From 803a2309a8ccc8c6d77001b9b23c92e143cdd0e4 Mon Sep 17 00:00:00 2001 From: Joakim Olovsson <joakim.olovsson@liu.se> Date: Mon, 24 Jun 2019 15:51:43 +0200 Subject: [PATCH] Simple firewall rule --- manifests/init.pp | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/manifests/init.pp b/manifests/init.pp index df00965..338da6a 100644 --- a/manifests/init.pp +++ b/manifests/init.pp @@ -30,4 +30,13 @@ class aes { shell => '/bin/bash', sshkey => 'AAAAB3NzaC1yc2EAAAABIwAAAQEAwq552ev0T5YyWDUoEi2hY8hhm6iZHoSnfXNjCpW8eeigSd66FMdaXfWCmwLP/u3Cmino/x5SQQuo1f1RbbHuRQ3iztT/+LIJdqIjCf5rlTKhWx4Goo+weWpNlikHB6A8A1JWbY7yq/sMCiLjO4yYQ606BzwOGY+D0Wsq6lIoadL8USQJU2WKIjHOoAqPdV4HpCk3VxI/KanjyUivXKHq6eVH4yc0m97w9B/5M2UGET5nF2hx5SsoWkd4V3rALGsD3iUwfqxgOaZv62qwldEjFCsBamQfaQGNCJFYdJkmpNTlO46ywV4IC1wFbv7xqPIL33HFK5Q2TepsvdMK3ZRpWQ==', # lint:ignore:140chars } + + ::server_firewall::rules_file { '45-permit_squid.rules': + content => @(EOF), + service squid is { tcp/3128 udp/3128 } + policy chain INPUT is + accept service:squid from class:liu-nets + end policy + |-EOF + } } -- GitLab