nixpkgs/nixos/modules/services
Vivek 17a46028b9 nixos/endlessh-go: fix firewall bugs
this change fixes 2 major bugs in the endlessh-go service's firewall options:

1. prometheus port unexpectedly allowed through firewall (services.endlessh-go.openFirewall)

the description of the option is "Whether to open a firewall port for the SSH listener." however as we can see, both the ssh listener AND the prometheus listener have their ports opened. this is especially troublesome because endlessh-go (i guess as an artifact of being developed for docker) defaults the prometheus listener to 0.0.0.0.

2. the prometheus port unexpectedly allowed through firewall when prometheus is disabled (services.endlessh-go.prometheus.enable)

even when prometheus is disabled, its port is allowed through the firewall
2024-09-04 20:32:47 -07:00
..
accessibility nixos/speechd: avoid by default on headless systems 2024-07-28 12:16:12 +02:00
admin nixos/services.salt.master: remove with lib; 2024-08-30 00:30:38 +02:00
amqp nixos/services.rabbitmq: remove with lib; 2024-08-30 00:30:38 +02:00
audio nixos/snapserver: add nss-lookup.target dependency 2024-08-25 23:46:52 +02:00
backup nixos/services.znapzend: remove with lib; 2024-08-30 00:19:18 +02:00
blockchain/ethereum
cluster nixos/kubernetes: amend dns addon clusterDns list 2024-09-01 15:13:11 +02:00
computing
continuous-integration treewide: fix eval related to with lib; removal (#339356) 2024-09-04 09:42:58 -07:00
databases nixos/services.neo4j: remove with lib; (#338049) 2024-09-01 20:52:52 +02:00
desktop-managers nixos/lomiri: don't enable Pulseaudio 2024-09-04 13:56:50 +03:00
desktops gnome-settings-daemon{,43}: Move from gnome scope to top-level 2024-09-01 14:16:31 +02:00
development nixos/services.zammad: remove with lib; (#338051) 2024-09-02 21:42:59 +02:00
display-managers nixos/services.greetd: remove with lib; 2024-08-30 00:30:45 +02:00
editors nixos/services.infinoted: remove with lib; 2024-08-30 00:30:46 +02:00
finance nixos/services.odoo: remove with lib; 2024-08-30 00:30:46 +02:00
games nixos/services.factorio: fix escapeShellArg 2024-09-02 23:47:15 +02:00
hardware nixos/services.thinkfan: fix undefined variables 2024-09-03 10:42:28 +02:00
home-automation nixos/services.zwave-js: remove with lib; 2024-08-30 00:30:55 +02:00
logging nixos/services.vector: remove with lib; 2024-08-30 00:30:58 +02:00
mail nixos/services.zeyple: remove with lib; 2024-08-30 22:59:28 +02:00
matrix nixos/mautrix-signal: Adapt to new configuration 2024-09-02 20:47:10 +02:00
misc nixos/*: use pipewire by default (#339209) 2024-09-04 22:42:18 +01:00
monitoring nixos/services.unpoller: remove with lib; (#339094) 2024-09-04 23:52:53 +02:00
network-filesystems nixos/samba: add mount.cifs +s wrapper (#328901) 2024-09-04 07:55:39 +00:00
networking Revert "nixos/firewall: fix reverse path check failures with IPsec" 2024-09-04 11:51:15 +10:00
printing
scheduling
search nixos/tika: add enableOcr option 2024-07-17 13:14:35 +02:00
security nixos/endlessh-go: fix firewall bugs 2024-09-04 20:32:47 -07:00
system nixos/userborn: init 2024-08-26 12:45:33 +02:00
torrent removed rtorrent group as fixed in #285299 2024-07-22 01:00:28 +02:00
tracing
ttys nixos/kmscon: fix cfgfile missing trailing newline 2024-07-27 15:54:41 +02:00
video frigate: 0.13.2 -> 0.14.1 2024-08-31 13:49:32 +02:00
wayland nixos/hypridle: switch to package provided user service file 2024-08-17 20:51:36 +05:30
web-apps nixos/weblate: add borgbackup to path 2024-09-04 12:54:31 +02:00
web-servers nixos/stargazer: module bug fix and hardening (#294795) 2024-09-03 11:56:05 +02:00
x11 deepin desktop environment: 2024.09 update (#338402) 2024-09-05 10:08:27 +08:00