]> gitweb.fluxo.info Git - puppet-shorewall.git/log
puppet-shorewall.git
13 years agofixup some merge gaffs
Micah Anderson [Wed, 20 Jun 2012 17:39:20 +0000 (13:39 -0400)]
fixup some merge gaffs

13 years agofix for: Syntax error at [; expected ] at /etc/puppet/modules/shorewall/manifests...
Micah Anderson [Wed, 20 Jun 2012 16:35:12 +0000 (12:35 -0400)]
fix for: Syntax error at [; expected ] at /etc/puppet/modules/shorewall/manifests/init.pp:39

13 years agofix for:
Micah Anderson [Wed, 20 Jun 2012 16:30:25 +0000 (12:30 -0400)]
fix for:

err: Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at '['; expected ']' at /etc/puppet/modules/shorewall/manifests/init.pp:39

13 years agoMerge remote-tracking branch 'immerda/master' into riseup
Micah Anderson [Wed, 20 Jun 2012 15:46:58 +0000 (11:46 -0400)]
Merge remote-tracking branch 'immerda/master' into riseup

NOTE: the conflicts in the files/shorewall.conf.Debian.squeeze I resolved by
favoring the actual debian squeeze shorewall.conf, there were a few options
in the immerda one that were not the same.

Conflicts:
README
files/shorewall.conf.Debian.squeeze
manifests/base.pp
manifests/blacklist.pp
manifests/debian.pp
manifests/host.pp
manifests/init.pp
manifests/interface.pp
manifests/masq.pp
manifests/nat.pp
manifests/params.pp
manifests/policy.pp
manifests/proxyarp.pp
manifests/rfc1918.pp
manifests/routestopped.pp
manifests/rule.pp
manifests/rule_section.pp
manifests/rules/out/ekeyd.pp
manifests/zone.pp

13 years agoSupport exempting some users from torification measures.
intrigeri [Sat, 7 Jan 2012 05:09:54 +0000 (06:09 +0100)]
Support exempting some users from torification measures.

13 years agothe rest will be included already by the client
mh [Mon, 18 Jun 2012 18:24:12 +0000 (15:24 -0300)]
the rest will be included already by the client

13 years agomigrate away from hiera stuff
mh [Thu, 14 Jun 2012 00:34:55 +0000 (21:34 -0300)]
migrate away from hiera stuff

13 years agorefactor things for >2.7
mh [Fri, 8 Jun 2012 16:15:18 +0000 (13:15 -0300)]
refactor things for >2.7

13 years agofix for new style for 2.7
mh [Wed, 6 Jun 2012 04:19:34 +0000 (01:19 -0300)]
fix for new style for 2.7

13 years agoget the order right
mh [Fri, 10 Feb 2012 14:34:35 +0000 (15:34 +0100)]
get the order right

14 years agodo the link before the service
mh [Fri, 23 Dec 2011 13:00:20 +0000 (14:00 +0100)]
do the link before the service

14 years agocorrect config file for squeeze
mh [Fri, 23 Dec 2011 10:59:06 +0000 (11:59 +0100)]
correct config file for squeeze

14 years agoremove a couple of not yet supported options
mh [Fri, 23 Dec 2011 10:05:14 +0000 (11:05 +0100)]
remove a couple of not yet supported options

14 years agoadd squeeze config file
mh [Thu, 22 Dec 2011 23:16:27 +0000 (00:16 +0100)]
add squeeze config file

14 years agobring a few things in line with the old config file
mh [Thu, 22 Dec 2011 21:35:45 +0000 (22:35 +0100)]
bring a few things in line with the old config file

14 years agoworkaround for bug in C6 version
mh [Thu, 22 Dec 2011 20:30:49 +0000 (21:30 +0100)]
workaround for bug in C6 version

14 years agoadd CentOS 6 version
mh [Thu, 22 Dec 2011 20:13:12 +0000 (21:13 +0100)]
add CentOS 6 version

14 years agoallow ssh_in source to be selected by hiera, better naming for the same option for...
mh [Sat, 5 Nov 2011 13:50:26 +0000 (14:50 +0100)]
allow ssh_in source to be selected by hiera, better naming for the same option for munin

14 years agoconfigure munin things via hiera, allow interface to be chosen
mh [Sat, 5 Nov 2011 13:15:17 +0000 (14:15 +0100)]
configure munin things via hiera, allow interface to be chosen

14 years agoAdding tunnel boilerplate
Silvio Rhatto [Wed, 14 Sep 2011 01:31:30 +0000 (22:31 -0300)]
Adding tunnel boilerplate

14 years agoAdding shorewall::tunnel
Silvio Rhatto [Wed, 14 Sep 2011 01:16:00 +0000 (22:16 -0300)]
Adding shorewall::tunnel

