openssh
This commit is contained in:
parent
30ab66549f
commit
c71ab8ea85
|
@ -350,5 +350,19 @@ in
|
|||
''; in "${tmux-menu}";
|
||||
};
|
||||
};
|
||||
|
||||
ssh = {
|
||||
enable = true;
|
||||
matchBlocks = {
|
||||
remarkable = {
|
||||
hostname = "10.11.99.1";
|
||||
user = "root";
|
||||
};
|
||||
lazarus = {
|
||||
hostname = "rachel.cafe";
|
||||
user = "deppy";
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
}
|
||||
|
|
|
@ -63,6 +63,14 @@
|
|||
networking.nameservers = [ "8.8.8.8" ];
|
||||
networking.resolvconf.dnsExtensionMechanism = false;
|
||||
|
||||
services.openssh = {
|
||||
enable = true;
|
||||
settings = {
|
||||
PasswordAuthentication = true;
|
||||
PermitRootLogin = false;
|
||||
};
|
||||
};
|
||||
|
||||
# [NFS]
|
||||
fileSystems."/home/rachel/music" = {
|
||||
device = "rachel.cafe:/srv/music";
|
||||
|
@ -145,7 +153,7 @@
|
|||
|
||||
# [SECURITY / FIREWALL]
|
||||
networking.firewall.enable = true;
|
||||
networking.firewall.allowedTCPPorts = [ ];
|
||||
networking.firewall.allowedTCPPorts = [ 22 ];
|
||||
networking.firewall.allowedUDPPorts = [ ];
|
||||
programs.gnupg.agent = {
|
||||
enable = true;
|
||||
|
|
Loading…
Reference in New Issue
Block a user