# for allow/deny does not matter, allow always takes precedence
# over deny
[files]
- path /etc/puppet/files
+ path /etc/puppet/files
allow *.debian.org
# deny *.evil.example.com
# allow 192.168.0.0/24
# allow 192.168.0.0/24
[facts]
allow *.debian.org
- path /etc/puppet/facts
+ path /etc/puppet/facts