class roles::security_master {
include roles::dakmaster
+ include apache2
ssl::service { 'security-master.debian.org':
notify => Exec['service apache2 reload'],
@@ferm::rule::simple { "dsa-ssh-from-security_master-${::fqdn}":
tag => 'ssh::server::from::security_master',
description => 'Allow ssh access from security_master',
- port => '22',
+ chain => 'ssh',
saddr => $base::public_addresses,
}
}