| EOF
}
- # The nagios server wants to do DNS queries on the primary
+ # The nagios server wants to do DNS queries on the primaries
@@ferm::rule::simple { "dsa-bind-from-${::fqdn}":
- tag => 'named::primary::ferm',
+ tag => [
+ 'named::primary::ferm',
+ 'named::keyring::ferm',
+ ],
description => 'Allow nagios master access to the primary for checks',
proto => ['udp', 'tcp'],
port => 'domain',