]> git.donarmstrong.com Git - dsa-puppet.git/log
dsa-puppet.git
12 years agoall are moved over
Stephen Gran [Sun, 29 Apr 2012 08:22:05 +0000 (09:22 +0100)]
all are moved over

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd chopin as security-master
Stephen Gran [Sun, 29 Apr 2012 08:16:02 +0000 (09:16 +0100)]
add chopin as security-master

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd kassia to ftp-upload for now
Stephen Gran [Sun, 29 Apr 2012 08:02:33 +0000 (09:02 +0100)]
add kassia to ftp-upload for now

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agono, really, template
Stephen Gran [Sat, 28 Apr 2012 15:18:45 +0000 (16:18 +0100)]
no, really, template

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agomake this templates
Stephen Gran [Sat, 28 Apr 2012 15:17:05 +0000 (16:17 +0100)]
make this templates

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoand another
Stephen Gran [Sat, 28 Apr 2012 15:09:26 +0000 (16:09 +0100)]
and another

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agowe probably want to logrotate these files
Stephen Gran [Sat, 28 Apr 2012 15:09:00 +0000 (16:09 +0100)]
we probably want to logrotate these files

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agothis should be under a role name
Stephen Gran [Sat, 28 Apr 2012 15:08:17 +0000 (16:08 +0100)]
this should be under a role name

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agosecurity has a logfile too
Stephen Gran [Sat, 28 Apr 2012 14:55:55 +0000 (15:55 +0100)]
security has a logfile too

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to kassia
Stephen Gran [Sat, 28 Apr 2012 14:53:51 +0000 (15:53 +0100)]
roll out to kassia

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agokassia addresses
Stephen Gran [Sat, 28 Apr 2012 14:53:13 +0000 (15:53 +0100)]
kassia addresses

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoftp.upload has a log file
Stephen Gran [Sat, 28 Apr 2012 14:52:01 +0000 (15:52 +0100)]
ftp.upload has a log file

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agocorrect some names
Stephen Gran [Sat, 28 Apr 2012 14:43:50 +0000 (15:43 +0100)]
correct some names

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd a few more
Stephen Gran [Sat, 28 Apr 2012 14:42:35 +0000 (15:42 +0100)]
add a few more

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agothese are handled now
Stephen Gran [Sat, 28 Apr 2012 14:37:32 +0000 (15:37 +0100)]
these are handled now

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to klecker
Stephen Gran [Sat, 28 Apr 2012 14:36:01 +0000 (15:36 +0100)]
roll out to klecker

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to franck
Stephen Gran [Sat, 28 Apr 2012 14:28:04 +0000 (15:28 +0100)]
roll out to franck

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to ravel
Stephen Gran [Sat, 28 Apr 2012 14:23:22 +0000 (15:23 +0100)]
roll out to ravel

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to bizet
Stephen Gran [Sat, 28 Apr 2012 14:17:52 +0000 (15:17 +0100)]
roll out to bizet

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to morricone
Stephen Gran [Sat, 28 Apr 2012 10:49:50 +0000 (11:49 +0100)]
roll out to morricone

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to gluck
Stephen Gran [Sat, 28 Apr 2012 10:36:57 +0000 (11:36 +0100)]
roll out to gluck

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to santoro
Stephen Gran [Sat, 28 Apr 2012 10:31:52 +0000 (11:31 +0100)]
roll out to santoro

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to saens
Stephen Gran [Sat, 28 Apr 2012 10:24:47 +0000 (11:24 +0100)]
roll out to saens

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to schein
Stephen Gran [Sat, 28 Apr 2012 10:21:30 +0000 (11:21 +0100)]
roll out to schein

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to wieck
Stephen Gran [Sat, 28 Apr 2012 10:16:43 +0000 (11:16 +0100)]
roll out to wieck

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoroll out to steffani
Stephen Gran [Sat, 28 Apr 2012 09:44:37 +0000 (10:44 +0100)]
roll out to steffani

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agosome ordering
Stephen Gran [Sat, 28 Apr 2012 09:39:54 +0000 (10:39 +0100)]
some ordering

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agonow do lobos
Stephen Gran [Sat, 28 Apr 2012 09:37:54 +0000 (10:37 +0100)]
now do lobos

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agohandle different binds
Stephen Gran [Sat, 28 Apr 2012 09:34:32 +0000 (10:34 +0100)]
handle different binds

