| options/nixos/services.crowdsec-firewall-bouncer.registerBouncer.enable | Whether to automatically register the bouncer to the locally running
crowdsec service
|
| options/nixos/services.crowdsec-firewall-bouncer.secrets.apiKeyPath | Path to the API key to authenticate with a local CrowdSec API
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.api_key | API key to authenticate with a local crowdsec API
|
| options/nixos/services.crowdsec.openFirewall | Whether to automatically open firewall ports for crowdsec.
|
| options/nixos/services.crowdsec-firewall-bouncer.registerBouncer.bouncerName | Name to register the bouncer as to the CrowdSec API
|
| options/nixos/services.crowdsec-firewall-bouncer.enable | Whether to enable CrowdSec Firewall Bouncer.
|
| options/nixos/services.crowdsec.enable | Whether to enable CrowdSec Security Engine.
|
| options/nixos/services.crowdsec.user | The user to run crowdsec as
|
| options/nixos/services.crowdsec.hub | Hub collections, parsers, AppSec rules, etc.
|
| options/nixos/services.crowdsec.name | Name of the machine when registering it at the central or local api.
|
| options/nixos/services.crowdsec.group | The group to run crowdsec as
|
| options/nixos/services.crowdsec-firewall-bouncer.package | The crowdsec-firewall-bouncer package to use.
|
| options/nixos/services.crowdsec-firewall-bouncer.settings | Settings for the main CrowdSec Firewall Bouncer
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.mode | Firewall mode to use.
|
| options/nixos/services.crowdsec.package | The crowdsec package to use.
|
| options/nixos/services.crowdsec.localConfig | The configuration for a crowdsec security engine.
|
| options/nixos/services.crowdsec-firewall-bouncer.createRulesets | Whether to have the module create the appropriate firewall configuration
based on the bouncer settings
|
| options/nixos/services.crowdsec.settings | Set of various configuration attributes
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.api_url | URL of the local API.
|
| options/nixos/nix.firewall.enable | Whether to enable firewalling for outgoing traffic of the nix daemon.
|
| options/nixos/services.crowdsec.autoUpdateService | Whether to enable if true cscli hub update will be executed daily
|
| options/nixos/networking.firewall.enable | Whether to enable the firewall
|
| options/nixos/nix.firewall.allowNonTCPUDP | Whether to allow traffic that is neither TCP nor UDP
|
| options/nixos/services.ferm.enable | Whether to enable Ferm Firewall.
Warning: Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/nix.firewall.allowedTCPPorts | TCP ports to which traffic is allowed
|
| options/nixos/nix.firewall.allowedUDPPorts | UDP ports to which traffic is allowed
|
| options/nixos/networking.firewall.pingLimit | If pings are allowed, this allows setting rate limits on them
|
| options/nixos/networking.firewall.extraCommands | Additional shell commands executed as part of the firewall
initialisation script
|
| options/nixos/networking.firewall.backend | Underlying implementation for the firewall service.
|
| options/nixos/nix.firewall.allowLoopback | Whether to allow traffic on the loopback interface
|
| options/nixos/networking.firewall.package | The package to use for running the firewall service.
|
| options/nixos/nix.firewall.extraNftablesRules | Extra nftables rules to prepend to the generated ones
|
| options/nixos/services.nebula.networks.<name>.firewall.inbound | Firewall rules for inbound traffic.
|
| options/nixos/services.nebula.networks.<name>.firewall.outbound | Firewall rules for outbound traffic.
|
| options/nixos/networking.firewall.extraInputRules | Additional nftables rules to be appended to the input-allow
chain
|
| options/nixos/networking.firewall.extraStopCommands | Additional shell commands executed as part of the firewall
shutdown script
|
| options/nixos/networking.firewall.filterForward | Enable filtering in IP forwarding
|
| options/nixos/networking.firewall.extraForwardRules | Additional nftables rules to be appended to the forward-allow
chain
|
| options/nixos/services.shorewall.enable | Whether to enable Shorewall IPv4 Firewall.
Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/nix.firewall.allowPrivateNetworks | Whether to allow traffic to local networks
|
| options/nixos/networking.firewall.allowPing | Whether to respond to incoming ICMPv4 echo requests
("pings")
|
| options/nixos/networking.firewall.allowedUDPPorts | List of open UDP ports.
|
| options/nixos/services.prometheus.exporters.pgbouncer.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pgbouncer.openFirewall is true.
|
| options/nixos/services.technitium-dns-server.firewallUDPPorts | List of UDP ports to open in firewall.
|
| options/nixos/networking.firewall.allowedTCPPorts | List of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.firewalld.enable | Whether to enable FirewallD.
|
| options/nixos/networking.firewall.extraReversePathFilterRules | Additional nftables rules to be appended to the rpfilter-allow
chain
|
| options/nixos/services.prometheus.exporters.pgbouncer.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pgbouncer.openFirewall
is true
|
| options/nixos/services.shorewall6.enable | Whether to enable Shorewall IPv6 Firewall.
Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/networking.firewall.extraPackages | Additional packages to be included in the environment of the system
as well as the path of networking.firewall.extraCommands.
|
| options/nixos/networking.firewall.allowedUDPPortRanges | Range of open UDP ports.
|
| options/nixos/services.technitium-dns-server.firewallTCPPorts | List of TCP ports to open in firewall
|
| options/nixos/networking.firewall.logReversePathDrops | Logs dropped packets failing the reverse path filter test if
the option networking.firewall.checkReversePath is enabled.
|
| options/nixos/networking.firewall.allowedTCPPortRanges | A range of TCP ports on which incoming connections are
accepted.
|
| options/nixos/networking.firewall.checkReversePath | Performs a reverse path filter test on a packet
|
| options/nixos/networking.firewall.interfaces | Interface-specific open ports.
|
| options/nixos/networking.firewall.rejectPackets | If set, refused packets are rejected rather than dropped
(ignored)
|
| options/nixos/networking.firewall.logRefusedPackets | Whether to log all rejected or dropped incoming packets
|
| options/nixos/networking.firewall.logRefusedUnicastsOnly | If networking.firewall.logRefusedPackets
and this option are enabled, then only log packets
specifically directed at this machine, i.e., not broadcasts
or multicasts.
|
| options/nixos/networking.firewall.autoLoadConntrackHelpers | Whether to auto-load connection-tracking helpers
|
| options/nixos/services.firewalld.settings.CleanupOnExit | Whether to clean up firewall rules when firewalld stops.
