diff options
author | Franck Cuny <franck@fcuny.net> | 2023-05-02 19:30:39 -0700 |
---|---|---|
committer | Franck Cuny <franck@fcuny.net> | 2023-05-02 19:30:39 -0700 |
commit | b6d6b6f366c3cbf7e7340f08ea8877bf0a8d45e7 (patch) | |
tree | c45c1011b194c0982ba82c5f2f06d18941a916ca /modules/services | |
parent | profiles/default: move stuff related to boot (diff) | |
download | world-b6d6b6f366c3cbf7e7340f08ea8877bf0a8d45e7.tar.gz |
profiles: consolidates common networking bits
This remove ssh on workstations. I also drop mosh since I don't use it.
Diffstat (limited to 'modules/services')
-rw-r--r-- | modules/services/default.nix | 3 | ||||
-rw-r--r-- | modules/services/fwupd/default.nix | 5 | ||||
-rw-r--r-- | modules/services/ssh-server/default.nix | 17 | ||||
-rw-r--r-- | modules/services/tailscale/default.nix | 15 |
4 files changed, 0 insertions, 40 deletions
diff --git a/modules/services/default.nix b/modules/services/default.nix index 457d86a..b6b34d5 100644 --- a/modules/services/default.nix +++ b/modules/services/default.nix @@ -5,16 +5,13 @@ ./avahi ./backup ./cgit - ./fwupd ./gitolite ./monitoring ./navidrome ./nginx ./samba ./sendsms - ./ssh-server ./syncthing - ./tailscale ./transmission ./unifi ]; diff --git a/modules/services/fwupd/default.nix b/modules/services/fwupd/default.nix deleted file mode 100644 index 52dc13e..0000000 --- a/modules/services/fwupd/default.nix +++ /dev/null @@ -1,5 +0,0 @@ -{ ... }: - -{ - services.fwupd.enable = true; -} diff --git a/modules/services/ssh-server/default.nix b/modules/services/ssh-server/default.nix deleted file mode 100644 index ce5d4c8..0000000 --- a/modules/services/ssh-server/default.nix +++ /dev/null @@ -1,17 +0,0 @@ -{ ... }: { - services.openssh = { - enable = true; - permitRootLogin = "yes"; - passwordAuthentication = false; - }; - - programs.mosh.enable = true; - - networking.firewall.allowedTCPPorts = [ 22 ]; - - # Relevant ports for mosh - networking.firewall.allowedUDPPortRanges = [{ - from = 6000; - to = 6100; - }]; -} diff --git a/modules/services/tailscale/default.nix b/modules/services/tailscale/default.nix deleted file mode 100644 index 14753f4..0000000 --- a/modules/services/tailscale/default.nix +++ /dev/null @@ -1,15 +0,0 @@ -{ config, lib, ... }: -let cfg = config.my.services.tailscale; -in -{ - - options.my.services.tailscale = with lib; { - enable = mkEnableOption "tailscale configuration"; - }; - - config = lib.mkIf cfg.enable { - services.tailscale.enable = true; - networking.firewall.trustedInterfaces = [ "tailscale0" ]; - networking.firewall.checkReversePath = "loose"; - }; -} |