networking = {
inherit hostName;
- domain = mkDefault "wg";
+ domain = mkDefault "sp";
#search = [ "sourcephile.fr" ];
firewall = {
enable = mkDefault true;
programs.traceroute.enable = mkDefault true;
programs.usbtop.enable = true;
- services.avahi = {
- nssmdns = mkDefault true;
- openFirewall = mkDefault false;
- publish.enable = mkDefault false;
- };
- networking.nftables.ruleset = mkIf config.services.avahi.enable (''
- table inet filter {
- chain output-lan {
- skuid root udp sport mdns udp dport mdns comment "avahi: multicast DNS"
- }
- }
- '' + optionalString config.services.avahi.openFirewall ''
- table inet filter {
- chain input-lan {
- udp dport mdns comment "avahi: multicast DNS"
- }
- }
- '');
-
services.openssh.enable = mkDefault true;
# Fix https://github.com/NixOS/nixpkgs/issues/180175 by removing -s (aka. --wait-for-startup)