|
| options/nixos/networking.firewall.trustedInterfaces | Traffic coming in from these interfaces will be accepted
unconditionally
|
| options/nixos/services.samba-wsdd.openFirewall | Whether to open the required firewall ports in the firewall.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedUDPPorts | List of open UDP ports.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedTCPPorts | List of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.firewalld.zones | firewalld zone configuration files
|
| options/nixos/services.prometheus.exporters.nut.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nut.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.lnd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.lnd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.sql.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.sql.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.frr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.frr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.pve.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pve.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.zfs.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.zfs.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.kea.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.kea.openFirewall is true.
|
| options/nixos/networking.firewall.logRefusedConnections | Whether to log rejected or dropped incoming connections
|
| options/nixos/services.prometheus.exporters.nats.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nats.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.bind.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bind.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ping.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ping.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.flow.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.flow.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.json.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.json.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ipmi.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ipmi.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.bird.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bird.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mail.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mail.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ebpf.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ebpf.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.knot.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.knot.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.node.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.node.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.snmp.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.snmp.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mqtt.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mqtt.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.php-fpm.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.php-fpm.openFirewall is true.
|
| options/nixos/services.firewalld.extraArgs | Extra arguments to pass to FirewallD.
|
| options/nixos/services.gnome.rygel.enable | Whether to enable Rygel UPnP Mediaserver
|
| options/nixos/services.pgbouncer.openFirewall | Whether to automatically open the specified TCP port in the firewall.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedUDPPortRanges | Range of open UDP ports.
|
| options/nixos/services.prometheus.exporters.nginx.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nginx.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.redis.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.redis.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.kafka.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.kafka.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.idrac.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.idrac.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.v2ray.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.v2ray.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.jitsi.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.jitsi.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.fritz.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.fritz.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dmarc.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dmarc.openFirewall is true.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedTCPPortRanges | A range of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.prometheus.exporters.node-cert.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.node-cert.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.sql.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.sql.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.lnd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.lnd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.frr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.frr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.zfs.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.zfs.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nut.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nut.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.kea.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.kea.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.pve.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pve.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fastly.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.fastly.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.shelly.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.shelly.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.statsd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.statsd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.domain.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.domain.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.tibber.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.tibber.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rspamd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rspamd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.deluge.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.deluge.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.chrony.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.chrony.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.pihole.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pihole.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.script.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.script.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dnssec.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dnssec.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.restic.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.restic.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mysqld.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mysqld.openFirewall is true.
|
| options/nixos/services.firewalld.settings.CleanupModulesOnExit | Whether to unload all firewall-related kernel modules when firewalld stops.
|
| options/nixos/services.prometheus.exporters.mqtt.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mqtt.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.json.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.json.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.flow.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.flow.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mail.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mail.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ebpf.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ebpf.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nats.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nats.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.knot.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.knot.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bind.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.bind.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bird.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.bird.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.node.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.node.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ipmi.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ipmi.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ping.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ping.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.snmp.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.snmp.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.php-fpm.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.php-fpm.openFirewall
is true
|
| options/nixos/virtualisation.libvirtd.firewallBackend | The backend used to setup virtual network firewall rules.
|
| options/nixos/services.firewalld.package | The firewalld package to use.
|
| options/nixos/services.prometheus.exporters.nvidia-gpu.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nvidia-gpu.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.jitsi.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.jitsi.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.redis.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.redis.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nginx.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nginx.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.idrac.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.idrac.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.kafka.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.kafka.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.v2ray.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.v2ray.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fritz.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fritz.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dmarc.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dmarc.openFirewall
is true
|
| options/nixos/services.reaction.stopForFirewall | Whether to stop reaction when reloading the firewall
|
| options/nixos/services.prometheus.exporters.bitcoin.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bitcoin.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dnsmasq.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dnsmasq.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.unbound.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.unbound.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.apcupsd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.apcupsd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.libvirt.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.libvirt.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.varnish.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.varnish.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.postfix.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.postfix.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.sabnzbd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.sabnzbd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ecoflow.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ecoflow.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.klipper.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.klipper.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.systemd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.systemd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dovecot.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dovecot.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mongodb.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mongodb.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.process.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.process.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.node-cert.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.node-cert.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.domain.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.domain.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.chrony.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.chrony.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.statsd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.statsd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.tibber.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.tibber.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mysqld.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mysqld.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.rspamd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.rspamd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.pihole.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pihole.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.deluge.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.deluge.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dnssec.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dnssec.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.restic.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.restic.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.script.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.script.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fastly.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fastly.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.shelly.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.shelly.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.short | Short description for the zone.
|
| options/nixos/services.firewalld.zones.<name>.rules | Rich rules for the zone.
|
| options/nixos/services.firewalld.zones.<name>.ports | Ports to allow in the zone.
|
| options/nixos/services.prometheus.exporters.py-air-control.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.py-air-control.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rtl_433.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rtl_433.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.nvidia-gpu.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nvidia-gpu.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.unpoller.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.unpoller.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.blackbox.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.blackbox.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.influxdb.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.influxdb.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.collectd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.collectd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mikrotik.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mikrotik.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.fritzbox.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.fritzbox.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.graphite.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.graphite.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.nginxlog.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nginxlog.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.postgres.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.postgres.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.keylight.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.keylight.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.opnsense.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.opnsense.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.smartctl.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.smartctl.openFirewall is true.
|
| options/nixos/services.dae.openFirewall.enable | Whether to enable opening port in the firewall.
|
| options/nixos/services.prometheus.exporters.apcupsd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.apcupsd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.unbound.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.unbound.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.varnish.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.varnish.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ecoflow.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ecoflow.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bitcoin.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.bitcoin.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dnsmasq.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dnsmasq.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dovecot.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dovecot.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.libvirt.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.libvirt.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.sabnzbd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.sabnzbd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.process.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.process.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.systemd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.systemd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mongodb.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mongodb.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.klipper.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.klipper.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.postfix.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.postfix.openFirewall
is true
|
| options/nixos/services.firewalld.services | firewalld service configuration files
|
| options/nixos/services.firewalld.settings.FirewallBackend | The firewall backend implementation
|
| options/nixos/services.firewalld.zones.<name>.ports.*.port | |
| options/nixos/services.prometheus.exporters.imap-mailstat.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.imap-mailstat.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mailman3.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mailman3.openFirewall is true.
|
| options/nixos/services.ferm.config | Verbatim ferm.conf configuration.
