}
@ferm::rule { 'dsa-bacula-fd':
- domain => '(ip ip6)',
+ domain => '(ip)',
description => 'Allow bacula access from storage and director',
rule => "proto tcp mod state state (NEW) dport (bacula-fd) saddr ($bacula_director_address) ACCEPT",
}
$allhosts = keys($site::allnodeinfo)
bacula_client { $allhosts: }
+
+ @ferm::rule { 'dsa-bacula-dir':
+ domain => '(ip ip6)',
+ description => 'Allow bacula access from localhost,
+ rule => "proto tcp mod state state (NEW) dport (bacula-dir) saddr ($bacula_director_address localhost) ACCEPT",
+ }
+
}