CFEngine Help: Re: Set class on values in iptables

2012-02-17 Thread no-reply
Forum: CFEngine Help Subject: Re: Set class on values in iptables Author: JarleB Link to topic: https://cfengine.com/forum/read.php?3,24793,24895#msg-24895 Have a look at http://cfengineers.org/wiki/index.php/Iptables too. ___ Help-cfengine mailing

Re: Set class on values in iptables

2012-02-12 Thread Simon Blake
On Fri, Feb 10, 2012 at 06:24:12PM +, John Mitchell said: > firewall. I can do a iptables --list to get a list, but I'm not quite > sure how to set a value on a match for a process. Ideally I'd like to do > something along the lines of > > classes: > "https_port_allowed" => if_line_in_pro

Re: Set class on values in iptables

2012-02-10 Thread Nick Anderson
On 02/10/2012 02:12 PM, John Mitchell wrote: > This was my original idea, however I tried to start simpler, I tried to > get a handle on editfiles only to realise after writing it... that I > was using cfengine 2 syntax, which was vastly different. > > I was originally looking for "# Apache" and

Re: Set class on values in iptables

2012-02-10 Thread John Mitchell
This was my original idea, however I tried to start simpler, I tried to get a handle on editfiles only to realise after writing it... that I was using cfengine 2 syntax, which was vastly different. I was originally looking for "# Apache" and if not finding it then inserting it, # Apache variou

Re: Set class on values in iptables

2012-02-10 Thread Nick Anderson
On 02/10/2012 12:24 PM, John Mitchell wrote: > Hiya, > > Sorry still learning cfEngine here, and its being a slow process but > think I'm finally getting the hang of it, but am a little stumped by one > problem. > > I'm trying to set firewall rules based on a certain set of > circumstances, ie if