- create classes for each class of in/out traffic - use hier_include to add firewall rules to each role
11 lines
209 B
Puppet
11 lines
209 B
Puppet
class firewall::rules::in::mysql (
|
|
Array[Stdlib::Port] $ports = [3306],
|
|
) {
|
|
|
|
$ports.each |$port| {
|
|
nftables::rule { "default_in-mysql_${port}":
|
|
content => "tcp dport ${port} accept",
|
|
}
|
|
}
|
|
}
|