X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=modules%2Fferm%2Fmanifests%2Fftp_conntrack.pp;h=d64d40956c3f918676c69f5330a5473bc5759da1;hb=c2c8e61643fa8da97cf179a6c609fde88822147f;hp=868110b378b6c5f990f8bb0ef42b1dc355b50157;hpb=c900f03686f913f87c1163a03a24f90193175318;p=mirror%2Fdsa-puppet.git diff --git a/modules/ferm/manifests/ftp_conntrack.pp b/modules/ferm/manifests/ftp_conntrack.pp index 868110b37..d64d40956 100644 --- a/modules/ferm/manifests/ftp_conntrack.pp +++ b/modules/ferm/manifests/ftp_conntrack.pp @@ -1,7 +1,6 @@ class ferm::ftp_conntrack { - # Allow non-passive connections to an FTP server - @ferm::rule { 'dsa-ftp-conntrack-client': + ferm::rule { 'dsa-ftp-conntrack-client': domain => '(ip ip6)', description => 'ftp client connection tracking', table => 'raw', @@ -10,7 +9,7 @@ class ferm::ftp_conntrack { } # Allow passive connections from an FTP client - @ferm::rule { 'dsa-ftp-conntrack-server': + ferm::rule { 'dsa-ftp-conntrack-server': domain => '(ip ip6)', description => 'ftp server connection tracking', table => 'raw',