大厨翻录
这本说明书使用 ript 库提供了简单的 iptables 配置,以提供一些自定义的 Chef 资源。
资源
ript_rule
ript_rule 'my_rule' do
ript do
partition "joeblogsco" do
label "www.joeblogsco.com" , :address => "172.19.56.216"
label "app-01" , :address => "192.168.5.230"
label "bad guys" , :address => "10.0.0.0/8"
rewrite "public website + ssh access" , :log => true do
ports 80