projects
/
mirror
/
dsa-puppet.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
| inline |
side by side
use v4 for iptables and v6 for ip6tables
[mirror/dsa-puppet.git]
/
modules
/
named
/
manifests
/
init.pp
diff --git
a/modules/named/manifests/init.pp
b/modules/named/manifests/init.pp
index
5d2e250
..
719c0e7
100644
(file)
--- a/
modules/named/manifests/init.pp
+++ b/
modules/named/manifests/init.pp
@@
-25,6
+25,11
@@
class named {
mode => 775,
;
}
+ @ferm::rule { "dsa-bind":
+ domain => "(ip ip6)",
+ description => "Allow nameserver access",
+ rule => "&TCP_UDP_SERVICE(53)"
+ }
}
# vim: set fdm=marker ts=8 sw=8 et: