[PATCH] Temporary setting for galgoci

Toshio Kuratomi a.badger at gmail.com
Mon Aug 24 22:08:02 UTC 2009


On 08/24/2009 03:08 PM, Mike McGrath wrote:
> ---
>  manifests/servergroups/proxy.pp |    3 ++-
>  1 files changed, 2 insertions(+), 1 deletions(-)
> 
> diff --git a/manifests/servergroups/proxy.pp b/manifests/servergroups/proxy.pp
> index bdea7b6..70bbcf4 100644
> --- a/manifests/servergroups/proxy.pp
> +++ b/manifests/servergroups/proxy.pp
> @@ -741,7 +741,8 @@ class proxy {
>      # Firewall Rules, allow HTTP traffic through
>      $tcpPorts = [ 80, 443, 873, 8080 ]
>      $udpPorts = []
> -    $custom = []
> +    $custom = ['-A INPUT -p tcp -m tcp  --dport 80 -j ACCEPT', 
> +                '-A INPUT -p tcp -m tcp --sport 80 -j DROP']
>  
>      iptables { "/etc/sysconfig/iptables":
>          content => template("system/iptables-template.conf.erb"),

+1

-Toshio

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: OpenPGP digital signature
URL: <http://listman.redhat.com/archives/fedora-infrastructure-list/attachments/20090824/372f6732/attachment.sig>


More information about the Fedora-infrastructure-list mailing list