summaryrefslogtreecommitdiff
path: root/hosts/surtr/default.nix
diff options
context:
space:
mode:
authorGregor Kleen <gkleen@yggdrasil.li>2021-12-13 18:05:08 +0100
committerGregor Kleen <gkleen@yggdrasil.li>2021-12-13 18:05:08 +0100
commit1f0101786a8c3eb9767132bf5317672b3cf9d16c (patch)
tree6fefd72f50cbea3121870f5bd0f31d917bd4d826 /hosts/surtr/default.nix
parent570df959e20b32884cb8ba62a6509257dbf20ce7 (diff)
downloadnixos-1f0101786a8c3eb9767132bf5317672b3cf9d16c.tar
nixos-1f0101786a8c3eb9767132bf5317672b3cf9d16c.tar.gz
nixos-1f0101786a8c3eb9767132bf5317672b3cf9d16c.tar.bz2
nixos-1f0101786a8c3eb9767132bf5317672b3cf9d16c.tar.xz
nixos-1f0101786a8c3eb9767132bf5317672b3cf9d16c.zip
surtr: nftables
Diffstat (limited to 'hosts/surtr/default.nix')
-rw-r--r--hosts/surtr/default.nix6
1 files changed, 6 insertions, 0 deletions
diff --git a/hosts/surtr/default.nix b/hosts/surtr/default.nix
index 028ae832..61d28f22 100644
--- a/hosts/surtr/default.nix
+++ b/hosts/surtr/default.nix
@@ -64,6 +64,12 @@
64 ]; 64 ];
65 }; 65 };
66 66
67 firewall.enable = false;
68 nftables = {
69 enable = true;
70 rulesetFile = ./ruleset.nft;
71 };
72
67 firewall = { 73 firewall = {
68 enable = true; 74 enable = true;
69 allowPing = true; 75 allowPing = true;