,7 +104,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', proto => 'udp', destinationport => "$puppetmaster_nonssl_port", ratelimit => '-', - order => '705', + order => 705, } shorewall::rule { 'puppetmaster-7': @@ -115,7 +115,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', destinationport => "$puppetmaster_nonssl_port", originaldest => "$ipaddress", ratelimit => '-', - order => '706', + order => 706, } shorewall::rule { 'puppetmaster-8': @@ -126,7 +126,7 @@ class firewall::vserver::puppetmaster($destination, $puppetmaster_port = '8140', destinationport => "$puppetmaster_nonssl_port", originaldest => "$ipaddress", ratelimit => '-', - order => '707', + order => 707, } } @@ -138,7 +138,7 @@ class firewall::vserver::gitd($destination, $zone = 'fw') { proto => 'tcp', destinationport => '9418', ratelimit => '-', - order => '800', + order => 800, } shorewall::rule { 'git-daemon-2': @@ -149,7 +149,7 @@ class firewall::vserver::gitd($destination, $zone = 'fw') { destinationport => '9418', originaldest => "$ipaddress", ratelimit => '-', - order => '801', + order => 801, } } @@ -161,7 +161,7 @@ class firewall::vserver::icecast($destination, $zone = 'fw') { proto => 'tcp', destinationport => '8000', ratelimit => '-', - order => '900', + order => 900, } shorewall::rule { 'icecast-2': @@ -172,7 +172,7 @@ class firewall::vserver::icecast($destination, $zone = 'fw') { destinationport => '8000', originaldest => "$ipaddress", ratelimit => '-', - order => '901', + order => 901, } } @@ -184,7 +184,7 @@ class firewall::vserver::mail($destination, $zone = 'fw') { proto => 'tcp', destinationport => '25', ratelimit => '-', - order => '1000', + order => 1000, } shorewall::rule { 'mail-2': @@ -195,7 +195,7 @@ class firewall::vserver::mail($destination, $zone = 'fw') { destinationport => '25', originaldest => "$ipaddress", ratelimit => '-', - order => '1001', + order => 1001, } shorewall::rule { 'mail-3': @@ -205,7 +205,7 @@ class firewall::vserver::mail($destination, $zone = 'fw') { proto => 'tcp', destinationport => '993', ratelimit => "$firewall_ssl_ratelimit", - order => '1002', + order => 1002, } shorewall::rule { 'mail-4': @@ -216,7 +216,7 @@ class firewall::vserver::mail($destination, $zone = 'fw') { destinationport => '993', originaldest => "$ipaddress", ratelimit => "$firewall_ssl_ratelimit", - order => '1003', + order => 1003, } shorewall::rule { 'mail-5': @@ -226,7 +226,7 @@ class firewall::vserver::mail($destination, $zone = 'fw') { proto => 'tcp', destinationport => '587', ratelimit => "$firewall_ssl_ratelimit", - order => '1004', + order => 1004, } shorewall::rule { 'mail-6': @@ -237,7 +237,7 @@ class firewall::vserver::mail($destination, $zone = 'fw') { destinationport => '587', originaldest => "$ipaddress", ratelimit => "$firewall_ssl_ratelimit", - order => '1005', + order => 1005, } } @@ -307,7 +307,7 @@ class firewall::vserver::dns($destination, $zone = 'vm') { proto => '-', destinationport => '-', ratelimit => '-', - order => '2000', + order => 2000, } shorewall::rule { 'dns-route-1': @@ -317,7 +317,7 @@ class firewall::vserver::dns($destination, $zone = 'vm') { proto => 'tcp', destinationport => '53', ratelimit => '-', - order => '2001', + order => 2001, } shorewall::rule { 'dns-route-2': @@ -328,7 +328,7 @@ class firewall::vserver::dns($destination, $zone = 'vm') { destinationport => '53', originaldest => "$ipaddress", ratelimit => '-', - order => '2002', + order => 2002, } shorewall::rule { 'dns-route-3': @@ -338,7 +338,7 @@ class firewall::vserver::dns($destination, $zone = 'vm') { proto => 'udp', destinationport => '53', ratelimit => '-', - order => '2003', + order => 2003, } shorewall::rule { 'dns-route-4': @@ -349,7 +349,7 @@ class firewall::vserver::dns($destination, $zone = 'vm') { destinationport => '53', originaldest => "$ipaddress", ratelimit => '-', - order => '2004', + order => 2004, } } @@ -361,7 +361,7 @@ class firewall::vserver::tor($destination, $zone = 'fw') { proto => 'tcp', destinationport => '9001', ratelimit => '-', - order => '2100', + order => 2100, } shorewall::rule { 'tor-1': @@ -372,7 +372,7 @@ class firewall::vserver::tor($destination, $zone = 'fw') { destinationport => '9001', originaldest => "$ipaddress", ratelimit => '-', - order => '2101', + order => 2101, } shorewall::rule { 'tor-2': @@ -382,7 +382,7 @@ class firewall::vserver::tor($destination, $zone = 'fw') { proto => 'tcp', destinationport => '9030', ratelimit => '-', - order => '2102', + order => 2102, } shorewall::rule { 'tor-3': @@ -393,7 +393,7 @@ class firewall::vserver::tor($destination, $zone = 'fw') { destinationport => '9030', originaldest => "$ipaddress", ratelimit => '-', - order => '2103', + order => 2103, } } @@ -405,7 +405,7 @@ class firewall::vserver::jabber($destination, $zone = 'fw') { proto => 'tcp', destinationport => '5222', ratelimit => '-', - order => '2200', + order => 2200, } shorewall::rule { 'jabber-1': @@ -416,7 +416,7 @@ class firewall::vserver::jabber($destination, $zone = 'fw') { destinationport => '5223', originaldest => "$ipaddress", ratelimit => '-', - order => '2201', + order => 2201, } shorewall::rule { 'jabber-2': @@ -426,7 +426,7 @@ class firewall::vserver::jabber($destination, $zone = 'fw') { proto => 'tcp', destinationport => '5269', ratelimit => '-', - order => '2202', + order => 2202, } shorewall::rule { 'jabber-3': @@ -437,7 +437,7 @@ class firewall::vserver::jabber($destination, $zone = 'fw') { destinationport => '4369', originaldest => "$ipaddress", ratelimit => '-', - order => '2203', + order => 2203, } shorewall::rule { 'jabber-4': @@ -448,7 +448,7 @@ class firewall::vserver::jabber($destination, $zone = 'fw') { destinationport => '4370:4375', originaldest => "$ipaddress", ratelimit => '-', - order => '2204', + order => 2204, } } @@ -460,7 +460,7 @@ class firewall::vserver::mumble($destination, $zone = 'fw') { proto => 'tcp', destinationport => '64738', ratelimit => '-', - order => '2300', + order => 2300, } shorewall::rule { 'mumble-1': @@ -471,7 +471,7 @@ class firewall::vserver::mumble($destination, $zone = 'fw') { destinationport => '64738', originaldest => "$ipaddress", ratelimit => '-', - order => '2301', + order => 2301, } } @@ -483,7 +483,7 @@ class firewall::vserver::gobby($destination, $zone = 'fw') { proto => 'tcp', destinationport => '6523', ratelimit => '-', - order => '2400', + order => 2400, } } @@ -495,7 +495,7 @@ class firewall::vserver::yacy($destination, $zone = 'fw') { proto => 'tcp', destinationport => '8090', ratelimit => '-', - order => '2500', + order => 2500, } } @@ -507,6 +507,6 @@ class firewall::vserver::rsync($destination, $zone = 'fw') { proto => 'tcp', destinationport => '873', ratelimit => '-', - order => '2600', + order => 2600, } } |