--- Ferm::Service[exim].orig
+++ Ferm::Service[exim]
@@
- port => 3306
+ port => 3306
@@
- srange => @resolve((mx1001.wikimedia.org mx2001.wikimedia.org wiki-mail-eqiad.wikimedia.org wiki-mail-codfw.wikimedia.org mx-in1001.wikimedia.org mx-in2001.wikimedia.org))
+ srange => ['mx1001.wikimedia.org', 'mx2001.wikimedia.org', 'wiki-mail-eqiad.wikimedia.org', 'wiki-mail-codfw.wikimedia.org', 'mx-in1001.wikimedia.org', 'mx-in2001.wikimedia.org']
Ferm::Service[netmon_librenms]
- Parameters differences:
--- Ferm::Service[netmon_librenms].orig
+++ Ferm::Service[netmon_librenms]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['netmon1003.wikimedia.org', 'netmon2002.wikimedia.org']
- Firewall::Service[idp_staging]
- Parameters differences:
--- Firewall::Service[idp_staging].orig
+++ Firewall::Service[idp_staging]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['idp-test1005.wikimedia.org', 'idp-test2005.wikimedia.org']
- File[/etc/ferm/conf.d/10_exim]
- Content differences:
--- /etc/ferm/conf.d/10_exim.orig
+++ /etc/ferm/conf.d/10_exim
@@ -1,7 +1,7 @@
# Autogenerated by puppet. DO NOT EDIT BY HAND!
#
#
-&R_SERVICE(tcp, 3306, @resolve((mx1001.wikimedia.org mx2001.wikimedia.org wiki-mail-eqiad.wikimedia.org wiki-mail-codfw.wikimedia.org mx-in1001.wikimedia.org mx-in2001.wikimedia.org)));
+&R_SERVICE(tcp, 3306, (208.80.153.46 208.80.153.75 208.80.154.91 208.80.155.102 2620:0:860:2:208:80:153:46 2620:0:860:3:208:80:153:75 2620:0:861:3:208:80:154:91 2620:0:861:4:208:80:155:102));
- Ferm::Service[idp]
- Parameters differences:
--- Ferm::Service[idp].orig
+++ Ferm::Service[idp]
@@
- port => 3306
+ port => 3306
@@
- srange => @resolve((idp1005.wikimedia.org idp2005.wikimedia.org))
+ srange => ['idp1005.wikimedia.org', 'idp2005.wikimedia.org']
- Ferm::Service[idp_staging]
- Parameters differences:
--- Ferm::Service[idp_staging].orig
+++ Ferm::Service[idp_staging]
@@
- port => 3306
+ port => 3306
@@
- srange => @resolve((idp-test1005.wikimedia.org idp-test2005.wikimedia.org))
+ srange => ['idp-test1005.wikimedia.org', 'idp-test2005.wikimedia.org']
- File[/etc/ferm/conf.d/10_netbox_librenms_reports]
- Parameters differences:
--- File[/etc/ferm/conf.d/10_netbox_librenms_reports].orig
+++ File[/etc/ferm/conf.d/10_netbox_librenms_reports]
+ require => File[/etc/ferm/conf.d]
+ tag => ferm
+ notify => Service[ferm]
+ group => root
+ mode => 0400
+ owner => root
+ ensure => present
- Content differences:
--- /etc/ferm/conf.d/10_netbox_librenms_reports.orig
+++ /etc/ferm/conf.d/10_netbox_librenms_reports
@@ -0,0 +1,8 @@
+# Autogenerated by puppet. DO NOT EDIT BY HAND!
+#
+#
+&R_SERVICE(tcp, 3306, (10.192.0.54 10.64.0.103 2620:0:860:101:10:192:0:54 2620:0:861:101:10:64:0:103));
+
+
+
+&NO_TRACK(tcp, 3306);
- Ferm::Service[netmon-librenms]
- Parameters differences:
--- Ferm::Service[netmon-librenms].orig
+++ Ferm::Service[netmon-librenms]
- prio => 10
- unrestricted_access => False
- notrack => True
- port => 3306
- ensure => present
- desc =>
- proto => tcp
- srange => @resolve((netmon1003.wikimedia.org netmon2002.wikimedia.org))
- File[/etc/ferm/conf.d/10_netmon_librenms]
- Parameters differences:
--- File[/etc/ferm/conf.d/10_netmon_librenms].orig
+++ File[/etc/ferm/conf.d/10_netmon_librenms]
+ require => File[/etc/ferm/conf.d]
+ tag => ferm
+ notify => Service[ferm]
+ group => root
+ mode => 0400
+ owner => root
+ ensure => present
- Content differences:
--- /etc/ferm/conf.d/10_netmon_librenms.orig
+++ /etc/ferm/conf.d/10_netmon_librenms
@@ -0,0 +1,8 @@
+# Autogenerated by puppet. DO NOT EDIT BY HAND!
