diff options
author | Klemens Nanni <klemens@posteo.de> | 2020-10-01 19:32:46 +0200 |
---|---|---|
committer | Andreas Rammhold <andreas@rammhold.de> | 2020-10-02 00:25:57 +0200 |
commit | e438d4a04f505adf63a453df7173278db6ee817c (patch) | |
tree | f596cfeebc23421316fb131001890056516c62d1 /nixos/modules/services/networking/nftables.nix | |
parent | af27072f1d35dcde78ab1e3b384082f5498725e6 (diff) |
nftables: Warn about correct firewall setting
services.networking.firewall might have existed during import of this module in 2016, but it is unknown as of today. Point to the proper boolean knob to avoid confusion.
Diffstat (limited to 'nixos/modules/services/networking/nftables.nix')
-rw-r--r-- | nixos/modules/services/networking/nftables.nix | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/nixos/modules/services/networking/nftables.nix b/nixos/modules/services/networking/nftables.nix index ec9d9753cfe25..cb75142965eae 100644 --- a/nixos/modules/services/networking/nftables.nix +++ b/nixos/modules/services/networking/nftables.nix @@ -99,7 +99,7 @@ in config = mkIf cfg.enable { assertions = [{ assertion = config.networking.firewall.enable == false; - message = "You can not use nftables with services.networking.firewall."; + message = "You can not use nftables and iptables at the same time. networking.firewall.enable must be set to false."; }]; boot.blacklistedKernelModules = [ "ip_tables" ]; environment.systemPackages = [ pkgs.nftables ]; |