Unverified Commit 3a7a4fb4 authored by Sizhe Zhao's avatar Sizhe Zhao
Browse files

nixos/podman: don't open ports for firewalld

parent 87882c1e
Loading
Loading
Loading
Loading
+3 −1
Original line number Diff line number Diff line
@@ -249,7 +249,9 @@ in
      };

      # containers cannot reach aardvark-dns otherwise
      networking.firewall.interfaces.${network_interface}.allowedUDPPorts = lib.mkIf dns_enabled [ 53 ];
      networking.firewall = lib.mkIf (config.networking.firewall.backend != "firewalld") {
        interfaces.${network_interface}.allowedUDPPorts = lib.mkIf dns_enabled [ 53 ];
      };

      virtualisation.containers = {
        enable = true; # Enable common /etc/containers configuration