X-Git-Url: https://git.donarmstrong.com/?a=blobdiff_plain;ds=sidebyside;f=modules%2Froles%2Fmanifests%2Frtc.pp;h=09ad05806d751bca19db0beb8e2168571eb10a21;hb=1a6e21d366bf5f8feab36ab1a214598085ae82eb;hp=754367043d9f6cce19d482fcea731aa27eb783b3;hpb=7979d10744f00844e4dcaaefe1a4fa5debf57b3e;p=dsa-puppet.git diff --git a/modules/roles/manifests/rtc.pp b/modules/roles/manifests/rtc.pp index 75436704..09ad0580 100644 --- a/modules/roles/manifests/rtc.pp +++ b/modules/roles/manifests/rtc.pp @@ -1,11 +1,19 @@ class roles::rtc { ssl::service { 'www.debian.org': + tlsaport => 0, } ssl::service { 'sip-ws.debian.org': } + dnsextras::tlsa_record{ 'tlsa-xmpp': + zone => 'debian.org', + certfile => "/etc/puppet/modules/ssl/files/servicecerts/www.debian.org.crt", + port => '5061 5222 5269', + hostname => $::fqdn, + } + @ferm::rule { 'dsa-xmpp-client-ip4': domain => 'ip', description => 'XMPP connections (client to server)',