- create classes for each class of in/out traffic - use hier_include to add firewall rules to each role
27 lines
599 B
YAML
27 lines
599 B
YAML
---
|
|
profiles::packages::include:
|
|
cobbler: {}
|
|
cobbler3.2-web: {}
|
|
httpd: {}
|
|
syslinux: {}
|
|
dnf-plugins-core: {}
|
|
debmirror: {}
|
|
pykickstart: {}
|
|
fence-agents: {}
|
|
selinux-policy-devel: {}
|
|
ipxe-bootimgs: {}
|
|
|
|
profiles::pki::vault::alt_names:
|
|
- cobbler.main.unkin.net
|
|
|
|
profiles::cobbler::params::service_cname: 'cobbler.main.unkin.net'
|
|
profiles::selinux::setenforce::mode: permissive
|
|
|
|
hiera_include:
|
|
- profiles::selinux::setenforce
|
|
- firewall::rules::in::cobbler
|
|
- firewall::rules::in::http
|
|
- firewall::rules::in::https
|
|
- firewall::rules::in::tftp
|
|
- firewall::rules::in::sshd
|