--- Ferm::Service[ssh_from_cumin_project_masters].orig
+++ Ferm::Service[ssh_from_cumin_project_masters]
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ ensure => present
+ desc =>
+ srange => ['172.16.5.85']
+ notrack => False
+ port => 22
File[/etc/ferm/conf.d/01_cumin-project-defs]
- Parameters differences:
--- File[/etc/ferm/conf.d/01_cumin-project-defs].orig
+++ File[/etc/ferm/conf.d/01_cumin-project-defs]
- owner => root
- tag => ferm
- mode => 0400
- notify => Service[ferm]
- group => root
- ensure => present
- require => File[/etc/ferm/conf.d]
- Content differences:
--- /etc/ferm/conf.d/01_cumin-project-defs.orig
+++ /etc/ferm/conf.d/01_cumin-project-defs
@@ -1 +0,0 @@
-@def $CUMIN_MASTERS = (172.16.1.220 172.16.5.85);
- Ferm::Conf[cumin-project-defs]
- Parameters differences:
--- Ferm::Conf[cumin-project-defs].orig
+++ Ferm::Conf[cumin-project-defs]
- prio => 01
- ensure => present
- File[/etc/ferm/conf.d/10_puppetdb-cumin]
- Parameters differences:
--- File[/etc/ferm/conf.d/10_puppetdb-cumin].orig
+++ File[/etc/ferm/conf.d/10_puppetdb-cumin]
- owner => root
- tag => ferm
- mode => 0400
- notify => Service[ferm]
- group => root
- ensure => present
- require => File[/etc/ferm/conf.d]
- Content differences:
--- /etc/ferm/conf.d/10_puppetdb-cumin.orig
+++ /etc/ferm/conf.d/10_puppetdb-cumin
@@ -1,6 +0,0 @@
-# Autogenerated by puppet. DO NOT EDIT BY HAND!
-#
-#
-&R_SERVICE(tcp, 443, $CUMIN_MASTERS);
-
-
- Firewall::Service[ssh-from-cumin-project-masters]
- Parameters differences:
--- Firewall::Service[ssh-from-cumin-project-masters].orig
+++ Firewall::Service[ssh-from-cumin-project-masters]
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ ensure => present
+ desc =>
+ srange => ['172.16.5.85']
+ notrack => False
+ port => 22
- Ferm::Service[puppetdb-cumin]
- Parameters differences:
--- Ferm::Service[puppetdb-cumin].orig
+++ Ferm::Service[puppetdb-cumin]
- prio => 10
- unrestricted_access => False
- proto => tcp
- ensure => present
- desc =>
- srange => $CUMIN_MASTERS
- notrack => False
- port => 443
- File[/etc/ferm/conf.d/10_ssh_from_cumin_project_masters]
- Parameters differences:
--- File[/etc/ferm/conf.d/10_ssh_from_cumin_project_masters].orig
+++ File[/etc/ferm/conf.d/10_ssh_from_cumin_project_masters]
+ owner => root
+ tag => ferm
+ mode => 0400
+ notify => Service[ferm]
+ group => root
+ ensure => present
+ require => File[/etc/ferm/conf.d]
- Content differences:
--- /etc/ferm/conf.d/10_ssh_from_cumin_project_masters.orig
+++ /etc/ferm/conf.d/10_ssh_from_cumin_project_masters
@@ -0,0 +1,6 @@
+# Autogenerated by puppet. DO NOT EDIT BY HAND!
+#
+#
+&R_SERVICE(tcp, 22, (172.16.5.85));
+
+
- Nftables::Service[ssh-from-cumin-project-masters]
- Parameters differences:
--- Nftables::Service[ssh-from-cumin-project-masters].orig
+++ Nftables::Service[ssh-from-cumin-project-masters]
+ src_ips => ['172.16.5.85']
+ prio => 10
+ unrestricted_access => False
+ proto => tcp
+ ensure => present
+ desc =>
+ notrack => False
+ port => 22