]> git.donarmstrong.com Git - dsa-puppet.git/log
dsa-puppet.git
14 years agoMerge branch 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa...
Martin Zobel-Helas [Sat, 6 Mar 2010 17:36:57 +0000 (18:36 +0100)]
Merge branch 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa-puppet

Conflicts:
manifests/site.pp

14 years agostart ferm'ing security mirrors
Martin Zobel-Helas [Sat, 6 Mar 2010 17:30:55 +0000 (18:30 +0100)]
start ferm'ing security mirrors

14 years agosee if global_variables works
Stephen Gran [Sat, 6 Mar 2010 15:33:07 +0000 (15:33 +0000)]
see if global_variables works

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoand not cause a syntax error
Stephen Gran [Sat, 6 Mar 2010 15:31:59 +0000 (15:31 +0000)]
and not cause a syntax error

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoand actually ship it
Stephen Gran [Sat, 6 Mar 2010 15:31:14 +0000 (15:31 +0000)]
and actually ship it

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd first stab at interfaces
Stephen Gran [Sat, 6 Mar 2010 15:29:49 +0000 (15:29 +0000)]
add first stab at interfaces

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agotry in place array, but with bonus for syntactic correctness
Stephen Gran [Sat, 6 Mar 2010 13:37:07 +0000 (13:37 +0000)]
try in place array, but with bonus for syntactic correctness

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agotry in place array
Stephen Gran [Sat, 6 Mar 2010 13:36:00 +0000 (13:36 +0000)]
try in place array

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agorestore stunnel rule
Stephen Gran [Sat, 6 Mar 2010 13:33:19 +0000 (13:33 +0000)]
restore stunnel rule

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agohumph
Stephen Gran [Sat, 6 Mar 2010 13:28:12 +0000 (13:28 +0000)]
humph

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agofirst stab at http limit rules - how bad can it go?
Stephen Gran [Sat, 6 Mar 2010 13:23:13 +0000 (13:23 +0000)]
first stab at http limit rules - how bad can it go?

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agopiatti has ferm
Stephen Gran [Sat, 6 Mar 2010 13:07:50 +0000 (13:07 +0000)]
piatti has ferm

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agolet's see if this works
Stephen Gran [Sat, 6 Mar 2010 12:57:43 +0000 (12:57 +0000)]
let's see if this works

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoRevert "first stab at opening firewall for actual mail port"
Stephen Gran [Sat, 6 Mar 2010 12:53:53 +0000 (12:53 +0000)]
Revert "first stab at opening firewall for actual mail port"

This reverts commit 8aa9460c4f37da95c931dd25eb2b3ab0512f6afd.

14 years agoRevert "er, not a case statement"
Stephen Gran [Sat, 6 Mar 2010 12:53:47 +0000 (12:53 +0000)]
Revert "er, not a case statement"

This reverts commit 14275a7a8892845f59f12a86945da4c7effc643c.

14 years agoer, not a case statement
Stephen Gran [Sat, 6 Mar 2010 12:51:27 +0000 (12:51 +0000)]
er, not a case statement

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agofirst stab at opening firewall for actual mail port
Stephen Gran [Sat, 6 Mar 2010 12:50:48 +0000 (12:50 +0000)]
first stab at opening firewall for actual mail port

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd submission for mx machines
Stephen Gran [Sat, 6 Mar 2010 12:50:29 +0000 (12:50 +0000)]
add submission for mx machines

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agonagios also wants to talk smtp
Stephen Gran [Sat, 6 Mar 2010 12:40:44 +0000 (12:40 +0000)]
nagios also wants to talk smtp

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoconvert ssh to new rule format
Stephen Gran [Sat, 6 Mar 2010 12:21:17 +0000 (12:21 +0000)]
convert ssh to new rule format

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoquoting, maybe
Stephen Gran [Sat, 6 Mar 2010 12:19:39 +0000 (12:19 +0000)]
quoting, maybe

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoanother try
Stephen Gran [Sat, 6 Mar 2010 12:17:52 +0000 (12:17 +0000)]
another try

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agorestrict smtp
Stephen Gran [Sat, 6 Mar 2010 12:14:19 +0000 (12:14 +0000)]
restrict smtp

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agobeethoven has ferm
Stephen Gran [Sat, 6 Mar 2010 11:56:37 +0000 (11:56 +0000)]
beethoven has ferm

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agotry with the correct path name
Martin Zobel-Helas [Fri, 5 Mar 2010 22:25:56 +0000 (23:25 +0100)]
try with the correct path name

14 years agodoes order matter?
Martin Zobel-Helas [Fri, 5 Mar 2010 22:24:05 +0000 (23:24 +0100)]
does order matter?

14 years agodamn typo
Martin Zobel-Helas [Fri, 5 Mar 2010 22:05:34 +0000 (23:05 +0100)]
damn typo

14 years agoadd module rsync (for ferm)
Martin Zobel-Helas [Fri, 5 Mar 2010 21:58:52 +0000 (22:58 +0100)]
add module rsync (for ferm)

14 years agoferm'ize senfl
Martin Zobel-Helas [Fri, 5 Mar 2010 21:26:29 +0000 (22:26 +0100)]
ferm'ize senfl

14 years agoMerge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet
Stephen Gran [Wed, 3 Mar 2010 00:51:56 +0000 (00:51 +0000)]
Merge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet

14 years agoquiet can't find plugins noise
Stephen Gran [Wed, 3 Mar 2010 00:51:45 +0000 (00:51 +0000)]
quiet can't find plugins noise

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agopurcell follows a broken naming scheme for volume groups
Peter Palfrader [Wed, 3 Mar 2010 00:18:06 +0000 (01:18 +0100)]
purcell follows a broken naming scheme for volume groups

14 years agowe need newer dpkg and dpkg-dev on zee for sparc64 stuff
Peter Palfrader [Tue, 2 Mar 2010 12:32:56 +0000 (13:32 +0100)]
we need newer dpkg and dpkg-dev on zee for sparc64 stuff

14 years agowhitespace nazi
Peter Palfrader [Mon, 1 Mar 2010 20:34:15 +0000 (21:34 +0100)]
whitespace nazi

14 years ago*ahem*
Peter Palfrader [Mon, 1 Mar 2010 20:32:47 +0000 (21:32 +0100)]
*ahem*

14 years agosudoers: Allow wbadm to do their stuff on grieg
Peter Palfrader [Mon, 1 Mar 2010 19:43:38 +0000 (20:43 +0100)]
sudoers: Allow wbadm to do their stuff on grieg

14 years agopuppet headers
Peter Palfrader [Mon, 1 Mar 2010 13:14:23 +0000 (14:14 +0100)]
puppet headers

14 years agoone accepts only TERM, the other only INT
Peter Palfrader [Sun, 28 Feb 2010 20:28:46 +0000 (21:28 +0100)]
one accepts only TERM, the other only INT

14 years agokill the daemon watcher for mpt-statusd as well
Peter Palfrader [Sun, 28 Feb 2010 20:26:00 +0000 (21:26 +0100)]
kill the daemon watcher for mpt-statusd as well

14 years agotry sigint
Peter Palfrader [Sun, 28 Feb 2010 20:19:09 +0000 (21:19 +0100)]
try sigint

14 years agoand a typo
Peter Palfrader [Sun, 28 Feb 2010 20:15:51 +0000 (21:15 +0100)]
and a typo

14 years agocosmetics
Peter Palfrader [Sun, 28 Feb 2010 20:14:07 +0000 (21:14 +0100)]
cosmetics

14 years agoand finally
Peter Palfrader [Sun, 28 Feb 2010 20:12:36 +0000 (21:12 +0100)]
and finally

14 years agonow
Peter Palfrader [Sun, 28 Feb 2010 20:11:53 +0000 (21:11 +0100)]
now

14 years agobetter
Peter Palfrader [Sun, 28 Feb 2010 20:11:28 +0000 (21:11 +0100)]
better

14 years ago*sigh*
Peter Palfrader [Sun, 28 Feb 2010 20:10:52 +0000 (21:10 +0100)]
*sigh*

14 years agobad puppet
Peter Palfrader [Sun, 28 Feb 2010 20:10:10 +0000 (21:10 +0100)]
bad puppet

14 years agono semicolon at least
Peter Palfrader [Sun, 28 Feb 2010 20:09:21 +0000 (21:09 +0100)]
no semicolon at least

14 years agoquote stuff?
Peter Palfrader [Sun, 28 Feb 2010 20:08:46 +0000 (21:08 +0100)]
quote stuff?

14 years agompt has funny ears
Peter Palfrader [Sun, 28 Feb 2010 20:06:44 +0000 (21:06 +0100)]
mpt has funny ears

14 years agosibelius has megaraid
Peter Palfrader [Sun, 28 Feb 2010 19:34:34 +0000 (20:34 +0100)]
sibelius has megaraid

14 years agoMerge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet
Peter Palfrader [Sun, 28 Feb 2010 19:33:26 +0000 (20:33 +0100)]
Merge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet

* 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet:
  Fix typo
  add my ppp ip as well

14 years agofix typo
Peter Palfrader [Sun, 28 Feb 2010 19:33:02 +0000 (20:33 +0100)]
fix typo

14 years agoFix typo
Peter Palfrader [Sun, 28 Feb 2010 17:46:37 +0000 (18:46 +0100)]
Fix typo