14 years agoThe order of the section needs to ab adjusted, otherwise things will be place at...
Marcel Haerry [Thu, 4 Aug 2011 12:03:16 +0000 (14:03 +0200)]
The order of the section needs to ab adjusted, otherwise things will be place at the wrong place

14 years agoadd missing targets
Marcel Haerry [Thu, 4 Aug 2011 11:45:48 +0000 (13:45 +0200)]
add missing targets

14 years agorefactor things to use the concat module
Marcel Haerry [Thu, 4 Aug 2011 11:39:27 +0000 (13:39 +0200)]
refactor things to use the concat module

14 years agodifferentiate between general jabberserver and openfire
Marcel Haerry [Thu, 4 Aug 2011 09:27:58 +0000 (11:27 +0200)]
differentiate between general jabberserver and openfire

14 years agonew class shorewall::rules::dns::disable
Andreas Zuber [Wed, 27 Jul 2011 15:23:07 +0000 (17:23 +0200)]
new class shorewall::rules::dns::disable

14 years agoadd management for providers
Matthias Imsand [Tue, 23 Nov 2010 17:32:45 +0000 (18:32 +0100)]
add management for providers

14 years agoadded rule for tomcat
Juerg Gerber [Mon, 25 Oct 2010 14:35:45 +0000 (16:35 +0200)]
added rule for tomcat

14 years agoadded filetransfer proxy port to jabberserver ruleset
Juerg Gerber [Tue, 21 Sep 2010 13:23:55 +0000 (15:23 +0200)]
added filetransfer proxy port to jabberserver ruleset

14 years agofix typo
Simon Josi [Thu, 11 Feb 2010 20:00:00 +0000 (21:00 +0100)]
fix typo

14 years agoadd output rule for xmpp
Simon Josi [Thu, 11 Feb 2010 16:07:30 +0000 (17:07 +0100)]
add output rule for xmpp

14 years agoallow esp traffic from and to me
mh [Tue, 26 Apr 2011 01:08:37 +0000 (03:08 +0200)]
allow esp traffic from and to me

14 years agoadded ipsec rule
o [Mon, 25 Apr 2011 23:13:58 +0000 (01:13 +0200)]
added ipsec rule

14 years agoadd outgoing smtp rule
mh [Sun, 6 Mar 2011 13:56:15 +0000 (14:56 +0100)]
add outgoing smtp rule

14 years agodo it as a define so we can easily pass multiple target zones
mh [Tue, 1 Mar 2011 23:56:36 +0000 (00:56 +0100)]
do it as a define so we can easily pass multiple target zones

14 years agoadd ekeyd rules
mh [Tue, 1 Mar 2011 20:52:14 +0000 (21:52 +0100)]
add ekeyd rules

14 years agoAdd shorewall.conf template for Debian Wheezy.
intrigeri [Mon, 20 Jun 2011 18:35:05 +0000 (20:35 +0200)]
Add shorewall.conf template for Debian Wheezy.

14 years agoallow esp traffic from and to me
mh [Tue, 26 Apr 2011 01:08:37 +0000 (03:08 +0200)]
allow esp traffic from and to me

14 years agoadded ipsec rule
o [Mon, 25 Apr 2011 23:13:58 +0000 (01:13 +0200)]
added ipsec rule

14 years agoadd outgoing smtp rule
mh [Sun, 6 Mar 2011 13:56:15 +0000 (14:56 +0100)]
add outgoing smtp rule

14 years agodo it as a define so we can easily pass multiple target zones
mh [Tue, 1 Mar 2011 23:56:36 +0000 (00:56 +0100)]
do it as a define so we can easily pass multiple target zones

14 years agoadd ekeyd rules
mh [Tue, 1 Mar 2011 20:52:14 +0000 (21:52 +0100)]
add ekeyd rules

14 years agoMake $shorewall_ensure_version = present by default
Silvio Rhatto [Mon, 14 Feb 2011 15:32:38 +0000 (13:32 -0200)]
Make $shorewall_ensure_version = present by default

14 years agoadd irc & irc-ssl outgoing rules
mh [Sun, 6 Feb 2011 23:31:33 +0000 (00:31 +0100)]
add irc & irc-ssl outgoing rules

15 years agofix missing shorewall:: prefix on the extension_script define
Micah Anderson [Thu, 3 Feb 2011 02:54:33 +0000 (21:54 -0500)]
fix missing shorewall:: prefix on the extension_script define

15 years agoAdd support for Tor-ified traffic.
intrigeri [Fri, 17 Dec 2010 18:39:44 +0000 (19:39 +0100)]
Add support for Tor-ified traffic.

