1 { pkgs, lib, config, ... }:
3 inherit (config.users) users;
8 acme/sourcephile.fr.nix
10 networking.nftables.ruleset = ''
12 set output-net-lego-ipv4 { type ipv4_addr; }
13 set output-net-lego-ipv6 { type ipv6_addr; }
15 skuid ${users.acme.name} \
16 meta l4proto { udp, tcp } th dport domain \
17 ip daddr @output-net-lego-ipv4 \
20 skuid ${users.acme.name} \
21 meta l4proto { udp, tcp } th dport domain \
22 ip6 daddr @output-net-lego-ipv6 \
31 environment.systemPackages = [