aboutsummaryrefslogtreecommitdiff
path: root/manifests/chain.pp
diff options
context:
space:
mode:
authorTim Meusel <tim@bastelfreak.de>2017-09-18 15:23:36 +0200
committerTim Meusel <tim@bastelfreak.de>2018-03-15 17:06:08 +0100
commit2d355a4c1baadc761d6b12645d0274da8866f722 (patch)
treee6d1a78f9719397ed9ce9144bf4706a3ccd46c48 /manifests/chain.pp
downloadpuppet-ferm-2d355a4c1baadc761d6b12645d0274da8866f722.tar.gz
puppet-ferm-2d355a4c1baadc761d6b12645d0274da8866f722.tar.bz2
initial commit
Diffstat (limited to 'manifests/chain.pp')
-rw-r--r--manifests/chain.pp20
1 files changed, 20 insertions, 0 deletions
diff --git a/manifests/chain.pp b/manifests/chain.pp
new file mode 100644
index 0000000..6f2ee1d
--- /dev/null
+++ b/manifests/chain.pp
@@ -0,0 +1,20 @@
+# defined resource which creates all rules for one chain
+# @param policy [Ferm::Policies] Set the default policy for a CHAIN
+# @param chain [Ferm::Chains] name of the chain that should be managed
+define ferm::chain (
+ Ferm::Policies $policy,
+ Ferm::Chains $chain = $name,
+) {
+
+ # concat resource for the chain
+ $filename = downcase($chain)
+ concat{"/etc/ferm.d/chains/${chain}.conf":
+ ensure => 'present',
+ }
+
+ concat::fragment{"${chain}-policy":
+ target => "/etc/ferm.d/chains/${chain}.conf",
+ content => epp("${module_name}/ferm_chain_header.conf.epp", {'policy' => $policy }),
+ order => '01',
+ }
+}