From: Peter Palfrader Date: Wed, 2 Mar 2011 18:27:23 +0000 (+0100) Subject: different rules names for different domains X-Git-Url: https://git.adam-barratt.org.uk/?a=commitdiff_plain;h=be7d458a9c868fc0412eeb25dfb7e1f0fb664531;p=mirror%2Fdsa-puppet.git different rules names for different domains --- diff --git a/modules/unbound/manifests/init.pp b/modules/unbound/manifests/init.pp index 8e5d31d03..7fca15ee5 100644 --- a/modules/unbound/manifests/init.pp +++ b/modules/unbound/manifests/init.pp @@ -48,12 +48,12 @@ class unbound { case getfromhash($nodeinfo, 'hoster', 'allow_dns_query') { false: {} default: { - @ferm::rule { "dsa-bind": + @ferm::rule { "dsa-dns": domain => "ip", description => "Allow nameserver access", rule => sprintf("&TCP_UDP_SERVICE_RANGE(53, %s)", join_spc(filter_ipv4(getfromhash($nodeinfo, 'hoster', 'allow_dns_query')))), } - @ferm::rule { "dsa-bind": + @ferm::rule { "dsa-dns6": domain => "ip6", description => "Allow nameserver access", rule => sprintf("&TCP_UDP_SERVICE_RANGE(53, %s)", join_spc(filter_ipv6(getfromhash($nodeinfo, 'hoster', 'allow_dns_query')))),