dotfiles/systems/server/networking.nix

40 lines
693 B
Nix
Raw Normal View History

2024-10-06 15:25:05 -05:00
{
lib,
flake,
...
}: let
2024-11-04 20:49:43 -06:00
inherit (flake.config.machines.devices) server;
2024-10-06 15:25:05 -05:00
in {
networking = {
hostName = server.name;
networkmanager.enable = true;
2024-11-06 22:00:45 -06:00
nftables.enable = true;
2024-10-06 15:25:05 -05:00
useDHCP = lib.mkDefault true;
firewall = {
enable = true;
allowedTCPPorts = [
22 # SSH
25 # SMTP
139 # SMTP
587 # SMTP
];
};
};
services = {
avahi = {
enable = true;
openFirewall = true;
nssmdns4 = true;
publish = {
enable = true;
userServices = true;
};
};
sshd.enable = true;
openssh = {
enable = true;
settings.PasswordAuthentication = false;
};
};
}