From 1be972048dd58218cd689ecb5cac562eb398b751 Mon Sep 17 00:00:00 2001 From: Jakub Stachurski Date: Sun, 17 Aug 2025 11:25:33 +0200 Subject: refreshed config --- nixos/hosts/apocalypse/firewall.nix | 50 ------------------------------------- 1 file changed, 50 deletions(-) delete mode 100644 nixos/hosts/apocalypse/firewall.nix (limited to 'nixos/hosts/apocalypse/firewall.nix') diff --git a/nixos/hosts/apocalypse/firewall.nix b/nixos/hosts/apocalypse/firewall.nix deleted file mode 100644 index 5c73966..0000000 --- a/nixos/hosts/apocalypse/firewall.nix +++ /dev/null @@ -1,50 +0,0 @@ -{pkgs, config, ...}: -let - baseTCP = [ - 22000 # Syncthng - ]; - baseUDP = [ - 22000 # Syncthing - 22027 # Syncthing - 16555 # Wireguard - ]; - baseTCPRanges = [ - { from = 1714; to = 1764; } # KDE-CONNECT - ]; - baseUDPRanges = [ - { from = 1714; to = 1764; } # KDE-CONNECT - ]; - - secureTCP = [ - 22 80 433 5900 # SSH HTTP VNC - ]; - - secureUDP = [ - 5900 - ]; - - secureTCPRanges = [ - - ]; - secureUDPRanges = [ - - ]; -in -{ - networking.firewall = { - enable = false; - allowedTCPPorts = baseTCP; - allowedUDPPorts = baseUDP; - allowedUDPPortRanges = baseUDPRanges; - allowedTCPPortRanges = baseTCPRanges; - interfaces = { - "nix-laptop" = { - allowedTCPPorts = secureTCP; - allowedUDPPorts = secureUDP; - allowedUDPPortRanges = secureUDPRanges; - allowedTCPPortRanges = secureTCPRanges; - }; - }; - }; -} - -- cgit v1.3.1