From 6e3dd18633cc88e71fd980cadda2ec7e442f7e4a Mon Sep 17 00:00:00 2001 From: Gabriel Arazas Date: Wed, 2 Oct 2024 10:43:05 +0800 Subject: [PATCH] hosts/plover: update firewall and networking setup --- configs/nixos/plover/modules/services/firewall.nix | 8 ++++---- configs/nixos/plover/modules/services/networking.nix | 6 ++---- 2 files changed, 6 insertions(+), 8 deletions(-) diff --git a/configs/nixos/plover/modules/services/firewall.nix b/configs/nixos/plover/modules/services/firewall.nix index 4f043d1a..ce276b6f 100644 --- a/configs/nixos/plover/modules/services/firewall.nix +++ b/configs/nixos/plover/modules/services/firewall.nix @@ -10,12 +10,12 @@ in config = lib.mkIf cfg.enable { networking = { nftables.enable = true; - domain = "foodogsquared.one"; firewall = { enable = true; - allowedTCPPorts = [ - 22 # Secure Shells. - ]; + + # Secure Shells + allowedTCPPorts = [ 22 ]; + allowedUDPPorts = [ 22 ]; }; }; }; diff --git a/configs/nixos/plover/modules/services/networking.nix b/configs/nixos/plover/modules/services/networking.nix index d5ad7afd..43870490 100644 --- a/configs/nixos/plover/modules/services/networking.nix +++ b/configs/nixos/plover/modules/services/networking.nix @@ -77,10 +77,8 @@ in domains = [ config.networking.domain ]; routes = lib.singleton { - routeConfig = { - Gateway = wan.ipv4Gateway; - GatewayOnLink = true; - }; + Gateway = wan.ipv4Gateway; + GatewayOnLink = true; }; linkConfig.RequiredForOnline = "routable";