mark: A photo of Mark kneeling on top of the Taal Volcano in the Philippines. It was a long hike. (Default)
Mark Smith ([staff profile] mark) wrote in [site community profile] changelog2009-04-10 07:27 am

[dw-ops] Open up port 443 on the Perlbals, and add a new internal server IP.

[commit: http://hg.dwscoalition.org/dw-ops/rev/6bd3618f66eb]

Open up port 443 on the Perlbals, and add a new internal server IP.

Patch by [staff profile] mark.

Files modified:
  • puppet/manifests/serverclass/perlbal.pp
  • puppet/modules/iptables/templates/dreamwidth.erb
--------------------------------------------------------------------------------
diff -r 00a4b51e6cc5 -r 6bd3618f66eb puppet/manifests/serverclass/perlbal.pp
--- a/puppet/manifests/serverclass/perlbal.pp	Thu Apr 09 04:04:40 2009 +0000
+++ b/puppet/manifests/serverclass/perlbal.pp	Fri Apr 10 07:27:51 2009 +0000
@@ -14,8 +14,8 @@
 #
 
 class iptables::dreamwidth::perlbal inherits iptables::dreamwidth {
-    # open up incoming port 80
-    Iptables::Rules["dreamwidth"] { allowed_ports => [ 80 ] }
+    # open up incoming port 80 and 443
+    Iptables::Rules["dreamwidth"] { allowed_ports => [ 80, 443 ] }
 }
 
 class serverclass::perlbal inherits serverclass::dreamwidth {
diff -r 00a4b51e6cc5 -r 6bd3618f66eb puppet/modules/iptables/templates/dreamwidth.erb
--- a/puppet/modules/iptables/templates/dreamwidth.erb	Thu Apr 09 04:04:40 2009 +0000
+++ b/puppet/modules/iptables/templates/dreamwidth.erb	Fri Apr 10 07:27:51 2009 +0000
@@ -25,6 +25,7 @@
 -A INPUT -s 10.176.64.134 -j ACCEPT
 -A INPUT -s 10.176.64.135 -j ACCEPT
 -A INPUT -s 10.176.64.137 -j ACCEPT
+-A INPUT -s 10.176.68.231 -j ACCEPT
 
 # Accepts all established inbound connections
 -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
--------------------------------------------------------------------------------

Post a comment in response:

This account has disabled anonymous posting.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org