From e6ed60548397627bf10f561f9438201dbba0a36e Mon Sep 17 00:00:00 2001 From: Azat Bahawi Date: Sun, 21 Apr 2024 02:15:42 +0300 Subject: 2024-04-21 --- modules/nixos/fail2ban.nix | 37 ------------------------------------- 1 file changed, 37 deletions(-) delete mode 100644 modules/nixos/fail2ban.nix (limited to 'modules/nixos/fail2ban.nix') diff --git a/modules/nixos/fail2ban.nix b/modules/nixos/fail2ban.nix deleted file mode 100644 index a0cc2b4..0000000 --- a/modules/nixos/fail2ban.nix +++ /dev/null @@ -1,37 +0,0 @@ -{ - config, - lib, - this, - ... -}: -with lib; -let - cfg = config.nixfiles.modules.fail2ban; -in -{ - options.nixfiles.modules.fail2ban.enable = mkEnableOption "fail2ban"; - - config = mkIf cfg.enable { - ark.directories = [ "/var/lib/fail2ban" ]; - - services.fail2ban = { - enable = true; - - bantime-increment = { - enable = true; - maxtime = "24h"; - rndtime = "8m"; - }; - - ignoreIP = optionals (hasAttr "wireguard" this) ( - with config.nixfiles.modules.wireguard; - [ - ipv4.subnet - ipv6.subnet - ] - ); - - jails.DEFAULT.settings.blocktype = "DROP"; - }; - }; -} -- cgit v1.2.3