|
| options/nixos/services.prometheus.exporters.py-air-control.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.py-air-control.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.target | Action for packets that doesn't match any rules.
|
| options/nixos/services.prometheus.exporters.nextcloud.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nextcloud.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.surfboard.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.surfboard.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.smokeping.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.smokeping.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.wireguard.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.wireguard.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rasdaemon.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rasdaemon.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.borgmatic.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.borgmatic.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.tailscale.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.tailscale.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rtl_433.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.rtl_433.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.junos-czerwonk.openFirewall is true.
|
| options/nixos/services.firewalld.settings | FirewallD config file
|
| options/nixos/networking.firewall.connectionTrackingModules | List of connection-tracking helpers that are auto-loaded
|
| options/nixos/services.prometheus.exporters.keylight.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.keylight.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fritzbox.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fritzbox.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.opnsense.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.opnsense.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.smartctl.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.smartctl.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mikrotik.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mikrotik.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.influxdb.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.influxdb.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.postgres.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.postgres.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nginxlog.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nginxlog.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.unpoller.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.unpoller.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.blackbox.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.blackbox.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.collectd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.collectd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.graphite.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.graphite.openFirewall
is true
|
| options/nixos/services.firewalld.settings.IndividualCalls | Whether to use individual -restore calls to apply changes to the firewall
|
| options/nixos/services.firewalld.packages | Packages providing firewalld zones and other files
|
| options/nixos/services.prometheus.exporters.imap-mailstat.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.imap-mailstat.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mailman3.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mailman3.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.version | Version of the zone.
|
| options/nixos/services.firewalld.zones.<name>.icmpBlocks | ICMP types to block in the zone.
|
| options/nixos/services.prometheus.exporters.buildkite-agent.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.buildkite-agent.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.scaphandre.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.scaphandre.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.storagebox.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.storagebox.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.smokeping.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.smokeping.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.wireguard.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.wireguard.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nextcloud.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nextcloud.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.borgmatic.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.borgmatic.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.surfboard.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.surfboard.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.rasdaemon.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.rasdaemon.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.tailscale.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.tailscale.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.junos-czerwonk.openFirewall
is true
|
| options/nixos/services.firewalld.services.<name>.ports | Ports of the service.
|
| options/nixos/services.prometheus.exporters.exportarr-sonarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-sonarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-lidarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-bazarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.exportarr-radarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-radarr.openFirewall is true.
|
| options/nixos/services.cloudflare-warp.udpPort | The UDP port to open in the firewall
|
| options/nixos/services.firewalld.zones.<name>.services | Services to allow in the zone.
|
| options/nixos/services.firewalld.services.<name>.short | Short description for the service.
|
| options/nixos/services.irkerd.openPorts | Open ports in the firewall for irkerd
|
| options/nixos/services.fail2ban.packageFirewall | The firewall package used by fail2ban service
|
| options/nixos/services.firewalld.zones.<name>.sources.*.mac | A MAC address.
|
| options/nixos/services.firewalld.zones.<name>.sourcePorts | Source ports to allow in the zone.
|
| options/nixos/power.ups.openFirewall | Open ports in the firewall for upsd.
|
| options/nixos/services.firewalld.zones.<name>.sources | Source addresses, address ranges, MAC addresses or ipsets to bind.
|
| options/nixos/services.zammad.openPorts | Whether to open firewall ports for Zammad
|
| options/nixos/services.prometheus.exporters.buildkite-agent.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.buildkite-agent.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.storagebox.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.storagebox.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.scaphandre.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.scaphandre.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-readarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.artifactory.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.artifactory.openFirewall is true.
|
| options/nixos/services.netbird.server.coturn.enable | Whether to enable a Coturn server for Netbird, will also open the firewall on the configured range.
|
| options/nixos/services.firewalld.zones.<name>.sourcePorts.*.port | |
| options/nixos/services.firewalld.services.<name>.ports.*.port | |
| options/nixos/services.opensnitch.enable | Whether to enable Opensnitch application firewall.
|
| options/nixos/services.prometheus.exporters.exportarr-radarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-radarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-lidarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-sonarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-sonarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-bazarr.openFirewall
is true
|
| options/nixos/services.amule.openPeerPorts | Whether to enable open the peer port(s) in the firewall.
|
| options/nixos/services.k3s.serverAddr | The k3s server to connect to
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts | Ports to forward in the zone.
|
| options/nixos/services.firewalld.zones.<name>.sources.*.ipset | An ipset.
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-prowlarr.openFirewall is true.
|
| options/nixos/services.firewalld.settings.RFC3964_IPv4 | Whether to filter IPv6 traffic with 6to4 destination addresses that correspond to IPv4 addresses that should not be routed over the public internet.
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-readarr.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.forward | Whether to enable intra-zone forwarding
|
| options/nixos/services.prometheus.exporters.artifactory.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.artifactory.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.modemmanager.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.modemmanager.openFirewall is true.
|
| options/nixos/services.firewalld.settings.DefaultZone | Default zone for connections.
|
| options/nixos/services.firewalld.services.<name>.version | Version of the service.
|
| options/nixos/services.firewalld.services.<name>.helpers | Helpers for the service.
|
| options/nixos/services.nfs.server.statdPort | Use a fixed port for rpc.statd
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.port | |
| options/nixos/services.dae.openFirewall | Open the firewall port.
|
| options/nixos/services.firewalld.settings.ReloadPolicy | The policy during reload.
|
| options/nixos/services.miredo.bindPort | Depending on the local firewall/NAT rules, you might need to force
Miredo to use a fixed UDP port and or IPv4 address.
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.to-port | |
| options/nixos/programs.sharing.enable | Whether to enable sharing, a CLI tool for sharing files
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-prowlarr.openFirewall
is true
|
| options/nixos/services.nbd.server.listenPort | Port to listen on
|
| options/nixos/services.firewalld.settings.FlushAllOnReload | Whether to flush all runtime rules on a reload.
|
| options/nixos/services.mediatomb.openFirewall | If false (the default), this is up to the user to declare the firewall rules
|
| options/nixos/services.aria2.openPorts | Open listen and RPC ports found in settings.listen-port and
settings.rpc-listen-port options in the firewall.
|
| options/nixos/services.firewalld.zones.<name>.ports.*.protocol | |
| options/nixos/services.firewalld.services.<name>.sourcePorts | Source ports for the service.
|
| options/nixos/services.firewalld.zones.<name>.protocols | Protocols to allow in the zone.
