chagend firewall settings

This commit is contained in:
Alexander Szczepanski
2021-06-18 20:49:04 +02:00
parent e635f2f948
commit 84307f1160

View File

@ -79,6 +79,7 @@
enable = true; enable = true;
permitRootLogin = "no"; permitRootLogin = "no";
passwordAuthentication = false; passwordAuthentication = false;
openFirewall = true;
}; };
security.acme.email = "webmaster@szczepan.ski"; security.acme.email = "webmaster@szczepan.ski";
@ -156,8 +157,8 @@
systemd.services.fail2ban.serviceConfig.LimitSTACK = 256 * 1024; systemd.services.fail2ban.serviceConfig.LimitSTACK = 256 * 1024;
# Open ports in the firewall. # Open ports in the firewall.
networking.firewall.allowedTCPPorts = [ 22 80 443 ]; networking.firewall.allowedTCPPorts = [ 80 443 ];
networking.firewall.allowedUDPPorts = [ 22 80 443 ]; networking.firewall.allowedUDPPorts = [ 80 443 ];
# Or disable the firewall altogether. # Or disable the firewall altogether.
# networking.firewall.enable = false; # networking.firewall.enable = false;