#
shorewall::policy { 'vm-net':
sourcezone => 'vm',
- destinationzone => 'net',
+ destinationzone => 'net',
policy => 'ACCEPT',
order => 1,
}
policy => 'ACCEPT',
order => 3,
}
-
+
shorewall::policy { 'net-all':
sourcezone => 'net',
- destinationzone => 'all',
+ destinationzone => 'all',
policy => 'DROP',
order => 4,
}
shorewall::tcrules { "ssh-tcp":
order => "1",
source => "0.0.0.0/0",
- destination => "0.0.0.0/0",
+ destination => "0.0.0.0/0",
protocol => "tcp",
ports => "22",
}
shorewall::tcrules { "ssh-udp":
order => "1",
source => "0.0.0.0/0",
- destination => "0.0.0.0/0",
+ destination => "0.0.0.0/0",
protocol => "udp",
ports => "22",
}