projects
/
mirror
/
dsa-puppet.git
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
tree
raw
|
patch
| inline |
side by side
(parent:
c234315
)
Allow DC19 access to the PG on vittoria, re: RT#7845
author
Peter Palfrader
<peter@palfrader.org>
Fri, 19 Jul 2019 10:06:13 +0000
(12:06 +0200)
committer
Peter Palfrader
<peter@palfrader.org>
Fri, 19 Jul 2019 10:06:13 +0000
(12:06 +0200)
modules/roles/manifests/veyepar.pp
patch
|
blob
|
history
diff --git
a/modules/roles/manifests/veyepar.pp
b/modules/roles/manifests/veyepar.pp
index
a602475
..
4f8aa21
100644
(file)
--- a/
modules/roles/manifests/veyepar.pp
+++ b/
modules/roles/manifests/veyepar.pp
@@
-1,3
+1,16
@@
class roles::veyepar {
ssl::service { 'veyepar.debian.org': notify => Exec['service apache2 reload'], key => true, }
+
+ $now = Timestamp()
+ $date = $now.strftime('%F')
+
+ if versioncmp($date, '2019-08-15') <= 0 {
+ @ferm::rule { 'temporary-dc19-access':
+ description => 'temporarily allow DC19 access, cf. RT#7845',
+ rule => '&SERVICE_RANGE(tcp, 5432, ( 200.134.17.48/28 ))',
+ }
+ } else {
+ notify {"Temporary DC19 ferm rule expired, cf. RT#7845":
+ loglevel => warning, }
+ }
}