root/limitar-https/trunk/limitar_https.class @ 8
6 | antoniojas | class limitar_https {
|
|
file { "/etc/network/iptables":
|
|||
owner=>root, group=>root, mode=>644,
|
|||
source=>"puppet:///puppet.educarex.es/files/iptables",
|
|||
8 | antoniojas | notify => Exec["configurar-https"]
|
|
6 | antoniojas | }
|
|
file { "/etc/init.d/deny_https":
|
|||
owner=>root, group=>root, mode=>755,
|
|||
source=>"puppet:///puppet.educarex.es/files/deny_https",
|
|||
notify => Exec["configurar-https"],
|
|||
}
|
|||
exec { "configurar-https":
|
|||
command => "/usr/sbin/update-rc.d deny_https start 99 2 3 4 5 . stop 01 0 1 6 ; /etc/init.d/deny_https start",
|
|||
require => File["/etc/init.d/deny_https"],
|
|||
unless => "/bin/ls /etc/rc2.d/S99deny_https",
|
|||
refreshonly => true,
|
|||
}
|
|||
8 | antoniojas | file { "/usr/sbin/deny_https_update":
|
|
owner=>root, group=>root, mode=>755,
|
|||
source=>"puppet:///puppet.educarex.es/files/deny_https_update",
|
|||
}
|
|||
cron { "Actualizar-deny_https.all":
|
|||
command => "/usr/sbin/deny_https_update",
|
|||
user => root,
|
|||
hour => '08',
|
|||
minute => '15';
|
|||
6 | antoniojas | }
|
|
}
|