# over deny
[files]
path /etc/puppet/files
-# allow *.example.com
+ allow *.debian.org
# deny *.evil.example.com
# allow 192.168.0.0/24
[plugins]
+ allow *.debian.org
# allow *.example.com
# deny *.evil.example.com
# allow 192.168.0.0/24
+[facts]
+ allow *.debian.org
+ path /etc/puppet/facts