class roles::security_master { ssl::service { 'security-master.debian.org': notify => Exec['service apache2 reload'], key => true, tlsaport => [443, 1873], } rsync::site { 'security_master': source => 'puppet:///modules/roles/security_master/rsyncd.conf', # Needs to be at least twice the number of direct mirrors (currently 15) plus some spare max_clients => 50, sslname => 'security-master.debian.org', } }