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.to-addr | Destination IP address.
|
| options/nixos/services.qui.openFirewall | Whether or not to open ports in the firewall for qui.
|
| options/nixos/services.prometheus.exporters.modemmanager.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.modemmanager.openFirewall
is true
|
| options/nixos/services.nfs.server.mountdPort | Use fixed port for rpc.mountd, useful if server is behind firewall.
|
| options/nixos/services.firewalld.settings.LogDenied | Add logging rules right before reject and drop rules in the INPUT, FORWARD and OUTPUT chains for the default rules and also final reject and drop rules in zones for the configured link-layer packet type.
|
| options/nixos/networking.nat.enable | Whether to enable Network Address Translation (NAT)
|
| options/nixos/services.n8n.openFirewall | Open ports in the firewall for the n8n web interface.
|
| options/nixos/services.nfs.server.lockdPort | Use a fixed port for the NFS lock manager kernel module
(lockd/nlockmgr)
|
| options/nixos/services.firewalld.services.<name>.sourcePorts.*.port | |
| options/nixos/services.tor.openFirewall | Whether to enable opening of the relay port(s) in the firewall.
|
| options/nixos/services.firewalld.services.<name>.includes | Services to include for the service.
|
| options/nixos/services.send.openFirewall | Whether to open firewall ports for send
|
| options/nixos/services.plex.openFirewall | Open ports in the firewall for the media server.
|
| options/nixos/services.ombi.openFirewall | Open ports in the firewall for the Ombi web interface.
|
| options/nixos/services.xrdp.openFirewall | Whether to open the firewall for the specified RDP port.
|
| options/nixos/services.node-red.openFirewall | Open ports in the firewall for the server.
|
| options/nixos/services.firewalld.zones.<name>.egressPriority | Priority for outbound traffic
|
| options/nixos/services.croc.openFirewall | Whether to enable opening of the peer port(s) in the firewall.
|
| options/nixos/services.ergo.openFirewall | Open ports in the firewall for the Ergo node as well as the API.
|
| options/nixos/services.firewalld.zones.<name>.interfaces | Interfaces to bind.
|
| options/nixos/services.plikd.openFirewall | Open ports in the firewall for the plikd.
|
| options/nixos/services.omnom.openFirewall | Whether to open ports in the firewall.
|
| options/nixos/services.snmpd.openFirewall | Open port in firewall for snmpd.
|
| options/nixos/services.tika.openFirewall | Whether to open the firewall for Apache Tika
|
| options/nixos/services.znc.openFirewall | Whether to open ports in the firewall for ZNC
|
| options/nixos/services.firewalld.zones.<name>.masquerade | Whether to enable masquerading in the zone.
|
| options/nixos/services.atuin.openFirewall | Open ports in the firewall for the atuin server.
|
| options/nixos/services.memos.openFirewall | Whether to enable opening the ports in the firewall.
|
| options/nixos/services.firewalld.services.<name>.ports.*.protocol | |
| options/nixos/services.firewalld.services.<name>.protocols | Protocols for the service.
|
| options/nixos/services.cook-cli.openFirewall | Whether to open the cook-cli server port in the firewall.
|
| options/nixos/services.flood.openFirewall | Whether to open the firewall for the port in services.flood.port.
|
| options/nixos/services.komga.openFirewall | Whether to open the firewall for the port in services.komga.settings.server.port.
|
| options/nixos/services.gatus.openFirewall | Whether to open the firewall for the Gatus web interface.
|
| options/nixos/services.paisa.openFirewall | Open ports in the firewall for the Paisa web server.
|
| options/nixos/services.stash.openFirewall | Open ports in the firewall for the Stash web interface.
|
| options/nixos/services.firewalld.zones.<name>.sourcePorts.*.protocol | |
| options/nixos/services.firewalld.zones.<name>.ingressPriority | Priority for inbound traffic
|
| options/nixos/services.karma.openFirewall | Whether to open ports in the firewall needed for karma to function.
|
| options/nixos/services.rqbit.openFirewall | Whether to enable opening of the HTTP and Peer ports in the firewall.
|
| options/nixos/services.shoko.openFirewall | Open ports in the firewall for the ShokoAnime api and web interface.
|
| options/nixos/services.samba.openFirewall | Whether to enable opening the default ports in the firewall for Samba.
|
| options/nixos/services.wivrn.openFirewall | Whether to enable the default ports in the firewall for the WiVRn server.
|
| options/nixos/services.nix-serve.openFirewall | Open ports in the firewall for nix-serve.
|
| options/nixos/services.llama-cpp.openFirewall | Open ports in the firewall for LLaMA C++ server.
|
| options/nixos/services.lidarr.openFirewall | Open ports in the firewall for Lidarr
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.protocol | |
| options/nixos/services.slskd.openFirewall | Whether to open the firewall for the soulseek network listen port (not the web interface port).
|
| options/nixos/services.etcd.openFirewall | Open etcd ports in the firewall
|
| options/nixos/services.actual.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.immich.openFirewall | Whether to open the immich port in the firewall
|
| options/nixos/services.firewalld.zones.<name>.sources.*.address | An IP address or a network IP address with a mask for IPv4 or IPv6
|
| options/nixos/networking.nftables.extraDeletions | Extra deletion commands to be run on every firewall start, reload
and after stopping the firewall.
|
| options/nixos/services.prometheus.exporters.pgbouncer.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.deluge.web.openFirewall | Open ports in the firewall for deluge web daemon
|
| options/nixos/services.firewalld.zones.<name>.icmpBlockInversion | Whether to invert the icmp block handling
|
| options/nixos/services.firewalld.zones.<name>.description | Description for the zone.
|
| options/nixos/services.deconz.openFirewall | Whether to enable opening up the service ports in the firewall.
|
| options/nixos/services.bazarr.openFirewall | Open ports in the firewall for the bazarr web interface.
|
| options/nixos/services.porn-vault.openFirewall | Whether to open the Porn-Vault port in the firewall.
|
| options/nixos/services.sonarr.openFirewall | Open ports in the firewall for the Sonarr web interface
|
| options/nixos/services.nitter.openFirewall | Open ports in the firewall for Nitter web interface.
|
| options/nixos/services.radarr.openFirewall | Open ports in the firewall for the Radarr web interface.
|
| options/nixos/services.redlib.openFirewall | Open ports in the firewall for the redlib web interface
|
| options/nixos/services.mpd.openFirewall | Open ports in the firewall for mpd
|
| options/nixos/services.glance.openFirewall | Whether to open the firewall for Glance
|
| options/nixos/services.ollama.openFirewall | Whether to open the firewall for ollama
|
| options/nixos/services.murmur.openFirewall | Whether to enable opening ports in the firewall for the Mumble server.
|
| options/nixos/services.yggdrasil.openMulticastPort | Whether to open the UDP port used for multicast peer discovery
|
| options/nixos/services.miredo.bindAddress | Depending on the local firewall/NAT rules, you might need to force
Miredo to use a fixed UDP port and or IPv4 address.
|
| options/nixos/services.avahi.openFirewall | Whether to open the firewall for UDP port 5353
|
| options/nixos/services.veilid.openFirewall | Whether to open firewall on ports 5150/tcp, 5150/udp
|
| options/nixos/services.meme-bingo-web.openFirewall | Whether to enable Opens the specified port in the firewall.
