diff options
author | mh <mh@immerda.ch> | 2011-11-05 14:50:26 +0100 |
---|---|---|
committer | mh <mh@immerda.ch> | 2011-11-05 14:50:26 +0100 |
commit | 052f749adb3b488388cba57f65f74852621ac1fa (patch) | |
tree | af9614fd4868e4c9f19fbfd8d5d72bd514f23680 /manifests/rules/ssh.pp | |
parent | 8f033c40a6ff210ce295db2bde025d739f8c3053 (diff) | |
download | puppet-shorewall-052f749adb3b488388cba57f65f74852621ac1fa.tar.gz puppet-shorewall-052f749adb3b488388cba57f65f74852621ac1fa.tar.bz2 |
allow ssh_in source to be selected by hiera, better naming for the same option for munin
Diffstat (limited to 'manifests/rules/ssh.pp')
-rw-r--r-- | manifests/rules/ssh.pp | 10 |
1 files changed, 6 insertions, 4 deletions
diff --git a/manifests/rules/ssh.pp b/manifests/rules/ssh.pp index 0eebcb4..3b7efa2 100644 --- a/manifests/rules/ssh.pp +++ b/manifests/rules/ssh.pp @@ -1,10 +1,12 @@ -class shorewall::rules::ssh($ports) { - $flatted_ports = join($ports,',') +class shorewall::rules::ssh( + $ports, + $source = hiera('shorewall_ssh_in_source','net') +) { shorewall::rule { 'net-me-tcp_ssh': - source => 'net', + source => $shorewall::rules::ssh::source, destination => '$FW', proto => 'tcp', - destinationport => $flatted_ports, + destinationport => join($shorewall::rules::ssh::ports,','), order => 240, action => 'ACCEPT'; } |