aboutsummaryrefslogtreecommitdiff
path: root/manifests/config.pp
diff options
context:
space:
mode:
authorKilian Engelhardt <kilian.engelhardt@godaddy.com>2018-03-16 16:49:00 +0100
committerKilian Engelhardt <kilian.engelhardt@godaddy.com>2018-03-17 15:10:36 +0100
commitb1deffa5ddf26c14bd8ef404237f79e4ed4f94d3 (patch)
tree100fb2a5648a5b5b98f99ac529b4e64c994b3bc6 /manifests/config.pp
parentaadcd554e91188ecaabb70b70a456bb5baa328e0 (diff)
downloadpuppet-ferm-b1deffa5ddf26c14bd8ef404237f79e4ed4f94d3.tar.gz
puppet-ferm-b1deffa5ddf26c14bd8ef404237f79e4ed4f94d3.tar.bz2
introduce parameter disable_conntrack
Default value of disable_conntrack is 'false'. Existing installations are not affected by this change.
Diffstat (limited to 'manifests/config.pp')
-rw-r--r--manifests/config.pp9
1 files changed, 6 insertions, 3 deletions
diff --git a/manifests/config.pp b/manifests/config.pp
index 43c68ee..ff69c06 100644
--- a/manifests/config.pp
+++ b/manifests/config.pp
@@ -35,12 +35,15 @@ class ferm::config {
}
ferm::chain{'INPUT':
- policy => $ferm::input_policy,
+ policy => $ferm::input_policy,
+ disable_conntrack => $ferm::disable_conntrack,
}
ferm::chain{'FORWARD':
- policy => $ferm::forward_policy,
+ policy => $ferm::forward_policy,
+ disable_conntrack => $ferm::disable_conntrack,
}
ferm::chain{'OUTPUT':
- policy => $ferm::output_policy,
+ policy => $ferm::output_policy,
+ disable_conntrack => $ferm::disable_conntrack,
}
}