about summary refs log tree commit diff
path: root/nixos/modules/services/networking/firewall.nix
AgeCommit message (Expand)AuthorFilesLines
2022-12-23nixos/{firewall, nat}: add a nftables based implementationRvfg1-443/+145
2022-11-19nixos/firewall: remove stray quote from package optionDavid Wilemski1-1/+1
2022-10-05nixos/firewall: move rpfilter from raw to mangleMilan Hauth1-13/+13
2022-08-27nixos/*: literalDocBook -> literalMDpennae1-1/+1
2022-07-30treewide: automatically md-convert option descriptionspennae1-22/+22
2022-02-19treewide: remove obsolete kernel version checksAlyssa Ross1-2/+0
2022-02-14nixos/firewall: remove dead codeLouis Bettens1-4/+0
2022-02-08nixos/firewall: make 'networking.firewall.package' example less confusingPierre Bourdon1-1/+1
2021-12-09treewide: add literalDocBook text to options with complex defaultspennae1-0/+1
2021-10-04nixos/doc: clean up defaults and examplesNaïm Favier1-3/+3
2021-07-29nixos/firewall: document log locationPeter Ferenczy1-0/+4
2020-03-18nixos/firewall: fix types in reverse path assertionAndrew Childs1-3/+7
2020-03-14nixos/firewall: fix inverted assertion for reverse path filteringAndrew Childs1-1/+1
2019-12-14nixos: fix ip46tables invocation in natBernardo Meurer1-12/+3
2019-09-22nixos/firewall: rename iptables-compat to iptables-nftables-compatJörg Thalheim1-1/+2
2019-09-03nixos/firewall: add package optionIzorkin1-2/+12
2019-08-26treewide: remove redundant quotesvolth1-1/+1
2019-03-09nixos/firewall: canonicalize firewall ports listsPierre Bourdon1-0/+5
2019-03-09nixos/firewall: use types.port where appropriatePierre Bourdon1-4/+4
2018-11-22Rename back to default and better release notesBen Blaxill1-6/+6
2018-11-20Refactor out the set operationsBen Blaxill1-4/+7
2018-11-18nixos/firewall: Always use global firewall.allowed rulesBen Blaxill1-14/+10
2018-08-29firewall service: respect marks in rpfilter (#39054)Nikolay Amiantov1-1/+1
2018-06-24nixos/firewall: per-interface port optionsgnidorah1-209/+230
2018-04-17firewall service: run stop commands in reloadNikolay Amiantov1-0/+3
2018-03-01nixos: Move uses of stdenv.shell to runtimeShell.Shea Levy1-1/+1
2017-11-19firewall: fix rpfilter blocking dhcp offers when no ip was bound yetMathijs Kwik1-0/+3
2017-10-11nixos/firewall: Rename misleading rejected to refused in loggingFlorian Jacob1-4/+4
2017-05-29nixos/firewall: clean up rpfilter rules properlyFranz Pletz1-6/+7
2017-02-06firewall: Fix check for rpfilter on manual-config kernelsShea Levy1-2/+2
2017-01-25firewall: disable conntrack helper autoloading by defaultFranz Pletz1-7/+10
2017-01-25linux: remove canDisableNetfilterConntrackHelpers featureFranz Pletz1-3/+0
2017-01-18firewall: Improve the comments (documentation) (#21862)Michael Weiss1-39/+63
2017-01-15firewall service: allow DHCPv6 client trafficNikolay Amiantov1-3/+6
2016-10-08firewall service: add support for loose reverse path filter check (#19122)Jaka Hudoklin1-6/+7
2016-09-07nixos: Fix ordering of firewall.serviceaszlig1-1/+2
2016-09-07firewall: Order before sysinitEelco Dolstra1-1/+1
2016-09-07Fix starting the firewallEelco Dolstra1-1/+2
2016-07-31nixos/firewall: Refactor rpfilter, allow DHCPv4 (#17325)Franz Pletz1-6/+27
2016-03-17Set networking.firewall.allowPing = true by default.Peter Simons1-1/+1
2016-01-17Add missing 'type', 'defaultText' and 'literalExample' in module definitionsThomas Strobel1-1/+2
2015-07-26nixos/firewall: Add the ability to specify additional packages for extraCommandsWilliam A. Kennington III1-2/+12
2015-07-26firewall: Don't depend on ipsetEelco Dolstra1-2/+2
2015-06-15Some more type cleanupEelco Dolstra1-2/+2
2015-01-20firewall service: fix pingLimit example valueJoachim Fasting1-1/+1
2014-12-28fix a typo from 2627198b0cVladimír Čunát1-1/+1
2014-12-28nixos/firewall: Add ipset utilityWilliam A. Kennington III1-2/+2
2014-12-01nixos: Add network-pre.target and adjust firewall start orderingWilliam A. Kennington III1-2/+3
2014-11-14firewall: clear rpfilter on stopBoris Sukholitko1-0/+6
2014-09-16nixos/firewall: Cleanup in case reload failsWilliam A. Kennington III1-170/+195