14 years agoadd my ppp ip as well
Stephen Gran [Sun, 28 Feb 2010 16:25:06 +0000 (16:25 +0000)]
add my ppp ip as well

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoMerge mptcontroller and mptraid facts
Peter Palfrader [Sun, 28 Feb 2010 16:17:51 +0000 (17:17 +0100)]
Merge mptcontroller and mptraid facts

14 years agoallow sudo to mpt-status on mpt raid hosts
Peter Palfrader [Sun, 28 Feb 2010 16:15:44 +0000 (17:15 +0100)]
allow sudo to mpt-status on mpt raid hosts

14 years agoAnd install mpt-status on mpt hosts
Peter Palfrader [Sun, 28 Feb 2010 16:12:06 +0000 (17:12 +0100)]
And install mpt-status on mpt hosts

14 years agomptraid fact
Peter Palfrader [Sun, 28 Feb 2010 16:10:44 +0000 (17:10 +0100)]
mptraid fact

14 years agoMerge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet
Peter Palfrader [Sun, 28 Feb 2010 16:00:27 +0000 (17:00 +0100)]
Merge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet

* 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet:
  add fact for megaraid controllers
  strip some of the randomness

14 years agoNagios gets to run megaraid's megarc
Peter Palfrader [Sun, 28 Feb 2010 16:00:16 +0000 (17:00 +0100)]
Nagios gets to run megaraid's megarc

14 years agoadd fact for megaraid controllers
Stephen Gran [Sun, 28 Feb 2010 15:48:42 +0000 (15:48 +0000)]
add fact for megaraid controllers

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoMerge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet
Stephen Gran [Thu, 25 Feb 2010 19:24:14 +0000 (19:24 +0000)]
Merge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet

14 years agostrip some of the randomness
Stephen Gran [Thu, 25 Feb 2010 19:24:10 +0000 (19:24 +0000)]
strip some of the randomness

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agohmm.
Peter Palfrader [Thu, 25 Feb 2010 19:18:34 +0000 (20:18 +0100)]
hmm.

14 years agoI hate you
Peter Palfrader [Thu, 25 Feb 2010 19:16:31 +0000 (20:16 +0100)]
I hate you

14 years agotry kernel
Peter Palfrader [Thu, 25 Feb 2010 19:14:46 +0000 (20:14 +0100)]
try kernel

14 years ago- -dsa in dsa-dsa-
Peter Palfrader [Thu, 25 Feb 2010 19:13:25 +0000 (20:13 +0100)]
- -dsa in dsa-dsa-

14 years agoMerge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet
Peter Palfrader [Thu, 25 Feb 2010 19:09:23 +0000 (20:09 +0100)]
Merge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet

* 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet:
  line wrap motd

14 years agoTry to get a kfreebsd module going
Peter Palfrader [Thu, 25 Feb 2010 19:09:19 +0000 (20:09 +0100)]
Try to get a kfreebsd module going

14 years agoline wrap motd
Stephen Gran [Wed, 24 Feb 2010 22:10:04 +0000 (22:10 +0000)]
line wrap motd

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoMerge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet
Peter Palfrader [Wed, 24 Feb 2010 15:40:24 +0000 (16:40 +0100)]
Merge branch 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet

* 'master' of ssh://handel.debian.org/srv/puppet.debian.org/git/dsa-puppet: (24 commits)
  stop doubling up an entry
  add puppetmaster role
  be a little more liberal about throwing away MS traffic
  this should be empty for those hosters
  use the right list of hosts
  move inclusion of samhain to the end of the block, so it knows about all other classes included
  clean up samhain template by role instead of by hostname
  and even more carefully this time
  skip hosts without ip addresses in ldap
  bartok gets ferm
  add debian hosts to the list
  and recursors should allow localnets ...
  name new class correctly
  add bartok as recursor for manda
  add bartok as a recursor
  add local DNS recursor class
  /etc/ferm is now also (kind of, almost) under puppet control
  ferm.conf is now (kind of, almost) under puppet control
  and name them usefully
  use v4 for iptables and v6 for ip6tables
  ...

