summaryrefslogtreecommitdiff
path: root/modules/networking/firewall
diff options
context:
space:
mode:
Diffstat (limited to 'modules/networking/firewall')
-rw-r--r--modules/networking/firewall/default.nix11
-rw-r--r--modules/networking/firewall/fail2ban.nix20
2 files changed, 0 insertions, 31 deletions
diff --git a/modules/networking/firewall/default.nix b/modules/networking/firewall/default.nix
deleted file mode 100644
index 074f398..0000000
--- a/modules/networking/firewall/default.nix
+++ /dev/null
@@ -1,11 +0,0 @@
-{
- imports = [ ./fail2ban.nix ];
-
- networking.firewall = {
- enable = true;
- allowPing = false;
- logReversePathDrops = true;
- logRefusedConnections = false;
- checkReversePath = "loose";
- };
-}
diff --git a/modules/networking/firewall/fail2ban.nix b/modules/networking/firewall/fail2ban.nix
deleted file mode 100644
index 6311b14..0000000
--- a/modules/networking/firewall/fail2ban.nix
+++ /dev/null
@@ -1,20 +0,0 @@
-{ pkgs, lib, ... }:
-{
- services.fail2ban = {
- enable = false;
- banaction = "nftables-multiport";
- banaction-allports = lib.mkDefault "nftables-allport";
-
- extraPackages = with pkgs; [
- nftables
- ipset
- ];
-
- ignoreIP = [
- "10.0.0.0/8"
- "172.16.0.0/12"
- "100.64.0.0/16"
- "192.168.0.0/16"
- ];
- };
-}