From 7635beefb7b10064050fb9ca61c3e342bf4a5bfa Mon Sep 17 00:00:00 2001 From: Bun Date: Tue, 18 Mar 2025 02:52:30 -0400 Subject: [PATCH] Change to more generic firewall rule --- hosts/midas/firewall/default.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/hosts/midas/firewall/default.nix b/hosts/midas/firewall/default.nix index fbab437e..7f7637ec 100644 --- a/hosts/midas/firewall/default.nix +++ b/hosts/midas/firewall/default.nix @@ -2,8 +2,8 @@ { networking = { firewall.extraInputRules = '' - ip saddr { 10.0.0.0/24, 10.1.0.0/24, 10.2.0.0/24, 10.100.0.0/24 } tcp dport 2049 accept comment "Accept NFS" - ip saddr { ${config.ips.pc}, ${config.secrets.ips.luna}, ${config.secrets.ips.corn} } tcp dport { 1935, 1945 } accept comment "Accept RTMP" + ip saddr { 10.0.0.0/8, 10.100.0.0/24 } tcp dport 2049 accept comment "Accept NFS" + ip saddr { 10.0.0.0/8, ${config.secrets.ips.luna}, ${config.secrets.ips.corn} } tcp dport { 1935, 1945 } accept comment "Accept RTMP" ''; # Nftables configuration only if server is enabled