15 years agoInternal refactoring of shorewall::interface
intrigeri [Thu, 16 Dec 2010 15:09:24 +0000 (16:09 +0100)]
Internal refactoring of shorewall::interface

... for more consistent options management.
The public API does not change.

15 years agoAdd shorewall::rules::mdns.
intrigeri [Thu, 16 Dec 2010 14:18:36 +0000 (15:18 +0100)]
Add shorewall::rules::mdns.

15 years agoSuggest using non-deprecated syntax in README.
intrigeri [Thu, 16 Dec 2010 14:14:05 +0000 (15:14 +0100)]
Suggest using non-deprecated syntax in README.

15 years agoNew add_options parameter to shorewall::interface.
intrigeri [Thu, 16 Dec 2010 13:52:03 +0000 (14:52 +0100)]
New add_options parameter to shorewall::interface.

15 years agoImport Debian Squeeze's shorewall.conf.
intrigeri [Thu, 16 Dec 2010 13:10:20 +0000 (14:10 +0100)]
Import Debian Squeeze's shorewall.conf.

15 years agoMerge remote branch 'immerda/master'
intrigeri [Sat, 11 Dec 2010 10:37:25 +0000 (11:37 +0100)]
Merge remote branch 'immerda/master'

15 years agoadd silc rules
mh [Thu, 4 Nov 2010 18:31:55 +0000 (19:31 +0100)]
add silc rules

15 years agoerror tcp instead of udp
Andreas [Sat, 23 Oct 2010 00:36:38 +0000 (19:36 -0500)]
error tcp instead of udp

15 years agoadd identd rules
mh [Fri, 22 Oct 2010 20:05:23 +0000 (22:05 +0200)]
add identd rules

15 years agoshorewall tinc rules
Andreas [Thu, 21 Oct 2010 23:55:32 +0000 (18:55 -0500)]
shorewall tinc rules

15 years agointroduce parametrized class for ports so we can pass the ports from the sshd module
mh [Wed, 20 Oct 2010 22:12:20 +0000 (00:12 +0200)]
introduce parametrized class for ports so we can pass the ports from the sshd module

15 years agoMerge remote branch 'riseup/master'
intrigeri [Sun, 17 Oct 2010 02:45:09 +0000 (04:45 +0200)]
Merge remote branch 'riseup/master'

Conflicts:
files/debian/default
manifests/init.pp
templates/debian/default
templates/debian_default.erb

15 years agoremove unnecessary fileserver variable (#2460)
mh [Sat, 7 Aug 2010 00:12:26 +0000 (02:12 +0200)]
remove unnecessary fileserver variable (#2460)

15 years agoenabling also hkps to keyservers
mh [Thu, 17 Jun 2010 06:33:22 +0000 (08:33 +0200)]
enabling also hkps to keyservers

15 years agoenabling also hkps on keyservers
mh [Thu, 17 Jun 2010 06:32:06 +0000 (08:32 +0200)]
enabling also hkps on keyservers

15 years agoadjust module_dir
mh [Sun, 9 May 2010 21:37:29 +0000 (23:37 +0200)]
adjust module_dir

15 years agoadapt shorewall module to new behavior of concatenated_file
mh [Wed, 5 May 2010 20:20:02 +0000 (22:20 +0200)]
adapt shorewall module to new behavior of concatenated_file

15 years agoadd disable submission port
mh [Mon, 29 Mar 2010 21:43:32 +0000 (23:43 +0200)]
add disable submission port

15 years agoadd smtp submission port
mh [Mon, 29 Mar 2010 21:41:04 +0000 (23:41 +0200)]
add smtp submission port

16 years agofix typo
mh [Sat, 9 Jan 2010 15:38:54 +0000 (16:38 +0100)]
fix typo

16 years agoadd smtp disable rule
mh [Sat, 9 Jan 2010 15:31:47 +0000 (16:31 +0100)]
add smtp disable rule

16 years agofix typo
mh [Sat, 9 Jan 2010 14:43:48 +0000 (15:43 +0100)]
fix typo

16 years agoabsent rule for gitdaemon
mh [Sat, 9 Jan 2010 14:16:26 +0000 (15:16 +0100)]
absent rule for gitdaemon

16 years agoinclude modules_dir in class
mh [Mon, 21 Dec 2009 23:45:39 +0000 (00:45 +0100)]
include modules_dir in class

16 years agoadd managesieve rules
mh [Sun, 13 Dec 2009 15:27:48 +0000 (16:27 +0100)]
add managesieve rules

16 years agodo we really need to quote the value?
mh [Thu, 10 Dec 2009 20:28:30 +0000 (21:28 +0100)]
do we really need to quote the value?