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoa slightly better name
Stephen Gran [Sat, 28 Apr 2012 09:17:50 +0000 (10:17 +0100)]
a slightly better name

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoxinetd means listen=no
Stephen Gran [Sat, 28 Apr 2012 09:16:12 +0000 (10:16 +0100)]
xinetd means listen=no

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoand catch vsftp as well
Stephen Gran [Sat, 28 Apr 2012 09:10:51 +0000 (10:10 +0100)]
and catch vsftp as well

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agooops
Stephen Gran [Sat, 28 Apr 2012 09:09:12 +0000 (10:09 +0100)]
oops

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agostart rolling out
Stephen Gran [Sat, 28 Apr 2012 09:06:55 +0000 (10:06 +0100)]
start rolling out

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agooops
Stephen Gran [Fri, 27 Apr 2012 20:03:32 +0000 (21:03 +0100)]
oops

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agomanual dependencies
Stephen Gran [Fri, 27 Apr 2012 19:33:52 +0000 (20:33 +0100)]
manual dependencies

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoshouldn't need this
Stephen Gran [Fri, 27 Apr 2012 19:20:51 +0000 (20:20 +0100)]
shouldn't need this

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoRevert "try to order these a bit"
Stephen Gran [Fri, 27 Apr 2012 19:20:12 +0000 (20:20 +0100)]
Revert "try to order these a bit"

This reverts commit 382b96856d6c214d79ae17d7f3b919ed7ae99bf8.

12 years agotry to order these a bit
Stephen Gran [Fri, 27 Apr 2012 19:15:31 +0000 (20:15 +0100)]
try to order these a bit

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoPackage[] must not depend on apt-get update, that will cause loops
Peter Palfrader [Fri, 27 Apr 2012 18:17:38 +0000 (18:17 +0000)]
Package[] must not depend on apt-get update, that will cause loops

12 years agoWhat about now
Peter Palfrader [Fri, 27 Apr 2012 18:08:43 +0000 (20:08 +0200)]
What about now

12 years agoI wonder if this works
Peter Palfrader [Fri, 27 Apr 2012 18:05:36 +0000 (20:05 +0200)]
I wonder if this works

12 years agoIgnore obsolete/local postgresql-9.0-debversion
Peter Palfrader [Fri, 27 Apr 2012 17:31:46 +0000 (19:31 +0200)]
Ignore obsolete/local postgresql-9.0-debversion

12 years agolong gone host
Stephen Gran [Thu, 26 Apr 2012 17:22:39 +0000 (18:22 +0100)]
long gone host

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agokeep transitioning to roles
Stephen Gran [Thu, 26 Apr 2012 08:02:46 +0000 (09:02 +0100)]
keep transitioning to roles

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd ftp_upload role
Stephen Gran [Thu, 26 Apr 2012 07:58:46 +0000 (08:58 +0100)]
add ftp_upload role

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd ftp.d.o role
Stephen Gran [Thu, 26 Apr 2012 07:54:42 +0000 (08:54 +0100)]
add ftp.d.o role

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoFix view alternative on some hosts like bendel
Peter Palfrader [Fri, 27 Apr 2012 06:49:18 +0000 (08:49 +0200)]
Fix view alternative on some hosts like bendel

12 years agocleanup
Stephen Gran [Wed, 25 Apr 2012 07:51:31 +0000 (08:51 +0100)]
cleanup

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoxinetd has a broken init script as well
Stephen Gran [Wed, 25 Apr 2012 07:23:28 +0000 (08:23 +0100)]
xinetd has a broken init script as well

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agomore ordering
Stephen Gran [Wed, 25 Apr 2012 07:17:45 +0000 (08:17 +0100)]
more ordering

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoquite right to complain
Stephen Gran [Wed, 25 Apr 2012 07:08:57 +0000 (08:08 +0100)]
quite right to complain

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoordering fixups
Stephen Gran [Wed, 25 Apr 2012 07:06:31 +0000 (08:06 +0100)]
ordering fixups

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoThis can default to bind to any
Stephen Gran [Wed, 25 Apr 2012 07:04:45 +0000 (08:04 +0100)]
This can default to bind to any

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoThis is better expressed as a dependency
Stephen Gran [Wed, 25 Apr 2012 07:03:52 +0000 (08:03 +0100)]
This is better expressed as a dependency

