This commit is contained in:
2026-01-27 20:25:46 +00:00
parent c4eaabaddc
commit d33e943dd4
2 changed files with 44 additions and 9 deletions

View File

@@ -1,5 +1,5 @@
{config, ...}: {
boot.kernel.sysctl."net.ipv4.conf.eno1.rp_filter" = 0;
services.tailscale.extraSetFlags = ["--accept-routes=false"];
networking = {
useDHCP = false;
@@ -14,14 +14,14 @@
firewall = {
enable = true;
trustedInterfaces = ["eno1" "tailscale0"];
allowedUDPPorts = [
53
config.services.tailscale.port
];
allowedTCPPorts = [
22
53
];
allowedUDPPorts = [
53
config.services.tailscale.port
];
allowedTCPPorts = [
22
53
];
checkReversePath = "loose";
};
};