diff options
author | Marcel Haerry <haerry@puzzle.ch> | 2009-09-16 19:13:15 +0200 |
---|---|---|
committer | Micah Anderson <micah@riseup.net> | 2009-12-07 11:33:38 -0500 |
commit | 6e2a713fb4ffb060e614c3de9c7c33f403214d7f (patch) | |
tree | d09e8cccd3c25396dcc11a93affd8f2bcb963c9f /manifests/rules/ntp | |
parent | 69ffd72ce9e5217ae7d205e04716c40d8c862315 (diff) | |
download | puppet-shorewall-6e2a713fb4ffb060e614c3de9c7c33f403214d7f.tar.gz puppet-shorewall-6e2a713fb4ffb060e614c3de9c7c33f403214d7f.tar.bz2 |
add a lot of default rules
Diffstat (limited to 'manifests/rules/ntp')
-rw-r--r-- | manifests/rules/ntp/client.pp | 11 | ||||
-rw-r--r-- | manifests/rules/ntp/server.pp | 10 |
2 files changed, 21 insertions, 0 deletions
diff --git a/manifests/rules/ntp/client.pp b/manifests/rules/ntp/client.pp new file mode 100644 index 0000000..e0db8d4 --- /dev/null +++ b/manifests/rules/ntp/client.pp @@ -0,0 +1,11 @@ +class shorewall::rules::ntp::client { + # open ntp udp port to fetch time + shorewall::rule {'me-net-udp_ntp': + source => '$FW', + destination => 'net', + proto => 'udp', + destinationport => '123', + order => 251, + action => 'ACCEPT'; + } +} diff --git a/manifests/rules/ntp/server.pp b/manifests/rules/ntp/server.pp new file mode 100644 index 0000000..ed0968d --- /dev/null +++ b/manifests/rules/ntp/server.pp @@ -0,0 +1,10 @@ +class shorewall::rules::ntp::server { + shorewall::rule {'net-me-udp_ntp': + source => 'net', + destination => '$FW', + proto => 'udp', + destinationport => '123', + order => 241, + action => 'ACCEPT'; + } +} |