@ferm::rule { 'dsa-bgp':
description => 'Allow BGP from peers',
domain => '(ip ip6)',
- rule => '&SERVICE_RANGE(tcp, ssh, $bgp_peers)'
+ rule => "&SERVICE_RANGE(tcp, bgp, ($bgp_peers))"
}
+
+ file { '/etc/network/interfaces.d/anycasted':
+ content => template('roles/anycast/interfaces.erb')
+ }
+
}