diff options
Diffstat (limited to 'modules/desktop/networking')
| -rw-r--r-- | modules/desktop/networking/default.nix | 1 | ||||
| -rw-r--r-- | modules/desktop/networking/firewall/default.nix | 11 | ||||
| -rw-r--r-- | modules/desktop/networking/firewall/fail2ban.nix | 20 |
3 files changed, 0 insertions, 32 deletions
diff --git a/modules/desktop/networking/default.nix b/modules/desktop/networking/default.nix index 37267c2..d8fd85e 100644 --- a/modules/desktop/networking/default.nix +++ b/modules/desktop/networking/default.nix @@ -1,6 +1,5 @@ { imports = [ - ./firewall ./caddy.nix ./dhcpcd.nix ./i2p.nix diff --git a/modules/desktop/networking/firewall/default.nix b/modules/desktop/networking/firewall/default.nix deleted file mode 100644 index 074f398..0000000 --- a/modules/desktop/networking/firewall/default.nix +++ /dev/null @@ -1,11 +0,0 @@ -{ - imports = [ ./fail2ban.nix ]; - - networking.firewall = { - enable = true; - allowPing = false; - logReversePathDrops = true; - logRefusedConnections = false; - checkReversePath = "loose"; - }; -} diff --git a/modules/desktop/networking/firewall/fail2ban.nix b/modules/desktop/networking/firewall/fail2ban.nix deleted file mode 100644 index 6311b14..0000000 --- a/modules/desktop/networking/firewall/fail2ban.nix +++ /dev/null @@ -1,20 +0,0 @@ -{ pkgs, lib, ... }: -{ - services.fail2ban = { - enable = false; - banaction = "nftables-multiport"; - banaction-allports = lib.mkDefault "nftables-allport"; - - extraPackages = with pkgs; [ - nftables - ipset - ]; - - ignoreIP = [ - "10.0.0.0/8" - "172.16.0.0/12" - "100.64.0.0/16" - "192.168.0.0/16" - ]; - }; -} |