1
1
Fork 1
mirror of https://github.com/oddlama/nix-config.git synced 2025-10-10 23:00:39 +02:00

feat: automatically generate allowedTCPPorts for mdns enabled

interfaces; simplify nftables rules by adding a general untrusted zone
This commit is contained in:
oddlama 2023-05-27 01:59:28 +02:00
parent e37601b486
commit 41df399bb6
No known key found for this signature in database
GPG key ID: 14EFE510775FE39A
14 changed files with 231 additions and 168 deletions

View file

@ -89,19 +89,16 @@
stateVersion = "23.05";
hosts = {
nom = {
hosts = let
nixos = system: {
type = "nixos";
system = "x86_64-linux";
};
ward = {
type = "nixos";
system = "x86_64-linux";
};
zackbiene = {
type = "nixos";
system = "aarch64-linux";
inherit system;
};
in {
nom = nixos "x86_64-linux";
#sentinel = nixos "x86_64-linux";
ward = nixos "x86_64-linux";
zackbiene = nixos "aarch64-linux";
};
colmena = import ./nix/colmena.nix inputs;