cdist-type__pf_ruleset(7)
cdist-typepf_ruleset - Copy a pf(4) ruleset to $target_host
This type is used on *BSD systems to manage the pf firewall’s ruleset.
-
state
-
Either "absent" (no ruleset at all) or "present"
-
source
-
If supplied, use to define the ruleset to load onto the $__target_host for pf(4).
Note that this type is almost useless without a ruleset defined, but it’s technically not
needed, e.g. for the case of disabling the firewall temporarily.
# Remove the current ruleset in place
__pf_ruleset --state absent
# Enable the firewall with the ruleset defined in $__manifest/files/pf.conf
__pf_ruleset --state present --source $__manifest/files/pf.conf
Copyright (C) 2012 Jake Guffey. Free use of this software is
granted under the terms of the GNU General Public License version 3 (GPLv3).