+ # and we want to monitor smtp servers
+ @@ferm::rule::simple { "dsa-smtp-from-nagios-${::fqdn}":
+ tag => 'smtp::server::to::mail-satellite',
+ description => 'Allow smtp access from the nagios server',
+ port => '7', # will be overwritten on collection
+ saddr => $base::public_addresses,
+ }
+ # and we want to monitor ssh
+ @@ferm::rule::simple { "dsa-ssh-from-nagios-${::fqdn}":
+ tag => 'ssh::server::from::nagios',
+ description => 'Allow ssh access from the nagios server',
+ chain => 'ssh',
+ saddr => $base::public_addresses,
+ }