MyNixOS website logo
option-set

networking.firewall

Showing entries 1-26 out of 26.
interfacesNixOS option-set
A range of TCP ports on which incoming connections are accepted
List of TCP ports on which incoming connections are accepted
Range of open UDP ports
List of open UDP ports
Whether to respond to incoming ICMPv4 echo requests ("pings")
Whether to auto-load connection-tracking helpers
Performs a reverse path filter test on a packet
List of connection-tracking helpers that are auto-loaded
Whether to enable the firewall
Additional shell commands executed as part of the firewall initialisation script
Additional nftables rules to be appended to the forward-allow chain
Additional nftables rules to be appended to the input-allow chain
Additional packages to be included in the environment of the system as well as the path of network…
Additional nftables rules to be appended to the rpfilter-allow chain
Additional shell commands executed as part of the firewall shutdown script
Enable filtering in IP forwarding
Interface-specific open ports
Whether to log rejected or dropped incoming connections
Whether to log all rejected or dropped incoming packets
If networking.firewall.logRefusedPackets and this option are enabled, then only log packets specif…
Logs dropped packets failing the reverse path filter test if the option networking.firewall.checkR…
The package to use for running the firewall service
If pings are allowed, this allows setting rate limits on them
If set, refused packets are rejected rather than dropped (ignored)
Traffic coming in from these interfaces will be accepted unconditionally