14 years agoLet archvsync trigger snapshot (2nd snapshot instance) on sibelius
Peter Palfrader [Wed, 24 Feb 2010 15:39:48 +0000 (16:39 +0100)]
Let archvsync trigger snapshot (2nd snapshot instance) on sibelius

14 years agostop doubling up an entry
Stephen Gran [Wed, 24 Feb 2010 09:20:15 +0000 (09:20 +0000)]
stop doubling up an entry

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd puppetmaster role
Stephen Gran [Wed, 24 Feb 2010 09:16:08 +0000 (09:16 +0000)]
add puppetmaster role

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agobe a little more liberal about throwing away MS traffic
Stephen Gran [Wed, 24 Feb 2010 00:37:51 +0000 (00:37 +0000)]
be a little more liberal about throwing away MS traffic

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agothis should be empty for those hosters
Stephen Gran [Wed, 24 Feb 2010 00:25:30 +0000 (00:25 +0000)]
this should be empty for those hosters

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agouse the right list of hosts
Stephen Gran [Wed, 24 Feb 2010 00:21:10 +0000 (00:21 +0000)]
use the right list of hosts

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agomove inclusion of samhain to the end of the block, so it knows about all other classe...
Stephen Gran [Tue, 23 Feb 2010 23:33:15 +0000 (23:33 +0000)]
move inclusion of samhain to the end of the block, so it knows about all other classes included

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoclean up samhain template by role instead of by hostname
Stephen Gran [Tue, 23 Feb 2010 23:32:54 +0000 (23:32 +0000)]
clean up samhain template by role instead of by hostname

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoand even more carefully this time
Stephen Gran [Tue, 23 Feb 2010 19:46:07 +0000 (19:46 +0000)]
and even more carefully this time

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoskip hosts without ip addresses in ldap
Stephen Gran [Tue, 23 Feb 2010 19:45:13 +0000 (19:45 +0000)]
skip hosts without ip addresses in ldap

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agobartok gets ferm
Stephen Gran [Tue, 23 Feb 2010 19:38:49 +0000 (19:38 +0000)]
bartok gets ferm

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd debian hosts to the list
Stephen Gran [Tue, 23 Feb 2010 19:36:55 +0000 (19:36 +0000)]
add debian hosts to the list

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoand recursors should allow localnets ...
Stephen Gran [Tue, 23 Feb 2010 19:33:03 +0000 (19:33 +0000)]
and recursors should allow localnets ...

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoname new class correctly
Stephen Gran [Tue, 23 Feb 2010 19:31:52 +0000 (19:31 +0000)]
name new class correctly

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd bartok as recursor for manda
Stephen Gran [Tue, 23 Feb 2010 19:31:08 +0000 (19:31 +0000)]
add bartok as recursor for manda

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd bartok as a recursor
Stephen Gran [Tue, 23 Feb 2010 19:30:34 +0000 (19:30 +0000)]
add bartok as a recursor

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd local DNS recursor class
Stephen Gran [Tue, 23 Feb 2010 19:29:54 +0000 (19:29 +0000)]
add local DNS recursor class

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years ago/etc/ferm is now also (kind of, almost) under puppet control
Stephen Gran [Tue, 23 Feb 2010 19:20:42 +0000 (19:20 +0000)]
/etc/ferm is now also (kind of, almost) under puppet control

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoferm.conf is now (kind of, almost) under puppet control
Stephen Gran [Tue, 23 Feb 2010 19:19:10 +0000 (19:19 +0000)]
ferm.conf is now (kind of, almost) under puppet control

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoand name them usefully
Stephen Gran [Tue, 23 Feb 2010 19:11:19 +0000 (19:11 +0000)]
and name them usefully

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agouse v4 for iptables and v6 for ip6tables
Stephen Gran [Tue, 23 Feb 2010 19:10:37 +0000 (19:10 +0000)]
use v4 for iptables and v6 for ip6tables

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agomake MS ports quiet
Stephen Gran [Tue, 23 Feb 2010 19:05:34 +0000 (19:05 +0000)]
make MS ports quiet

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoadd draghi as nagios host, as it needs to connect to nrpe
Stephen Gran [Tue, 23 Feb 2010 18:50:54 +0000 (18:50 +0000)]
add draghi as nagios host, as it needs to connect to nrpe

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agotry to make samhain quiet about ferm
Stephen Gran [Tue, 23 Feb 2010 18:31:49 +0000 (18:31 +0000)]
try to make samhain quiet about ferm

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agozobel!
Stephen Gran [Tue, 23 Feb 2010 18:31:37 +0000 (18:31 +0000)]
zobel!

Signed-off-by: Stephen Gran <steve@lobefin.net>
14 years agoaacraid stuff on pettersson
Peter Palfrader [Tue, 23 Feb 2010 00:55:19 +0000 (01:55 +0100)]
aacraid stuff on pettersson

14 years agoAdd pettersson
Peter Palfrader [Mon, 22 Feb 2010 21:14:48 +0000 (22:14 +0100)]
Add pettersson

14 years agoMerge branch 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa...
Martin Zobel-Helas [Mon, 22 Feb 2010 09:27:34 +0000 (10:27 +0100)]
Merge branch 'master' of git+ssh://puppet.debian.org/srv/puppet.debian.org/git/dsa-puppet