DOKK / manpages / debian 10 / cdist / cdist-type__pf_ruleset.7.en
CDIST-TYPE__PF_RULESET(7) cdist CDIST-TYPE__PF_RULESET(7)

cdist-type__pf_ruleset - Copy a pf(4) ruleset to $__target_host

This type is used on *BSD systems to manage the pf firewall's ruleset.

Either "absent" (no ruleset at all) or "present", defaults to "present".

If supplied, use to define the ruleset to load onto the $__target_host for pf(4). Note that this type is almost useless without a ruleset defined, but it's technically not needed, e.g. for the case of disabling the firewall temporarily.

# Remove the current ruleset in place
__pf_ruleset --state absent
# Enable the firewall with the ruleset defined in $__manifest/files/pf.conf
__pf_ruleset --state present --source $__manifest/files/pf.conf


pf(4)

Jake Guffey <jake.guffey--@--eprotex.com>

Copyright (C) 2012 Jake Guffey. You can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.

February 16, 2019 4.10.6