X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=modules%2Fnfs_server%2Fmanifests%2Finit.pp;h=e5b25e5691adedb667e02d5d4ab672911c6074b2;hb=a4f23b2b8214a8dc052ba3cadfd7b733cc809817;hp=480c19e701c7130ddb8d877dbcd5417fae3dd496;hpb=1f3cd8bea3ed396c5e1ab35d369e6b72bb27b3f2;p=mirror%2Fdsa-puppet.git diff --git a/modules/nfs_server/manifests/init.pp b/modules/nfs_server/manifests/init.pp index 480c19e70..e5b25e569 100644 --- a/modules/nfs_server/manifests/init.pp +++ b/modules/nfs_server/manifests/init.pp @@ -30,7 +30,7 @@ class nfs_server { $client_range = '172.29.40.0/22' } sibelius: { - $client_range = '(192.168.0.14/32 193.62.202.26/32)' + $client_range = '192.168.0.14/32' } default: { # Better than 0.0.0.0/0 - we really ought to configure a @@ -39,23 +39,23 @@ class nfs_server { } } - @ferm::rule { 'dsa-portmap': + ferm::rule { 'dsa-portmap': description => 'Allow portmap access', rule => "&TCP_UDP_SERVICE_RANGE(111, $client_range)" } - @ferm::rule { 'dsa-nfs': + ferm::rule { 'dsa-nfs': description => 'Allow nfsd access', rule => "&TCP_UDP_SERVICE_RANGE(2049, $client_range)" } - @ferm::rule { 'dsa-status': + ferm::rule { 'dsa-status': description => 'Allow statd access', rule => "&TCP_UDP_SERVICE_RANGE(10000, $client_range)" } - @ferm::rule { 'dsa-mountd': + ferm::rule { 'dsa-mountd': description => 'Allow mountd access', rule => "&TCP_UDP_SERVICE_RANGE(10002, $client_range)" } - @ferm::rule { 'dsa-lockd': + ferm::rule { 'dsa-lockd': description => 'Allow lockd access', rule => "&TCP_UDP_SERVICE_RANGE(10003, $client_range)" }