.
|
| options/nixos/services.firewalld.services.<name>.sourcePorts.*.protocol | |
| options/nixos/services.hardware.lcd.server.openPorts | Open the ports in the firewall
|
| options/nixos/services.openarena.openPorts | Whether to open firewall ports for OpenArena
|
| options/nixos/services.teeworlds.openPorts | Whether to open firewall ports for Teeworlds.
|
| options/nixos/services.open-webui.openFirewall | Whether to open the firewall for Open-WebUI
|
| options/nixos/services.mchprs.openFirewall | Whether to open ports in the firewall for the server
|
| options/nixos/services.roon-server.openFirewall | Open ports in the firewall for the server.
|
| options/nixos/services.roon-bridge.openFirewall | Open ports in the firewall for the bridge.
|
| options/nixos/services.firewalld.settings.NftablesCounters | Whether to add a counter to every nftables rule.
|
| options/nixos/services.iperf3.openFirewall | Open ports in the firewall for iperf3.
|
| options/nixos/services.llama-swap.openFirewall | Whether to open the firewall for llama-swap
|
| options/nixos/services.corteza.openFirewall | Whether to open ports in the firewall.
|
| options/nixos/services.glances.openFirewall | Open port in the firewall for glances.
|
| options/nixos/services.grafana.openFirewall | Open the ports in the firewall for the server.
|
| options/nixos/services.polaris.openFirewall | Open the configured port in the firewall.
|
| options/nixos/services.readarr.openFirewall | Open ports in the firewall for Readarr
|
| options/nixos/services.screego.openFirewall | Open the firewall port(s).
|
| options/nixos/boot.initrd.network.ifstate.cleanupSettings | Content of IfState's initrd cleanup configuration file
|
| options/nixos/services.druid.broker.openFirewall | Open firewall ports for Druid Broker.
|
| options/nixos/services.druid.router.openFirewall | Open firewall ports for Druid Router.
|
| options/nixos/services.firewalld.settings.NftablesTableOwner | If enabled, the generated nftables rule set will be owned exclusively by firewalld
|
| options/nixos/services.esphome.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.livekit.openFirewall | Opens port range for LiveKit on the firewall.
|
| options/nixos/services.marytts.openFirewall | Whether to open the port in the firewall for MaryTTS.
|
| options/nixos/services.pgadmin.openFirewall | Whether to enable firewall passthrough for pgadmin4.
|
| options/nixos/services.owncast.openFirewall | Open the appropriate ports in the firewall for owncast.
|
| options/nixos/services.vmagent.openFirewall | Whether to open the firewall for the default ports.
|
| options/nixos/services.vlagent.openFirewall | Whether to open the firewall for the default ports.
|
| options/nixos/services.beszel.agent.openFirewall | Whether to open the firewall port (default 45876).
|
| options/nixos/services.firewalld.services.<name>.destination.ipv4 | IPv4 destination.
|
| options/nixos/services.firewalld.services.<name>.destination.ipv6 | IPv6 destination.
|
| options/nixos/services.pihole-ftl.openFirewallDNS | Open ports in the firewall for pihole-FTL's DNS server.
|
| options/nixos/services.cassandra.jmxPort | Specifies the default port over which Cassandra will be available for
JMX connections
|
| options/nixos/services.autobrr.openFirewall | Open ports in the firewall for the Autobrr web interface.
|
| options/nixos/services.jackett.openFirewall | Open ports in the firewall for the Jackett web interface.
|
| options/nixos/services.biboumi.openFirewall | Whether to enable opening of the identd port in the firewall.
|
| options/nixos/services.sharkey.openFirewall | Whether to open ports in the NixOS firewall for Sharkey.
|
| options/nixos/services.openssh.openFirewall | Whether to automatically open the specified ports in the firewall.
|
| options/nixos/services.umurmur.openFirewall | Open ports in the firewall for the uMurmur Mumble server.
|
| options/nixos/services.serviio.openFirewall | Open ports in the firewall for the Serviio Media Server.
|
| options/nixos/services.sabnzbd.openFirewall | Open ports in the firewall for the sabnzbd web interface
|
| options/nixos/services.pdfding.openFirewall | Open ports in the firewall for the PdfDing web interface.
|
| options/nixos/services.zitadel.openFirewall | Whether to open the port specified in listenPort in the firewall.
|
| options/nixos/services.xonotic.openFirewall | Open the firewall for TCP and UDP on the specified port.
|
| options/nixos/services.uptermd.openFirewall | Whether to open the firewall for the port in services.uptermd.port.
|
| options/nixos/services.vwifi.server.openFirewall | Whether to enable opening the firewall for the TCP and spy ports.
|
| options/nixos/services.hadoop.hbase.rest.openFirewall | Open firewall ports for HBase rest.
|
| options/nixos/services.calibre-web.openFirewall | Open ports in the firewall for the server.
|
| options/nixos/services.firewalld.services.<name>.destination | Destinations for the service.
|
| options/nixos/services.firewalld.services.<name>.description | Description for the service.
|
| options/nixos/services.freeciv.openFirewall | Whether to enable opening the firewall for the port listening for clients.
|
| options/nixos/services.kthxbye.openFirewall | Whether to open ports in the firewall needed for the daemon to function.
|
| options/nixos/services.orthanc.openFirewall | Whether to open the firewall for Orthanc
|
| options/nixos/services.litellm.openFirewall | Whether to open the firewall for LiteLLM
|
| options/nixos/programs.mosh.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/services.radicle.node.openFirewall | Whether to enable opening the firewall for radicle-node.
