1 { flakes, pkgs, lib, config, machineName, ... }:
3 croc = config.services.croc;
6 networking.nftables.ruleset = ''
7 add rule inet filter net2fw tcp dport {${lib.concatMapStringsSep "," toString croc.ports}} counter accept comment "croc"
11 pass = builtins.readFile (flakes.secrets + "/croc/pass");