class firewall::rules::out::mysql ( String $ipset = 'sql_galera', ){ nftables::rule { 'default_out-mysql_tcp_3306': content => "tcp dport 3306 ip daddr @${ipset} accept", } }