From 1bd9bcf59f2f441effb6c5eb95b55ceff3f03391 Mon Sep 17 00:00:00 2001 From: Jimbo Date: Sun, 20 Oct 2024 19:43:18 -0400 Subject: [PATCH] Change server firewall --- modules/system/devices/networking/firewall/server/default.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/modules/system/devices/networking/firewall/server/default.nix b/modules/system/devices/networking/firewall/server/default.nix index 295a3cb..5ebf30a 100644 --- a/modules/system/devices/networking/firewall/server/default.nix +++ b/modules/system/devices/networking/firewall/server/default.nix @@ -12,7 +12,7 @@ extraInputRules = '' ip saddr { ${config.ips.localSpan}.0/24, ${config.ips.wgSpan}.0/24 } tcp dport 2049 accept comment "Accept NFS" ip saddr { ${config.ips.pc}, ${config.secrets.lunaIP}, ${config.secrets.cornIP} } tcp dport { 1935, 1945 } accept comment "Accept RTMP" - ip saddr ${config.ips.wgSpan}.3 tcp dport ${mailPorts} accept comment "Accept mail" + ip saddr ${config.ips.wgSpan}.19 tcp dport ${mailPorts} accept comment "Accept mail" ''; }; @@ -25,7 +25,7 @@ chain PREROUTING { type nat hook prerouting priority dstnat; policy accept; tcp dport 2211 dnat to ${config.ips.pc}:22 comment "SSH to PC" - tcp dport 2222 dnat to ${config.ips.wgSpan}.3:22 comment "SSH to Oracle VM" + tcp dport 2222 dnat to ${config.ips.wgSpan}.19:22 comment "SSH to Oracle VM" udp dport { 27005, 27015, 7777 } dnat to ${config.ips.pc} comment "PC Hosted Games"