--- Nftables::Service[ssh-from-bastion].orig
+++ Nftables::Service[ssh-from-bastion]
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ ensure => present
+ desc =>
+ notrack => False
+ src_ips => ['172.16.1.220', '172.16.17.143', '172.16.18.237', '2a02:ec80:a000:1::156', '2a02:ec80:a000:1::442']
+ port => 22
Nftables::Service[ssh-from-cumin-masters]
- Parameters differences:
--- Nftables::Service[ssh-from-cumin-masters].orig
+++ Nftables::Service[ssh-from-cumin-masters]
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ ensure => present
+ src_sets => ['CUMIN_MASTERS']
+ desc =>
+ notrack => False
+ port => 22
- Nftables::Service[full-monitoring-metrics-access-tcp]
- Parameters differences:
--- Nftables::Service[full-monitoring-metrics-access-tcp].orig
+++ Nftables::Service[full-monitoring-metrics-access-tcp]
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ port_range => [1, 65535]
+ ensure => present
+ desc =>
+ notrack => False
+ src_ips => ['172.16.18.13', '2a02:ec80:a000:1::179']
- Nftables::Service[postgresql_puppetdb]
- Parameters differences:
--- Nftables::Service[postgresql_puppetdb].orig
+++ Nftables::Service[postgresql_puppetdb]
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ ensure => present
+ desc =>
+ notrack => False
+ src_ips => []
+ port => 5432
- Nftables::Service[full-monitoring-metrics-access-udp]
- Parameters differences:
--- Nftables::Service[full-monitoring-metrics-access-udp].orig
+++ Nftables::Service[full-monitoring-metrics-access-udp]
+ prio => 10
+ unrestricted_access => False
+ proto => udp
+ port_range => [1, 65535]
+ ensure => present
+ desc =>
+ notrack => False
+ src_ips => ['172.16.18.13', '2a02:ec80:a000:1::179']