summaryrefslogtreecommitdiff
path: root/manifests/rules/torify/redirect_tcp_to_tor.pp
diff options
context:
space:
mode:
authorintrigeri <intrigeri@boum.org>2012-01-07 06:09:54 +0100
committerintrigeri <intrigeri@boum.org>2012-11-11 23:11:49 +0100
commit6bc54f031b9ae12fe428c83e70733c8b2ff4c67a (patch)
tree6fa93a250d68067c079b2fb9c2feb29f81f61e37 /manifests/rules/torify/redirect_tcp_to_tor.pp
parent911cc18e594bb5a3ab642ebb24615a0447050c32 (diff)
Support exempting some users from torification measures.
Diffstat (limited to 'manifests/rules/torify/redirect_tcp_to_tor.pp')
-rw-r--r--manifests/rules/torify/redirect_tcp_to_tor.pp7
1 files changed, 1 insertions, 6 deletions
diff --git a/manifests/rules/torify/redirect_tcp_to_tor.pp b/manifests/rules/torify/redirect_tcp_to_tor.pp
index 2bee658..fe1c5fe 100644
--- a/manifests/rules/torify/redirect_tcp_to_tor.pp
+++ b/manifests/rules/torify/redirect_tcp_to_tor.pp
@@ -14,11 +14,6 @@ define shorewall::rules::torify::redirect_tcp_to_tor(
default => $originaldest,
}
- $user_real = $user ? {
- '-' => "!${shorewall::tor_user}",
- default => $user,
- }
-
$destzone = $shorewall::tor_transparent_proxy_host ? {
'127.0.0.1' => '$FW',
default => 'net'
@@ -30,7 +25,7 @@ define shorewall::rules::torify::redirect_tcp_to_tor(
destination => "${destzone}:${shorewall::tor_transparent_proxy_host}:${shorewall::tor_transparent_proxy_port}",
proto => 'tcp:syn',
originaldest => $originaldest_real,
- user => $user_real,
+ user => $user,
order => 110,
action => 'DNAT';
}