rule => '&SERVICE_RANGE(tcp, 5439, ( 185.17.185.181/32 185.17.185.182/32 ))'
}
}
+ lw07: {
+ @ferm::rule { 'dsa-postgres-snapshot':
+ description => 'Allow postgress access',
+ rule => '&SERVICE_RANGE(tcp, 5439, ( 185.17.185.176/28 ))'
+ }
+ }
default: {}
}
# vpn fu
}
# tftp
case $::hostname {
- abel,jenkins: {
+ abel: {
+ @ferm::rule { 'dsa-tftp':
+ description => 'Allow tftp access',
+ rule => '&SERVICE_RANGE(udp, 69, ( 172.28.17.0/24 ))'
+ }
+ }
+ jenkins: {
@ferm::rule { 'dsa-tftp':
description => 'Allow tftp access',
- rule => '&SERVICE(udp, 69)'
+ rule => '&SERVICE_RANGE(udp, 69, ( 192.168.2.0/24 206.12.19.0/24 ))'
}
}
master: {
@ferm::rule { 'dsa-tftp':
description => 'Allow tftp access',
- rule => '&SERVICE(udp, 69)'
rule => '&SERVICE_RANGE(udp, 69, ( 82.195.75.64/26 ))'
}
}