From 6e2a713fb4ffb060e614c3de9c7c33f403214d7f Mon Sep 17 00:00:00 2001 From: Marcel Haerry Date: Wed, 16 Sep 2009 19:13:15 +0200 Subject: add a lot of default rules --- manifests/rules/jetty/http.pp | 9 +++++++++ manifests/rules/jetty/ssl.pp | 11 +++++++++++ 2 files changed, 20 insertions(+) create mode 100644 manifests/rules/jetty/http.pp create mode 100644 manifests/rules/jetty/ssl.pp (limited to 'manifests/rules/jetty') diff --git a/manifests/rules/jetty/http.pp b/manifests/rules/jetty/http.pp new file mode 100644 index 0000000..be19622 --- /dev/null +++ b/manifests/rules/jetty/http.pp @@ -0,0 +1,9 @@ +class shorewall::rules::jetty::http { + # dnat + shorewall::rule { + 'dnat-http-to-jetty': + destination => "net:${ipaddress}:8080", + destinationport => '80', + source => 'net', proto => 'tcp', order => 140, action => 'DNAT'; + } +} diff --git a/manifests/rules/jetty/ssl.pp b/manifests/rules/jetty/ssl.pp new file mode 100644 index 0000000..f751749 --- /dev/null +++ b/manifests/rules/jetty/ssl.pp @@ -0,0 +1,11 @@ +class shorewall::rules::jetty::ssl { + shorewall::rule { + 'net-me-jettyssl-tcp': + source => 'net', + destination => '$FW', + proto => 'tcp', + destinationport => '8443', + order => 240, + action => 'ACCEPT'; + } +} -- cgit v1.2.3