|
| options/nixos/services.etesync-dav.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.zabbixAgent.openFirewall | Open ports in the firewall for the Zabbix Agent.
|
| options/nixos/services.zabbixProxy.openFirewall | Open ports in the firewall for the Zabbix Proxy.
|
| options/nixos/services.firewalld.settings.StrictForwardPorts | If enabled, the generated destination NAT (DNAT) rules will NOT accept traffic that was DNAT'd by other entities, e.g. docker
|
| options/nixos/services.unifi.openFirewall | Whether or not to open the minimum required ports on the firewall
|
| options/nixos/services.pihole-ftl.openFirewallDHCP | Open ports in the firewall for pihole-FTL's DHCP server.
|
| options/nixos/programs.alvr.openFirewall | Whether to open the default ports in the firewall for the ALVR server.
|
| options/nixos/services.immich-kiosk.openFirewall | Whether to open the firewall for the immich-kiosk port.
|
| options/nixos/services.haste-server.openFirewall | Whether to enable firewall passthrough for haste-server.
|
| options/nixos/services.anki-sync-server.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.caddy.openFirewall | Whether to enable opening the specified http(s) ports in the firewall
|
| options/nixos/services.netbird.server.coturn.openPorts | The list of ports used by coturn for listening to open in the firewall.
|
| options/nixos/services.public-inbox.openFirewall | Whether to enable opening the firewall when using a port option.
|
| options/nixos/services.quake3-server.openFirewall | Open the firewall.
|
| options/nixos/services.devpi-server.openFirewall | Whether to enable opening the default ports in the firewall for Devpi Server.
|
| options/nixos/services.mycelium.openFirewall | Open the firewall for mycelium
|
| options/nixos/services.zapret.params | Specify the bypass parameters for Zapret binary
|
| options/nixos/services.hadoop.hdfs.httpfs.openFirewall | Open firewall ports for HDFS JournalNode.
|
| options/nixos/services.tmate-ssh-server.openFirewall | Whether to automatically open the specified ports in the firewall.
|
| options/nixos/services.matter-server.openFirewall | Whether to open the port in the firewall.
|
| options/nixos/services.terraria.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.metabase.openFirewall | Open ports in the firewall for Metabase.
|
| options/nixos/services.tautulli.openFirewall | Open ports in the firewall for Tautulli.
|
| options/nixos/services.portunus.ldap.tls | Whether to enable LDAPS protocol
|
| options/nixos/services.ersatztv.openFirewall | Open the default ports in the firewall for the server.
|
| options/nixos/services.spoolman.openFirewall | Open the appropriate ports in the firewall for spoolman.
|
| options/nixos/services.sunshine.openFirewall | Whether to automatically open ports in the firewall.
|
| options/nixos/services.zabbixServer.openFirewall | Open ports in the firewall for the Zabbix Server.
|
| options/nixos/services.libeufin.bank.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.gemstash.openFirewall | Whether to open the firewall for the port in services.gemstash.bind.
|
| options/nixos/services.endlessh.openFirewall | Whether to open a firewall port for the SSH listener.
|
| options/nixos/services.rtorrent.openFirewall | Whether to open the firewall for the port in services.rtorrent.port.
|
| options/nixos/services.prowlarr.openFirewall | Open ports in the firewall for the Prowlarr web interface.
|
| options/nixos/services.whisparr.openFirewall | Open ports in the firewall for the Whisparr web interface.
|
| options/nixos/services.hadoop.hbase.thrift.openFirewall | Open firewall ports for HBase thrift.
|
| options/nixos/services.hadoop.hbase.master.openFirewall | Open firewall ports for HBase master.
|
| options/nixos/services.chromadb.openFirewall | Whether to automatically open the specified TCP port in the firewall.
|
| options/nixos/services.factorio.openFirewall | Whether to automatically open the specified UDP port in the firewall.
|
| options/nixos/services.scrutiny.openFirewall | Whether to enable opening the default ports in the firewall for Scrutiny.
|
| options/nixos/services.endlessh-go.openFirewall | Whether to open a firewall port for the SSH listener.
|
| options/nixos/services.eternal-terminal.port | The port the server should listen on
|
| options/nixos/services.webhook.openFirewall | Open the configured port in the firewall for external ingress traffic
|
| options/darwin/services.eternal-terminal.port | The port the server should listen on
|
| options/nixos/services.firewalld.settings.NftablesFlowtable | This may improve forwarded traffic throughput by enabling nftables flowtable
|
| options/nixos/services.printing.openFirewall | Whether to open the firewall for TCP ports specified in
listenAddresses option.
|
| options/nixos/services.pingvin-share.openFirewall | Whether to open the firewall for the port in services.pingvin-share.frontend.port.
|
| options/nixos/services.saunafs.master.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/services.libeufin.nexus.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.taler.exchange.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.taler.merchant.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.minidlna.openFirewall | Whether to enable opening HTTP (TCP) and SSDP (UDP) ports in the firewall.
|
| options/nixos/services.stalwart.openFirewall | Whether to open TCP firewall ports, which are specified in
services.stalwart.settings.server.listener on all interfaces.
|
| options/nixos/services.druid.overlord.openFirewall | Open firewall ports for Druid Overlord.
|
| options/nixos/services.moosefs.master.openFirewall | Whether to automatically open required firewall ports for master service.
|
| options/nixos/services.docling-serve.openFirewall | Whether to open the firewall for Docling Serve
|
| options/nixos/services.etebase-server.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.livekit.ingress.openFirewall.rtc | Open WebRTC ports in the firewall.
|
| options/nixos/services.librechat.openFirewall | Whether to open the port in the firewall.
|
| options/nixos/services.bitmagnet.openFirewall | Open DHT ports in firewall
|
| options/nixos/services.octoprint.openFirewall | Open ports in the firewall for OctoPrint.
|
| options/nixos/services.calibre-server.openFirewall | Open ports in the firewall for the Calibre Server web interface.
|
| options/nixos/services.redis.servers.<name>.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.udp-over-tcp.tcp2udp.<name>.openFirewall | Open the appropriate ports in the firewall.
|
| options/nixos/services.udp-over-tcp.udp2tcp.<name>.openFirewall | Open the appropriate ports in the firewall.
|
| options/nixos/services.immich-public-proxy.openFirewall | Whether to open the IPP port in the firewall
|
| options/nixos/services.tailscale.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.navidrome.openFirewall | Whether to open the TCP port in the firewall
|
| options/nixos/services.pangolin.openFirewall | Whether to enable opening TCP ports 80 and 443, and UDP port 51820 in the firewall for the Pangolin service(s).
