Managing iptables with Cfengine
[Cfengine|http://www.cfengine.org] is an awesome tool for managing any number of machines between 2 and 200,000. You probably already knew that. If you’re using Cfengine, you probably also know that it can get pretty verbose, especially for more complex edits. If you have a configuration file wherein order matters, adding a line suddenly becomes nontrivial. iptables…