From 8b5e5079e5fd00eadf2e3926c104e4ecf99a5779 Mon Sep 17 00:00:00 2001 From: Fuwn Date: Wed, 4 Sep 2024 19:57:20 -0700 Subject: refac --- modules/system/networking/firewall.nix | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 modules/system/networking/firewall.nix (limited to 'modules/system/networking/firewall.nix') diff --git a/modules/system/networking/firewall.nix b/modules/system/networking/firewall.nix new file mode 100644 index 0000000..569089c --- /dev/null +++ b/modules/system/networking/firewall.nix @@ -0,0 +1,12 @@ +{ + networking.firewall = { + enable = true; + allowedUDPPorts = [ 53 ]; + allowPing = false; + + allowedTCPPorts = [ + 80 + 443 + ]; + }; +} -- cgit v1.2.3