nixos/hosts/server/firewall.nix
2024-06-08 01:56:21 +02:00

14 lines
216 B
Nix

{
services.fail2ban = {
enable = true;
maxretry = 3;
ignoreIP = [ "127.0.0.0/8" "10.0.0.0/8" "192.168.0.0/16" ];
};
networking.firewall = {
enable = true;
allowedTCPPorts = [ 22 ];
};
}