1 { flakes, pkgs, lib, config, ... }:
3 inherit (builtins) readFile;
4 inherit (config.users) users;
15 networking.nftables.ruleset = ''
16 add rule inet filter fw2net tcp dport {25,465} skuid ${users.julm.name} counter accept comment "SMTP"
17 add rule inet filter fw2net tcp dport 43 skuid ${users.julm.name} counter accept comment "Whois"
18 add rule inet filter fw2net tcp dport 563 skuid ${users.julm.name} counter accept comment "NNTPS"
19 add rule inet filter fw2net tcp dport 6697 skuid ${users.julm.name} counter accept comment "IRCS"
20 add rule inet filter fw2net tcp dport 11371 skuid ${users.julm.name} counter accept comment "HKP"
27 openssh.authorizedKeys.keys = [
28 (readFile (flakes.secrets + "/machines/losurdo/root/ssh/id_ed25519.pub"))
30 users."julm".openssh.authorizedKeys.keys;