Skip to content

Commit f5020b0

Browse files
committed
fix(linux): update firewall definition
1 parent dfd24a5 commit f5020b0

File tree

1 file changed

+8
-1
lines changed

1 file changed

+8
-1
lines changed

system/linux/network.nix

Lines changed: 8 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,11 +2,18 @@
22
{
33
networking = {
44
useNetworkd = true;
5-
firewall.enable = false;
65
# this is overridden by NetworkManager on workstations
76
useDHCP = lib.mkDefault true;
87
# this is not compatible with networkd
98
useHostResolvConf = false;
9+
# firewall currently disabled as not completely configured
10+
firewall = {
11+
enable = false;
12+
trustedInterfaces = [
13+
# libvirt uses iptables directly
14+
"virbr0"
15+
];
16+
};
1017
};
1118

1219
services.firewalld.enable = config.networking.firewall.enable;

0 commit comments

Comments
 (0)