parent
653c14ee0e
commit
42cdc5b508
1 changed files with 17 additions and 0 deletions
|
@ -36,6 +36,13 @@ in
|
|||
make sure ssh is only available trough the tinc
|
||||
'';
|
||||
};
|
||||
allowMosh = mkOption {
|
||||
type = bool;
|
||||
default = true;
|
||||
description = ''
|
||||
make mosh port available
|
||||
'';
|
||||
};
|
||||
};
|
||||
|
||||
config = mkMerge [
|
||||
|
@ -69,6 +76,16 @@ in
|
|||
iptables --table nat --append PREROUTING ! --in-interface tinc.+ --protocol tcp --match tcp --dport 22 --jump REDIRECT --to-ports 0
|
||||
'';
|
||||
})
|
||||
|
||||
(mkIf (cfg.allowMosh && cfg.enable) {
|
||||
networking.firewall.allowedUDPPortRanges = [
|
||||
{
|
||||
from = 60000;
|
||||
to = 61000;
|
||||
}
|
||||
];
|
||||
})
|
||||
|
||||
];
|
||||
|
||||
}
|
||||
|
|
Loading…
Add table
Reference in a new issue