16 years agoremove unused readme
mh [Thu, 10 Dec 2009 20:25:39 +0000 (21:25 +0100)]
remove unused readme

16 years agoinitialize variable if not set
mh [Thu, 10 Dec 2009 17:13:29 +0000 (18:13 +0100)]
initialize variable if not set

16 years agoreenable centos support
mh [Thu, 10 Dec 2009 16:37:36 +0000 (17:37 +0100)]
reenable centos support

16 years agoadded $shorewall_startup variable to disable startup, enabled by default
Varac [Thu, 10 Dec 2009 11:51:22 +0000 (12:51 +0100)]
added $shorewall_startup variable to disable startup, enabled by default

16 years agoshorewall package is only missing for karmic -> treat only karmic special
mh [Mon, 7 Dec 2009 17:11:48 +0000 (18:11 +0100)]
shorewall package is only missing for karmic -> treat only karmic special

16 years agoadded todo to README
Varac [Mon, 7 Dec 2009 11:20:59 +0000 (12:20 +0100)]
added todo to README

16 years agofixed typo in README
Varac [Mon, 7 Dec 2009 11:12:12 +0000 (12:12 +0100)]
fixed typo in README

16 years agoUpdated forking information in README
Varac [Mon, 7 Dec 2009 01:00:08 +0000 (02:00 +0100)]
Updated forking information in README

16 years agoAdded Ubuntu Support. That means installed package is now shorewall-shell instead...
Varac [Sun, 6 Dec 2009 23:19:40 +0000 (00:19 +0100)]
Added Ubuntu Support. That means installed package is now shorewall-shell instead of shorewall (which is dummy package for shorewall-shell anyway).

16 years agoAdded Documentation
Varac [Sun, 6 Dec 2009 23:19:13 +0000 (00:19 +0100)]
Added Documentation

16 years agoif shorewall is default there is no need to have it twice
mh [Thu, 3 Dec 2009 15:58:18 +0000 (16:58 +0100)]
if shorewall is default there is no need to have it twice

16 years agofix lookup problem of default config, copy CentOS to be default, copy lenny to be...
mh [Thu, 3 Dec 2009 15:51:23 +0000 (16:51 +0100)]
fix lookup problem of default config, copy CentOS to be default, copy lenny to be default for debian

16 years agoupdate to 0.25.x style
mh [Sat, 14 Nov 2009 14:57:14 +0000 (15:57 +0100)]
update to 0.25.x style

16 years agoupdate file path to new 0.25 style
mh [Sun, 1 Nov 2009 23:52:24 +0000 (00:52 +0100)]
update file path to new 0.25 style

16 years agowhitespace fixes
mh [Sun, 4 Oct 2009 19:28:22 +0000 (21:28 +0200)]
whitespace fixes

16 years agoadd pop3 rules
mh [Sat, 3 Oct 2009 14:53:55 +0000 (16:53 +0200)]
add pop3 rules

16 years agoadd imap rules
mh [Sat, 3 Oct 2009 14:46:30 +0000 (16:46 +0200)]
add imap rules

16 years agoadd ibackup rule
mh [Sat, 3 Oct 2009 14:41:35 +0000 (16:41 +0200)]
add ibackup rule

16 years agoadd postgres rules
mh [Sat, 3 Oct 2009 13:33:23 +0000 (15:33 +0200)]
add postgres rules

16 years agoadd mysql rules
mh [Sat, 3 Oct 2009 13:13:00 +0000 (15:13 +0200)]
add mysql rules

16 years agoadd keyserver rules
mh [Sat, 3 Oct 2009 12:07:53 +0000 (14:07 +0200)]
add keyserver rules

16 years agouse correct define
mh [Fri, 2 Oct 2009 12:01:40 +0000 (14:01 +0200)]
use correct define

16 years agoadd puppet rules
mh [Fri, 2 Oct 2009 11:56:23 +0000 (13:56 +0200)]
add puppet rules

16 years agoadd smtps rules
duritong [Fri, 2 Oct 2009 11:18:38 +0000 (13:18 +0200)]
add smtps rules

16 years agoadd jabberserver port
mh [Tue, 29 Sep 2009 21:26:34 +0000 (23:26 +0200)]
add jabberserver port

16 years agoadd sobby instance rule
mh [Tue, 29 Sep 2009 21:22:05 +0000 (23:22 +0200)]
add sobby instance rule

16 years agoadd munin host rule
mh [Tue, 29 Sep 2009 20:20:55 +0000 (22:20 +0200)]
add munin host rule

16 years agoimprove rule handling possiblities
mh [Tue, 29 Sep 2009 18:11:52 +0000 (20:11 +0200)]
improve rule handling possiblities

they can now be set to absent as well

introduce 2 outgoing ssh rules to either
disable or remove the entry at all