isolate internal services to internal networks
This commit is contained in:
@@ -90,7 +90,8 @@
|
||||
hostName = "homebox";
|
||||
nameservers = [ "1.1.1.1" "1.0.0.1" ];
|
||||
networkmanager.enable = true;
|
||||
firewall.allowedTCPPorts = [ 22 80 443 9000 8080 6080 ];
|
||||
firewall.allowedTCPPorts = [ 22 80 443 ];
|
||||
firewall.interfaces."ve-traefik".allowedTCPPorts = [ 9000 8080 6080 ];
|
||||
hosts = {
|
||||
"192.168.100.11" = [ "blunkall.us" "*.blunkall.us" "*.local.blunkall.us" ];
|
||||
};
|
||||
@@ -254,7 +255,7 @@
|
||||
|
||||
"blunkall.us".enable = true;
|
||||
|
||||
pihole.enable = true;
|
||||
pihole.enable = false;
|
||||
|
||||
nextcloud.enable = true;
|
||||
|
||||
|
||||
Reference in New Issue
Block a user