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoUpdate pre-commit hook
Stephen Gran [Wed, 25 Apr 2012 07:02:01 +0000 (08:02 +0100)]
Update pre-commit hook

Now will update itself and reexec itself if it has changes, and is
better at catching syntax errors in manifests

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agothat wasn't necessary
Stephen Gran [Wed, 25 Apr 2012 05:29:19 +0000 (06:29 +0100)]
that wasn't necessary

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoer, that's the real issue
Stephen Gran [Wed, 25 Apr 2012 05:26:25 +0000 (06:26 +0100)]
er, that's the real issue

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoRevert "s/name/title/ in a few places"
Stephen Gran [Wed, 25 Apr 2012 05:24:41 +0000 (06:24 +0100)]
Revert "s/name/title/ in a few places"

This reverts commit 64497f03874c0bbf33be7fa6287dd769cded0751.

12 years agos/name/title/ in a few places
Stephen Gran [Tue, 24 Apr 2012 20:08:46 +0000 (21:08 +0100)]
s/name/title/ in a few places

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agofix up inheritance
Stephen Gran [Tue, 24 Apr 2012 20:07:04 +0000 (21:07 +0100)]
fix up inheritance

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agosyntax, sigh
Stephen Gran [Tue, 24 Apr 2012 20:06:03 +0000 (21:06 +0100)]
syntax, sigh

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoand noop it all
Stephen Gran [Tue, 24 Apr 2012 20:04:18 +0000 (21:04 +0100)]
and noop it all

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoAllow more than one vsftpd::site
Stephen Gran [Tue, 24 Apr 2012 20:01:25 +0000 (21:01 +0100)]
Allow more than one vsftpd::site

This turns it into an xinetd::service, so I made one of those while I'm
here.

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agomanage non-interactive pam-session as well
Stephen Gran [Mon, 23 Apr 2012 16:16:09 +0000 (17:16 +0100)]
manage non-interactive pam-session as well

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoremove rore (RT#3773)
Martin Zobel-Helas [Mon, 23 Apr 2012 17:00:13 +0000 (19:00 +0200)]
remove rore (RT#3773)
Signed-off-by: Martin Zobel-Helas <zobel@debian.org>
12 years agoMerge branch 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa...
Martin Zobel-Helas [Mon, 23 Apr 2012 16:17:58 +0000 (18:17 +0200)]
Merge branch 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa-puppet

* 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa-puppet:
  Be less noisy tho
  Do not run pam_mkhomedir if your homedir is /nonexistent

12 years agomake nagios more happy
Martin Zobel-Helas [Mon, 23 Apr 2012 16:17:28 +0000 (18:17 +0200)]
make nagios more happy
Signed-off-by: Martin Zobel-Helas <zobel@debian.org>
12 years agoBe less noisy tho
Peter Palfrader [Mon, 23 Apr 2012 16:11:31 +0000 (18:11 +0200)]
Be less noisy tho

12 years agoDo not run pam_mkhomedir if your homedir is /nonexistent
Peter Palfrader [Mon, 23 Apr 2012 16:09:18 +0000 (18:09 +0200)]
Do not run pam_mkhomedir if your homedir is /nonexistent

12 years agodrop mail.info. lets see what breaks
Martin Zobel-Helas [Mon, 23 Apr 2012 15:43:21 +0000 (17:43 +0200)]
drop mail.info. lets see what breaks
Signed-off-by: Martin Zobel-Helas <zobel@debian.org>
12 years agotry double quotes
Martin Zobel-Helas [Mon, 23 Apr 2012 15:34:37 +0000 (17:34 +0200)]
try double quotes
Signed-off-by: Martin Zobel-Helas <zobel@debian.org>
12 years agomake nagios happy
Martin Zobel-Helas [Mon, 23 Apr 2012 15:30:15 +0000 (17:30 +0200)]
make nagios happy
Signed-off-by: Martin Zobel-Helas <zobel@debian.org>
12 years agoadd backports::master
Stephen Gran [Mon, 23 Apr 2012 11:03:24 +0000 (12:03 +0100)]
add backports::master

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agovsftpd should only be on master
Stephen Gran [Mon, 23 Apr 2012 11:02:06 +0000 (12:02 +0100)]
vsftpd should only be on master

