stockholm/lass/2configs/retiolum.nix
2015-10-01 22:13:40 +02:00

28 lines
498 B
Nix

{ ... }:
{
krebs.iptables = {
tables = {
filter.INPUT.rules = [
{ predicate = "-p tcp --dport smtp"; target = "ACCEPT"; }
{ predicate = "-p tcp --dport tinc"; target = "ACCEPT"; }
{ predicate = "-p udp --dport tinc"; target = "ACCEPT"; }
];
};
};
krebs.retiolum = {
enable = true;
hosts = ../../krebs/Zhosts;
connectTo = [
"fastpoke"
"cloudkrebs"
"echelon"
"pigstarter"
"gum"
"flap"
];
};
}