From 803a2309a8ccc8c6d77001b9b23c92e143cdd0e4 Mon Sep 17 00:00:00 2001
From: Joakim Olovsson <joakim.olovsson@liu.se>
Date: Mon, 24 Jun 2019 15:51:43 +0200
Subject: [PATCH] Simple firewall rule

---
 manifests/init.pp | 9 +++++++++
 1 file changed, 9 insertions(+)

diff --git a/manifests/init.pp b/manifests/init.pp
index df00965..338da6a 100644
--- a/manifests/init.pp
+++ b/manifests/init.pp
@@ -30,4 +30,13 @@ class aes {
     shell      => '/bin/bash',
     sshkey     => 'AAAAB3NzaC1yc2EAAAABIwAAAQEAwq552ev0T5YyWDUoEi2hY8hhm6iZHoSnfXNjCpW8eeigSd66FMdaXfWCmwLP/u3Cmino/x5SQQuo1f1RbbHuRQ3iztT/+LIJdqIjCf5rlTKhWx4Goo+weWpNlikHB6A8A1JWbY7yq/sMCiLjO4yYQ606BzwOGY+D0Wsq6lIoadL8USQJU2WKIjHOoAqPdV4HpCk3VxI/KanjyUivXKHq6eVH4yc0m97w9B/5M2UGET5nF2hx5SsoWkd4V3rALGsD3iUwfqxgOaZv62qwldEjFCsBamQfaQGNCJFYdJkmpNTlO46ywV4IC1wFbv7xqPIL33HFK5Q2TepsvdMK3ZRpWQ==', # lint:ignore:140chars
   }
+
+  ::server_firewall::rules_file { '45-permit_squid.rules':
+    content => @(EOF),
+    service squid is { tcp/3128 udp/3128 }
+    policy chain INPUT is
+      accept service:squid from class:liu-nets
+    end policy
+    |-EOF
+  }
 }
-- 
GitLab