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd vsftpd::site for backports
Stephen Gran [Mon, 23 Apr 2012 10:59:18 +0000 (11:59 +0100)]
add vsftpd::site for backports

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoemulate procps handling on bsd
Stephen Gran [Mon, 23 Apr 2012 10:34:50 +0000 (11:34 +0100)]
emulate procps handling on bsd

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd site::sysctl to bsd
Stephen Gran [Mon, 23 Apr 2012 10:20:48 +0000 (11:20 +0100)]
add site::sysctl to bsd

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoliszt is out, this should be safe
Stephen Gran [Mon, 23 Apr 2012 07:06:39 +0000 (08:06 +0100)]
liszt is out, this should be safe

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agomove logic out of main manifest
Stephen Gran [Mon, 23 Apr 2012 07:04:22 +0000 (08:04 +0100)]
move logic out of main manifest

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agosamhain ignore this
Stephen Gran [Sun, 22 Apr 2012 20:52:38 +0000 (21:52 +0100)]
samhain ignore this

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agodos2unix
Stephen Gran [Sun, 22 Apr 2012 19:58:46 +0000 (20:58 +0100)]
dos2unix

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoreorder config file
Stephen Gran [Sun, 22 Apr 2012 19:54:13 +0000 (20:54 +0100)]
reorder config file

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agowhitespace
Stephen Gran [Sun, 22 Apr 2012 19:49:01 +0000 (20:49 +0100)]
whitespace

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agothis is probably more like it
Stephen Gran [Sun, 22 Apr 2012 19:48:10 +0000 (20:48 +0100)]
this is probably more like it

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agotarget is preferred
Stephen Gran [Sun, 22 Apr 2012 19:36:46 +0000 (20:36 +0100)]
target is preferred

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agovalente is gone
Stephen Gran [Sun, 22 Apr 2012 19:30:57 +0000 (20:30 +0100)]
valente is gone

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agostart a vsftpd module
Stephen Gran [Sun, 22 Apr 2012 19:26:00 +0000 (20:26 +0100)]
start a vsftpd module

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agodrop hosts that don't do ftp
Stephen Gran [Sun, 22 Apr 2012 19:21:48 +0000 (20:21 +0100)]
drop hosts that don't do ftp

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agosome more scaffolding
Stephen Gran [Sun, 22 Apr 2012 19:07:27 +0000 (20:07 +0100)]
some more scaffolding

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agooops, need a name
Stephen Gran [Sun, 22 Apr 2012 19:00:13 +0000 (20:00 +0100)]
oops, need a name

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoadd start of a postfix module to hang firewall rules/monitoring/etc off
Stephen Gran [Sun, 22 Apr 2012 18:58:55 +0000 (19:58 +0100)]
add start of a postfix module to hang firewall rules/monitoring/etc off

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agoremove liszt
Martin Zobel-Helas [Sun, 22 Apr 2012 09:43:49 +0000 (11:43 +0200)]
remove liszt

12 years agoadd new blacklist address
Martin Zobel-Helas [Sat, 21 Apr 2012 08:08:39 +0000 (10:08 +0200)]
add new blacklist address
Signed-off-by: Martin Zobel-Helas <zobel@debian.org>
12 years agoadd more ferm rules for ganeit
Luca Filipozzi [Wed, 18 Apr 2012 23:50:15 +0000 (23:50 +0000)]
add more ferm rules for ganeit

12 years agoclean up some ignores
Stephen Gran [Wed, 18 Apr 2012 05:32:23 +0000 (06:32 +0100)]
clean up some ignores

Signed-off-by: Stephen Gran <steve@lobefin.net>
12 years agofix ip address typo for ganeti ssh-allowed
Luca Filipozzi [Tue, 17 Apr 2012 23:46:55 +0000 (23:46 +0000)]
fix ip address typo for ganeti ssh-allowed

12 years agofix typo in drbd ferm rule
Luca Filipozzi [Tue, 17 Apr 2012 23:32:02 +0000 (23:32 +0000)]
fix typo in drbd ferm rule

12 years agoimprove drbd ferm rule
Luca Filipozzi [Tue, 17 Apr 2012 23:29:08 +0000 (23:29 +0000)]
improve drbd ferm rule

12 years agomore rules for ganeti; try rsa keys
Luca Filipozzi [Tue, 17 Apr 2012 23:23:44 +0000 (23:23 +0000)]
more rules for ganeti; try rsa keys