+#
+#
+&R_SERVICE(tcp, 3306, (208.80.153.9 208.80.154.141 2620:0:860:1:208:80:153:9 2620:0:861:2:208:80:154:141));
+
+
+
+&NO_TRACK(tcp, 3306);
- Ferm::Service[netbox-librenms-reports]
- Parameters differences:
--- Ferm::Service[netbox-librenms-reports].orig
+++ Ferm::Service[netbox-librenms-reports]
- prio => 10
- unrestricted_access => False
- notrack => True
- port => 3306
- ensure => present
- desc =>
- proto => tcp
- srange => @resolve((netbox1003.eqiad.wmnet netbox2003.codfw.wmnet))
- Firewall::Service[idp]
- Parameters differences:
--- Firewall::Service[idp].orig
+++ Firewall::Service[idp]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['idp1005.wikimedia.org', 'idp2005.wikimedia.org']
- File[/etc/ferm/conf.d/10_idp_staging]
- Content differences:
--- /etc/ferm/conf.d/10_idp_staging.orig
+++ /etc/ferm/conf.d/10_idp_staging
@@ -1,7 +1,7 @@
# Autogenerated by puppet. DO NOT EDIT BY HAND!
#
#
-&R_SERVICE(tcp, 3306, @resolve((idp-test1005.wikimedia.org idp-test2005.wikimedia.org)));
+&R_SERVICE(tcp, 3306, (208.80.153.76 208.80.154.8 2620:0:860:3:208:80:153:76 2620:0:861:1:208:80:154:8));
- File[/etc/ferm/conf.d/10_netmon-librenms]
- Parameters differences:
--- File[/etc/ferm/conf.d/10_netmon-librenms].orig
+++ File[/etc/ferm/conf.d/10_netmon-librenms]
- require => File[/etc/ferm/conf.d]
- tag => ferm
- notify => Service[ferm]
- group => root
- mode => 0400
- owner => root
- ensure => present
- Content differences:
--- /etc/ferm/conf.d/10_netmon-librenms.orig
+++ /etc/ferm/conf.d/10_netmon-librenms
@@ -1,8 +0,0 @@
-# Autogenerated by puppet. DO NOT EDIT BY HAND!
-#
-#
-&R_SERVICE(tcp, 3306, @resolve((netmon1003.wikimedia.org netmon2002.wikimedia.org)));
-
-
-
-&NO_TRACK(tcp, 3306);
- File[/etc/ferm/conf.d/10_netbox-librenms-reports]
- Parameters differences:
--- File[/etc/ferm/conf.d/10_netbox-librenms-reports].orig
+++ File[/etc/ferm/conf.d/10_netbox-librenms-reports]
- require => File[/etc/ferm/conf.d]
- tag => ferm
- notify => Service[ferm]
- group => root
- mode => 0400
- owner => root
- ensure => present
- Content differences:
--- /etc/ferm/conf.d/10_netbox-librenms-reports.orig
+++ /etc/ferm/conf.d/10_netbox-librenms-reports
@@ -1,8 +0,0 @@
-# Autogenerated by puppet. DO NOT EDIT BY HAND!
-#
-#
-&R_SERVICE(tcp, 3306, @resolve((netbox1003.eqiad.wmnet netbox2003.codfw.wmnet)));
-
-
-
-&NO_TRACK(tcp, 3306);
- Firewall::Service[netbox-librenms-reports]
- Parameters differences:
--- Firewall::Service[netbox-librenms-reports].orig
+++ Firewall::Service[netbox-librenms-reports]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['netbox1003.eqiad.wmnet', 'netbox2003.codfw.wmnet']
- Ferm::Service[netbox_librenms_reports]
- Parameters differences:
--- Ferm::Service[netbox_librenms_reports].orig
+++ Ferm::Service[netbox_librenms_reports]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['netbox1003.eqiad.wmnet', 'netbox2003.codfw.wmnet']
- Firewall::Service[exim]
- Parameters differences:
--- Firewall::Service[exim].orig
+++ Firewall::Service[exim]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['mx1001.wikimedia.org', 'mx2001.wikimedia.org', 'wiki-mail-eqiad.wikimedia.org', 'wiki-mail-codfw.wikimedia.org', 'mx-in1001.wikimedia.org', 'mx-in2001.wikimedia.org']
- File[/etc/ferm/conf.d/10_idp]
- Content differences:
--- /etc/ferm/conf.d/10_idp.orig
+++ /etc/ferm/conf.d/10_idp
@@ -1,7 +1,7 @@
# Autogenerated by puppet. DO NOT EDIT BY HAND!
#
#
-&R_SERVICE(tcp, 3306, @resolve((idp1005.wikimedia.org idp2005.wikimedia.org)));
+&R_SERVICE(tcp, 3306, (208.80.153.77 208.80.155.104 2620:0:860:3:208:80:153:77 2620:0:861:4:208:80:155:104));
- Firewall::Service[netmon-librenms]
- Parameters differences:
--- Firewall::Service[netmon-librenms].orig
+++ Firewall::Service[netmon-librenms]
+ prio => 10
+ unrestricted_access => False
+ notrack => True
+ port => 3306
+ ensure => present
+ desc =>
+ proto => tcp
+ srange => ['netmon1003.wikimedia.org', 'netmon2002.wikimedia.org']