aboutsummaryrefslogtreecommitdiff
path: root/manifests/rules/ntp
diff options
context:
space:
mode:
authorMarcel Haerry <haerry@puzzle.ch>2009-09-16 19:13:15 +0200
committerMicah Anderson <micah@riseup.net>2009-12-07 11:33:38 -0500
commit6e2a713fb4ffb060e614c3de9c7c33f403214d7f (patch)
treed09e8cccd3c25396dcc11a93affd8f2bcb963c9f /manifests/rules/ntp
parent69ffd72ce9e5217ae7d205e04716c40d8c862315 (diff)
downloadpuppet-shorewall-6e2a713fb4ffb060e614c3de9c7c33f403214d7f.tar.gz
puppet-shorewall-6e2a713fb4ffb060e614c3de9c7c33f403214d7f.tar.bz2
add a lot of default rules
Diffstat (limited to 'manifests/rules/ntp')
-rw-r--r--manifests/rules/ntp/client.pp11
-rw-r--r--manifests/rules/ntp/server.pp10
2 files changed, 21 insertions, 0 deletions
diff --git a/manifests/rules/ntp/client.pp b/manifests/rules/ntp/client.pp
new file mode 100644
index 0000000..e0db8d4
--- /dev/null
+++ b/manifests/rules/ntp/client.pp
@@ -0,0 +1,11 @@
+class shorewall::rules::ntp::client {
+ # open ntp udp port to fetch time
+ shorewall::rule {'me-net-udp_ntp':
+ source => '$FW',
+ destination => 'net',
+ proto => 'udp',
+ destinationport => '123',
+ order => 251,
+ action => 'ACCEPT';
+ }
+}
diff --git a/manifests/rules/ntp/server.pp b/manifests/rules/ntp/server.pp
new file mode 100644
index 0000000..ed0968d
--- /dev/null
+++ b/manifests/rules/ntp/server.pp
@@ -0,0 +1,10 @@
+class shorewall::rules::ntp::server {
+ shorewall::rule {'net-me-udp_ntp':
+ source => 'net',
+ destination => '$FW',
+ proto => 'udp',
+ destinationport => '123',
+ order => 241,
+ action => 'ACCEPT';
+ }
+}