40 lines
884 B
Nix
40 lines
884 B
Nix
|
{ config, lib, pkgs, ... }:
|
||
|
|
||
|
with config.krebs.lib;
|
||
|
let
|
||
|
hostname = config.krebs.build.host.name;
|
||
|
in {
|
||
|
# users.users.smbguest = {
|
||
|
# name = "smbguest";
|
||
|
# uid = config.ids.uids.smbguest;
|
||
|
# description = "smb guest user";
|
||
|
# home = "/var/empty";
|
||
|
# };
|
||
|
|
||
|
users.users.download = { };
|
||
|
services.samba = {
|
||
|
enable = true;
|
||
|
shares = {
|
||
|
download = {
|
||
|
path = "/var/download";
|
||
|
"read only" = "no";
|
||
|
browseable = "yes";
|
||
|
"guest ok" = "no";
|
||
|
"valid users" = "download";
|
||
|
};
|
||
|
};
|
||
|
extraConfig = ''
|
||
|
# guest account = smbguest
|
||
|
# map to guest = bad user
|
||
|
# disable printing
|
||
|
load printers = no
|
||
|
printing = bsd
|
||
|
printcap name = /dev/null
|
||
|
disable spoolss = yes
|
||
|
'';
|
||
|
};
|
||
|
networking.firewall.extraCommands = ''
|
||
|
iptables -A INPUT -i retiolum -p tcp --dport 445 -j ACCEPT
|
||
|
'';
|
||
|
}
|