projects
/
mirror
/
dsa-puppet.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
this should virtually work
[mirror/dsa-puppet.git]
/
modules
/
exim
/
manifests
/
init.pp
diff --git
a/modules/exim/manifests/init.pp
b/modules/exim/manifests/init.pp
index
2e361b5
..
8585279
100644
(file)
--- a/
modules/exim/manifests/init.pp
+++ b/
modules/exim/manifests/init.pp
@@
-19,6
+19,20
@@
class exim {
mode => 755,
purge => true
;
mode => 755,
purge => true
;
+ "/etc/exim4/Git":
+ ensure => directory,
+ purge => true,
+ force => true,
+ recurse => true,
+ source => "puppet:///files/empty/"
+ ;
+ "/etc/exim4/conf.d":
+ ensure => directory,
+ purge => true,
+ force => true,
+ recurse => true,
+ source => "puppet:///files/empty/"
+ ;
"/etc/exim4/ssl":
ensure => directory,
owner => root,
"/etc/exim4/ssl":
ensure => directory,
owner => root,
@@
-130,10
+144,21
@@
class exim {
group => Debian-exim,
mode => 640
;
group => Debian-exim,
mode => 640
;
+ "/var/log/exim4":
+ mode => 2750,
+ ensure => directory,
+ owner => Debian-exim,
+ group => maillog
+ ;
}
exec { "exim4 reload":
path => "/etc/init.d:/usr/bin:/usr/sbin:/bin:/sbin",
refreshonly => true,
}
}
exec { "exim4 reload":
path => "/etc/init.d:/usr/bin:/usr/sbin:/bin:/sbin",
refreshonly => true,
}
+ @ferm::rule { "dsa-exim":
+ domain => "(ip ip6)",
+ description => "Allow smtp access",
+ rule => "proto tcp mod state state (NEW) dport (25) ACCEPT"
+ }
}
}