mode => 775,
;
}
- ferm::rule { "dsa-bind":
- domain => (ip ip6),
+ @ferm::rule { "dsa-bind":
+ domain => "(ip ip6)",
description => "Allow nameserver access",
- rule => "proto (udp tcp) mod state state (NEW) dport (53) ACCEPT"
+ rule => "&TCP_UDP_SERVICE(53)"
}
}