From 642ce3d32711ca5ee566b2bc46bc8c843dd4fd0b Mon Sep 17 00:00:00 2001 From: Dmitry Voronin Date: Sun, 5 Jan 2025 09:11:01 +0300 Subject: [PATCH] Sshd: Listen to ipv6. --- host/x86_64-linux/home/Network.nix | 3 +-- system/Sshd.nix | 4 ++++ 2 files changed, 5 insertions(+), 2 deletions(-) diff --git a/host/x86_64-linux/home/Network.nix b/host/x86_64-linux/home/Network.nix index 004ea34..91dba4b 100644 --- a/host/x86_64-linux/home/Network.nix +++ b/host/x86_64-linux/home/Network.nix @@ -148,8 +148,7 @@ in iptables -t nat -A POSTROUTING -s 10.0.0.0/24 -d 0/0 -o ${wan} -j MASQUERADE # Full access from Lan. - iptables -I INPUT -j ACCEPT -i ${lan} - ip6tables -I INPUT -j ACCEPT -i ${lan} + ip46tables -I INPUT -j ACCEPT -i ${lan} # Public email server. ip46tables -I INPUT -j ACCEPT -i ${wan} -p tcp --dport 25 diff --git a/system/Sshd.nix b/system/Sshd.nix index 7e8f0e1..57bdb03 100644 --- a/system/Sshd.nix +++ b/system/Sshd.nix @@ -10,6 +10,10 @@ addr = "0.0.0.0"; port = 22143; } + { + addr = "[::]"; + port = 22143; + } ]; settings = { GSSAPIAuthentication = false;