|
| options/nixos/services.livekit.ingress.openFirewall.rtmp | Open RTMP port in the firewall.
|
| options/nixos/services.livekit.ingress.openFirewall.whip | Open WHIP port in the firewall.
|
| options/nixos/services.deluge.openFirewall | Whether to open the firewall for the ports in
services.deluge.config.listen_ports
|
| options/nixos/services.lanraragi.openFirewall | Open ports in the firewall for LANraragi's web interface.
|
| options/nixos/services.pinchflat.openFirewall | Open ports in the firewall for the Pinchflat web interface
|
| options/nixos/services.overseerr.openFirewall | Open a port in the firewall for the Overseerr web interface.
|
| options/nixos/services.stalwart-mail.openFirewall | Whether to open TCP firewall ports, which are specified in
services.stalwart-mail.settings.server.listener on all interfaces.
|
| options/nixos/services.icecream.daemon.openFirewall | Whether to automatically open receive port in the firewall.
|
| options/nixos/services.druid.middleManager.openFirewall | Open firewall ports for Druid middleManager.
|
| options/nixos/services.blendfarm.openFirewall | Whether to enable allowing blendfarm network access through the firewall.
|
| options/nixos/services.hadoop.hdfs.datanode.openFirewall | Open firewall ports for HDFS DataNode.
|
| options/nixos/services.hadoop.hdfs.namenode.openFirewall | Open firewall ports for HDFS NameNode.
|
| options/nixos/services.local-content-share.openFirewall | Whether to automatically open the specified port in the firewall
|
| options/nixos/services.cockroachdb.openPorts | Open firewall ports for cluster communication by default
|
| options/nixos/services.opensnitch.rules | Declarative configuration of firewall rules
|
| options/nixos/services.dockerRegistry.openFirewall | Opens the port used by the firewall.
|
| options/nixos/services.firewalld.settings.IPv6_rpfilter | Performs reverse path filtering (RPF) on IPv6 packets as per RFC 3704
|
| options/nixos/services.shairport-sync.openFirewall | Whether to automatically open ports in the firewall.
|
| options/nixos/services.home-assistant.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.lasuite-meet.livekit.openFirewall | Whether to enable Open firewall ports for livekit.
|
| options/nixos/services.hadoop.hbase.regionServer.openFirewall | Open firewall ports for HBase regionServer.
|
| options/nixos/services.jellyfin.openFirewall | Open the default ports in the firewall for the media server
|
| options/nixos/services.pixiecore.openFirewall | Open ports (67, 69, 4011 UDP and 'port', 'statusPort' TCP) in the firewall for Pixiecore.
|
| options/nixos/networking.wireguard.interfaces.<name>.fwMark | Mark all wireguard packets originating from
this interface with the given firewall mark
|
| options/nixos/services.suwayomi-server.openFirewall | Whether to open the firewall for the port in services.suwayomi-server.settings.server.port.
|
| options/nixos/services.broadcast-box.web.openFirewall | Whether to enable opening the HTTP server port and, if enabled, the HTTPS redirect server
port in the firewall.
.
|
| options/nixos/services.reaction.runAsRoot | Whether to run reaction as root
|
| options/nixos/services.nzbhydra2.openFirewall | Open ports in the firewall for the NZBHydra2 web interface.
|
| options/nixos/services.pulseaudio.tcp.openFirewall | Whether to enable Open firewall for the specified port.
|
| options/nixos/services.zoneminder.openFirewall | Open the firewall port(s).
|
| options/nixos/services.fedimintd.<name>.ui.openFirewall | Opens TCP port in firewall for built-in UI
|
| options/nixos/programs.steam.remotePlay.openFirewall | Open ports in the firewall for Steam Remote Play.
|
| options/nixos/services.broadcast-box.openFirewall | Whether to enable opening WebRTC traffic ports in the firewall
|
| options/nixos/services.icecream.daemon.openBroadcast | Whether to automatically open the firewall for scheduler discovery.
|
| options/nixos/services.beanstalkd.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.linkwarden.openFirewall | Whether to open the Linkwarden port in the firewall
|
| options/nixos/services.fedimintd.<name>.api.openFirewall | Opens port in firewall for fedimintd's api port
|
| options/nixos/services.jellyseerr.openFirewall | Open port in the firewall for the Jellyseerr web interface.
|
| options/nixos/services.lubelogger.openFirewall | Open ports in the firewall for the LubeLogger web interface.
|
| options/nixos/services.snapserver.openFirewall | Whether to automatically open the specified ports in the firewall.
|
| options/nixos/services.szurubooru.openFirewall | Whether to open the firewall for the port in services.szurubooru.server.port.
|
| options/nixos/services.taskserver.openFirewall | Whether to open the firewall for the specified Taskserver port.
|
| options/nixos/services.wgautomesh.openFirewall | Automatically open gossip port in firewall (recommended).
|
| options/nixos/services.homebridge.openFirewall | Open ports in the firewall for the Homebridge web interface and service.
|
| options/nixos/services.keepalived.openFirewall | Whether to automatically allow VRRP and AH packets in the firewall.
|
| options/nixos/services.fedimintd.<name>.p2p.openFirewall | Opens port in firewall for fedimintd's p2p port (both TCP and UDP)
|
| options/nixos/programs.envision.openFirewall | Whether to enable the default ports in the firewall for the WiVRn server.
|
| options/nixos/services.crossfire-server.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.minecraft-server.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.druid.historical.openFirewall | Open firewall ports for Druid Historical.
|
| options/nixos/services.transmission.openRPCPort | Whether to enable opening of the RPC port in the firewall.
|
| options/nixos/services.gotosocial.openFirewall | Open the configured port in the firewall
|
| options/nixos/services.reposilite.openFirewall | Whether to open the firewall ports for Reposilite
|
| options/nixos/services.opensnitch.settings.Rules.Path | Path to the directory where firewall rules can be found and will
get stored by the NixOS module.
|
| options/nixos/services.cloudflare-warp.openFirewall | Whether to enable opening UDP ports in the firewall.
|
| options/nixos/services.tailscale.derper.openFirewall | Whether to open the firewall for the specified port
|
| options/nixos/services.lighthouse.beacon.openFirewall | Open the port in the firewall
|
| options/nixos/services.mirakurun.openFirewall | Open ports in the firewall for Mirakurun.
