permissions fixup
authorStephen Gran <steve@lobefin.net>
Sat, 20 Feb 2010 21:25:07 +0000 (21:25 +0000)
committerStephen Gran <steve@lobefin.net>
Sat, 20 Feb 2010 21:25:07 +0000 (21:25 +0000)
Signed-off-by: Stephen Gran <steve@lobefin.net>
modules/ferm/manifests/init.pp
modules/ferm/manifests/real.pp

index c07449f..0fa6063 100644 (file)
@@ -4,7 +4,7 @@ class ferm {
                        ensure  => present,
                        owner   => root,
                        group   => root,
-                       mode    => 0600,
+                       mode    => 0400,
                        content => template("ferm/ferm-rule.erb"),
                         notify  => Exec["ferm restart"],
                }
index e3a1a0f..23fe0bb 100644 (file)
@@ -9,14 +9,17 @@ class ferm::real inherits ferm {
                 "/etc/ferm/ferm.conf":
                         source  => "puppet:///ferm/ferm.conf",
                         require => Package["ferm"],
+                        mode    => 0400,
                         notify  => Exec["ferm restart"];
                 "/etc/ferm/conf.d/me.conf":
                         content => template("ferm/me.conf.erb"),
                         require => Package["ferm"],
+                        mode    => 0400,
                         notify  => Exec["ferm restart"];
                 "/etc/ferm/conf.d/defs.conf":
                         source  => "puppet:///ferm/defs.conf",
                         require => Package["ferm"],
+                        mode    => 0400,
                         notify  => Exec["ferm restart"];
         }