summaryrefslogtreecommitdiff
path: root/modules/software/networking/firewall
diff options
context:
space:
mode:
authorFuwn <[email protected]>2024-09-11 03:34:29 -0700
committerFuwn <[email protected]>2024-09-11 03:34:39 -0700
commitb84cc156236ecd4fbe0c9d458e46078df625cb47 (patch)
tree18d5355ef83ebe992074a5cbff14f393b8481b67 /modules/software/networking/firewall
parentBump: i2p (diff)
downloadnixos-config-b84cc156236ecd4fbe0c9d458e46078df625cb47.tar.xz
nixos-config-b84cc156236ecd4fbe0c9d458e46078df625cb47.zip
Bump: move networking module
Diffstat (limited to 'modules/software/networking/firewall')
-rw-r--r--modules/software/networking/firewall/default.nix11
-rw-r--r--modules/software/networking/firewall/fail2ban.nix20
2 files changed, 0 insertions, 31 deletions
diff --git a/modules/software/networking/firewall/default.nix b/modules/software/networking/firewall/default.nix
deleted file mode 100644
index 074f398..0000000
--- a/modules/software/networking/firewall/default.nix
+++ /dev/null
@@ -1,11 +0,0 @@
-{
- imports = [ ./fail2ban.nix ];
-
- networking.firewall = {
- enable = true;
- allowPing = false;
- logReversePathDrops = true;
- logRefusedConnections = false;
- checkReversePath = "loose";
- };
-}
diff --git a/modules/software/networking/firewall/fail2ban.nix b/modules/software/networking/firewall/fail2ban.nix
deleted file mode 100644
index 6311b14..0000000
--- a/modules/software/networking/firewall/fail2ban.nix
+++ /dev/null
@@ -1,20 +0,0 @@
-{ pkgs, lib, ... }:
-{
- services.fail2ban = {
- enable = false;
- banaction = "nftables-multiport";
- banaction-allports = lib.mkDefault "nftables-allport";
-
- extraPackages = with pkgs; [
- nftables
- ipset
- ];
-
- ignoreIP = [
- "10.0.0.0/8"
- "172.16.0.0/12"
- "100.64.0.0/16"
- "192.168.0.0/16"
- ];
- };
-}