]> review.fuel-infra Code Review - puppet-modules/puppetlabs-firewall.git/commitdiff
include Puppet::Util::Firewall to fix icmp values
authorJonathan Boyett <jonathan@failingservers.com>
Wed, 11 May 2011 16:37:11 +0000 (09:37 -0700)
committerJonathan Boyett <jonathan@failingservers.com>
Wed, 11 May 2011 16:37:11 +0000 (09:37 -0700)
examples/iptables/test.pp
lib/puppet/type/firewall.rb

index 6a8e086abc72a3bc9c3c49251dd5fb243d0c003b..4f1e3906e23038b5ec6a2c0d61553ac5512cab3c 100644 (file)
@@ -3,6 +3,7 @@ firewall { '000 allow foo':
   jump => "ACCEPT",
   proto => "tcp",
 }
+
 firewall { '001 allow boo':
   jump => "ACCEPT",
   iniface => "eth0",
@@ -12,25 +13,24 @@ firewall { '001 allow boo':
   destination => "1.1.1.0/24",
   source => "2.2.2.0/24",
 }
+
 firewall { '999 bar':
   dport => "1233",
   proto => "tcp",
   jump => "DROP",
 }
+
 firewall { '002 foo':
   dport => "1233",
   proto => "tcp",
   jump => "DROP",
 }
+
 firewall { "010 icmp":
   proto => "icmp",
-#  icmp => "any",
+  icmp => "echo-reply",
   jump => "ACCEPT",
 }
-#firewall { "050 horrowshow":
-#  
-#}
-
 
 resources { 'firewall':
   purge => true
index 7f364948651eeec1102e0da64fe09324ea3355d3..0bb349e37825247d8d2ba47a080d1ceda362b1e1 100644 (file)
@@ -20,6 +20,8 @@
 require 'puppet/util/firewall'
 
 Puppet::Type.newtype(:firewall) do
+  include Puppet::Util::Firewall
+
   @doc = "Manipulate firewall rules"
 
   ensurable do