stockholm/lass/2configs/retiolum.nix

28 lines
495 B
Nix

{ ... }:
{
krebs.iptables = {
tables = {
filter.INPUT.rules = [
{ predicate = "-p tcp --dport smtp"; target = "ACCEPT"; }
{ predicate = "-p tcp --dport tinc"; target = "ACCEPT"; }
{ predicate = "-p udp --dport tinc"; target = "ACCEPT"; }
];
};
};
krebs.retiolum = {
enable = true;
hosts = ../../krebs/Zhosts;
connectTo = [
"prism"
"cloudkrebs"
"echelon"
"pigstarter"
"gum"
"flap"
];
};
}