15.108. cdist-type__pf_ruleset(7)

15.108.1. NAME

cdist-type__pf_ruleset - Copy a pf(4) ruleset to $__target_host

15.108.2. DESCRIPTION

This type is used on *BSD systems to manage the pf firewall's ruleset.

15.108.3. REQUIRED PARAMETERS

state
Either "absent" (no ruleset at all) or "present", defaults to "present".

15.108.4. OPTIONAL PARAMETERS

source
If supplied, use to define the ruleset to load onto the $__target_host for pf(4). Note that this type is almost useless without a ruleset defined, but it's technically not needed, e.g. for the case of disabling the firewall temporarily.

15.108.5. EXAMPLES

# Remove the current ruleset in place
__pf_ruleset --state absent

# Enable the firewall with the ruleset defined in $__manifest/files/pf.conf
__pf_ruleset --state present --source $__manifest/files/pf.conf

15.108.6. SEE ALSO

pf(4)

15.108.7. AUTHORS

Jake Guffey <jake.guffey--@--eprotex.com>

15.108.8. COPYING

Copyright (C) 2012 Jake Guffey. You can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.