]> git.donarmstrong.com Git - dsa-puppet.git/blobdiff - modules/named/manifests/init.pp
name new class correctly
[dsa-puppet.git] / modules / named / manifests / init.pp
index 73c7cdcb31caf45f34d00cf8034df30d256f5aec..719c0e7b4b18bdc4401a1df397b15d6480135256 100644 (file)
@@ -25,9 +25,10 @@ class named {
                         mode    => 775,
                         ;
         }
-        ferm::rule { "dsa-bind":
+        @ferm::rule { "dsa-bind":
+                domain          => "(ip ip6)",
                 description     => "Allow nameserver access",
-                rule            => "proto (udp tcp) mod state state (NEW) dport (53) ACCEPT"
+                rule            => "&TCP_UDP_SERVICE(53)"
         }
 }