From c6e2de7180f6f655faf3f5f6272f39bc1055499c Mon Sep 17 00:00:00 2001 From: Danylo Hlynskyi Date: Thu, 31 Aug 2017 14:42:14 +0300 Subject: [PATCH] don't enable firewall by default It is default ON in NixOS and will conflict with `firewall.enable = false`, which some user may intentionally set. In my opinion it is very high-level option to be set automatically. Also, people who really don't want firewall, just do `lib.mkForce false` and won't even notice that this module requires it. --- mail-server/networking.nix | 1 - 1 file changed, 1 deletion(-) diff --git a/mail-server/networking.nix b/mail-server/networking.nix index bd8ccd2..fa3ff7e 100644 --- a/mail-server/networking.nix +++ b/mail-server/networking.nix @@ -20,7 +20,6 @@ hostName = "${host_prefix}.${domain}"; firewall = { - enable = true; allowedTCPPorts = [ 25 587 ] ++ (if enable_imap then [ 143 ] else []) ++ (if enable_pop3 then [ 110 ] else []);