nixpkgs/nixos/modules
Vivek 17a46028b9 nixos/endlessh-go: fix firewall bugs
this change fixes 2 major bugs in the endlessh-go service's firewall options:

1. prometheus port unexpectedly allowed through firewall (services.endlessh-go.openFirewall)

the description of the option is "Whether to open a firewall port for the SSH listener." however as we can see, both the ssh listener AND the prometheus listener have their ports opened. this is especially troublesome because endlessh-go (i guess as an artifact of being developed for docker) defaults the prometheus listener to 0.0.0.0.

2. the prometheus port unexpectedly allowed through firewall when prometheus is disabled (services.endlessh-go.prometheus.enable)

even when prometheus is disabled, its port is allowed through the firewall
2024-09-04 20:32:47 -07:00
..
config treewide: fix eval related to with lib; removal 2024-09-04 12:21:09 -04:00
hardware treewide/nixos: remove with lib; part 2 (#335618) 2024-08-30 15:56:57 -07:00
i18n/input-method nixos/fcitx5: fix evaluation 2024-08-31 09:20:31 -04:00
image nixos/repart-image: fix amend script 2024-07-10 11:40:40 +02:00
installer nixos/installer: don't enable Pulseaudio 2024-09-04 13:56:50 +03:00
misc Revert "nixos/version: validate system.stateVersion" (#339671) 2024-09-05 03:22:20 +02:00
profiles nixos/graphical: don't enable Pulseaudio 2024-09-04 13:56:42 +03:00
programs nixos/*: use pipewire by default (#339209) 2024-09-04 22:42:18 +01:00
security treewide/nixos: remove with lib; part 1 (#335603) 2024-08-29 15:42:04 -07:00
services nixos/endlessh-go: fix firewall bugs 2024-09-04 20:32:47 -07:00
system nixos/timesyncd: allow NTP servers advertised by DHCP to be used 2024-09-04 12:17:39 +02:00
tasks treewide/nixos: remove with lib; part 2 (#335618) 2024-08-30 15:56:57 -07:00
testing treewide: fix mkEnableOption usage 2024-06-14 02:41:42 -04:00
virtualisation virtualisation/azure-images: drop outdated list... (#338426) 2024-09-03 21:16:39 +02:00
module-list.nix Merge branch 'master' into add-rutorrent-service 2024-09-03 01:18:16 +00:00
rename.nix antennas: drop 2024-08-22 15:51:27 +01:00