From bc6bfc593ecd4e565a6721d92ea3fe45fd81b7df Mon Sep 17 00:00:00 2001 From: Ben Nemec Date: Mon, 3 Apr 2017 14:04:47 +0000 Subject: Use correct manage_firewall hieradata The manage_firewall hieradata was moved to tripleo::firewall::manage_firewall but some of the references to it were not updated, which makes it impossible to completely disable the firewall rules. Change-Id: I5f40f3b8b07bd312cce862aa319b8a1ef331ee49 Closes-Bug: 1679189 --- manifests/haproxy/endpoint.pp | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'manifests/haproxy') diff --git a/manifests/haproxy/endpoint.pp b/manifests/haproxy/endpoint.pp index da2aba3..16e0bd1 100644 --- a/manifests/haproxy/endpoint.pp +++ b/manifests/haproxy/endpoint.pp @@ -147,7 +147,7 @@ define tripleo::haproxy::endpoint ( server_names => $server_names, options => $member_options, } - if hiera('manage_firewall', true) { + if hiera('tripleo::firewall::manage_firewall', true) { include ::tripleo::firewall # This block will construct firewall rules only when we specify # a port for the regular service and also the ssl port for the service. -- cgit 1.2.3-korg