X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=modules%2Fnfs_server%2Fmanifests%2Finit.pp;h=e5b25e5691adedb667e02d5d4ab672911c6074b2;hb=e9b0dc298740c07aff9b54bb93d40c453a9c23b7;hp=f066a57d0bad994319ec3b2bcfd52bd27f9251f0;hpb=7e2dac1093c8ac35054f50ccca12600afff08552;p=mirror%2Fdsa-puppet.git diff --git a/modules/nfs_server/manifests/init.pp b/modules/nfs_server/manifests/init.pp index f066a57d0..e5b25e569 100644 --- a/modules/nfs_server/manifests/init.pp +++ b/modules/nfs_server/manifests/init.pp @@ -18,7 +18,7 @@ class nfs_server { case $::hostname { lw01,lw02,lw03,lw04,lw09,lw10: { - $client_range = '(10.0.0.0/8 172.29.188.0/24)' + $client_range = '(172.29.188.0/24)' } milanollo,senfter: { $client_range = '172.29.122.0/24' @@ -39,23 +39,23 @@ class nfs_server { } } - @ferm::rule { 'dsa-portmap': + ferm::rule { 'dsa-portmap': description => 'Allow portmap access', rule => "&TCP_UDP_SERVICE_RANGE(111, $client_range)" } - @ferm::rule { 'dsa-nfs': + ferm::rule { 'dsa-nfs': description => 'Allow nfsd access', rule => "&TCP_UDP_SERVICE_RANGE(2049, $client_range)" } - @ferm::rule { 'dsa-status': + ferm::rule { 'dsa-status': description => 'Allow statd access', rule => "&TCP_UDP_SERVICE_RANGE(10000, $client_range)" } - @ferm::rule { 'dsa-mountd': + ferm::rule { 'dsa-mountd': description => 'Allow mountd access', rule => "&TCP_UDP_SERVICE_RANGE(10002, $client_range)" } - @ferm::rule { 'dsa-lockd': + ferm::rule { 'dsa-lockd': description => 'Allow lockd access', rule => "&TCP_UDP_SERVICE_RANGE(10003, $client_range)" }