diff options
| author | Fuwn <[email protected]> | 2024-09-05 02:49:29 -0700 |
|---|---|---|
| committer | Fuwn <[email protected]> | 2024-09-05 02:49:29 -0700 |
| commit | 9e0867dcd9e0caaa5ef73061e9c7a3375d45f0fb (patch) | |
| tree | f1421d282f33eb6954475819dda043175e076964 /modules/system/networking/firewall/default.nix | |
| parent | Bump (diff) | |
| download | nixos-config-9e0867dcd9e0caaa5ef73061e9c7a3375d45f0fb.tar.xz nixos-config-9e0867dcd9e0caaa5ef73061e9c7a3375d45f0fb.zip | |
Bump
Diffstat (limited to 'modules/system/networking/firewall/default.nix')
| -rw-r--r-- | modules/system/networking/firewall/default.nix | 11 |
1 files changed, 11 insertions, 0 deletions
diff --git a/modules/system/networking/firewall/default.nix b/modules/system/networking/firewall/default.nix new file mode 100644 index 0000000..074f398 --- /dev/null +++ b/modules/system/networking/firewall/default.nix @@ -0,0 +1,11 @@ +{ + imports = [ ./fail2ban.nix ]; + + networking.firewall = { + enable = true; + allowPing = false; + logReversePathDrops = true; + logRefusedConnections = false; + checkReversePath = "loose"; + }; +} |