Exposing Mirakurun to the open internet is generally advised
against
|
| options/nixos/services.teamspeak3.openFirewall | Open ports in the firewall for the TeamSpeak3 server.
|
| options/nixos/services.zapret.configureFirewall | Whether to setup firewall routing so that system http(s) traffic is forwarded via this service
|
| options/nixos/services.pihole-ftl.openFirewallWebserver | Open ports in the firewall for pihole-FTL's webserver, as configured in settings.webserver.port.
|
| options/nixos/services.transmission.openPeerPorts | Whether to enable opening of the peer port(s) in the firewall.
|
| options/nixos/services.filebrowser.openFirewall | Whether to enable opening firewall ports for FileBrowser.
|
| options/nixos/services.spacecookie.openFirewall | Whether to open the necessary port in the firewall for spacecookie.
|
| options/nixos/services.netbird.clients.<name>.openFirewall | Opens up firewall port for communication between NetBird peers directly over LAN or public IP,
without using (internet-hosted) TURN servers as intermediaries.
|
| options/nixos/services.netbird.tunnels.<name>.openFirewall | Opens up firewall port for communication between NetBird peers directly over LAN or public IP,
without using (internet-hosted) TURN servers as intermediaries.
|
| options/nixos/services.fedimintd.<name>.api_ws.openFirewall | Opens TCP port in firewall for fedimintd's Websocket API
|
| options/nixos/services.icecream.scheduler.openFirewall | Whether to automatically open the daemon port in the firewall.
|
| options/nixos/services.qbittorrent.openFirewall | Whether to enable opening both the webuiPort and torrentPort over TCP in the firewall.
|
| options/nixos/services.druid.coordinator.openFirewall | Open firewall ports for Druid Coordinator.
|
| options/nixos/networking.nftables.enable | Whether to enable nftables and use nftables based firewall if enabled.
nftables is a Linux-based packet filtering framework intended to
replace frameworks like iptables
|
| options/nixos/services.opensnitch.settings.Firewall | Which firewall backend to use.
|
| options/nixos/programs.localsend.openFirewall | Whether to enable opening the firewall port 53317 for receiving files.
|
| options/nixos/services.homepage-dashboard.openFirewall | Open ports in the firewall for Homepage.
|
| options/nixos/services.cassandra.rpcAddress | The address or interface to bind the native transport server to
|
| options/darwin/networking.applicationFirewall.enable | Whether to enable application firewall.
|
| options/nixos/services.adguardhome.openFirewall | Open ports in the firewall for the AdGuard Home web interface
|
| options/nixos/services.hadoop.hdfs.journalnode.openFirewall | Open firewall ports for HDFS JournalNode.
|
| options/nixos/services.epgstation.openFirewall | Open ports in the firewall for the EPGStation web interface.
Exposing EPGStation to the open internet is generally advised
against
|
| options/nixos/services.jitsi-videobridge.openFirewall | Whether to open ports in the firewall for the videobridge.
|
| options/nixos/services.syncthing.openDefaultPorts | Whether to open the default ports in the firewall: TCP/UDP 22000 for transfers
and UDP 21027 for discovery
|
| options/nixos/services.silverbullet.openFirewall | Open port in the firewall.
|
| options/nixos/services.flaresolverr.openFirewall | Open the port in the firewall for FlareSolverr.
|
| options/nixos/services.photonvision.openFirewall | Whether to open the required ports in the firewall.
|
| options/nixos/services.kubernetes.flannel.openFirewallPorts | Whether to open the Flannel UDP ports in the firewall on all interfaces.
|
| options/nixos/services.saunafs.chunkserver.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/services.prometheus.exporters.sql.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.zfs.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.pve.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.lnd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nut.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.frr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.kea.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.fedimintd.<name>.api_iroh.openFirewall | Opens UDP port in firewall for fedimintd's API Iroh endpoint
|
| options/nixos/services.moosefs.chunkserver.openFirewall | Whether to automatically open required firewall ports for chunkserver service.
|
| options/nixos/services.hadoop.yarn.nodemanager.openFirewall | Open firewall ports for nodemanager
|
| options/nixos/services.foundationdb.openFirewall | Open the firewall ports corresponding to FoundationDB processes and coordinators
using config.networking.firewall.*.
|
| options/nixos/services.prometheus.exporters.ipmi.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.knot.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.bind.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mail.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.bird.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.flow.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.php-fpm.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.ebpf.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mqtt.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nats.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.snmp.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.ping.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.json.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.node.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.netbird.tunnels.<name>.openInternalFirewall | Opens up internal firewall ports for the NetBird's network interface.
|
| options/nixos/services.netbird.clients.<name>.openInternalFirewall | Opens up internal firewall ports for the NetBird's network interface.
|
| options/nixos/programs.ausweisapp.openFirewall | Whether to open the required firewall ports for the Smartphone as Card Reader (SaC) functionality of AusweisApp.
|
| options/nixos/services.prometheus.exporters.dmarc.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.v2ray.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.idrac.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.kafka.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nginx.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.jitsi.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.redis.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.fritz.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.node-cert.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/programs.steam.dedicatedServer.openFirewall | Open ports in the firewall for Source Dedicated Server.
|
| options/nixos/services.technitium-dns-server.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.teamspeak3.openFirewallServerQuery | Open ports in the firewall for the TeamSpeak3 serverquery (administration) system
|
| options/nixos/services.prometheus.exporters.fastly.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.statsd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.rspamd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.tibber.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.script.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.domain.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.dnssec.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.deluge.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mysqld.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.restic.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.chrony.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.pihole.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.shelly.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.torrentstream.openFirewall | Open ports in the firewall for TorrentStream daemon.
|
| options/nixos/services.prometheus.exporters.nvidia-gpu.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.systemd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.klipper.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.dovecot.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.postfix.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.varnish.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.libvirt.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.bitcoin.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.process.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.apcupsd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mongodb.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.sabnzbd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.dnsmasq.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.unbound.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.ecoflow.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.openssh.listenAddresses | List of addresses and ports to listen on (ListenAddress directive
in config)
|
| options/nixos/services.taskchampion-sync-server.openFirewall | Whether to enable Open firewall port for taskchampion-sync-server.
|
| options/nixos/services.prometheus.exporters.py-air-control.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.rtl_433.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.unpoller.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.keylight.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.collectd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nginxlog.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mikrotik.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.influxdb.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.graphite.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.smartctl.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.postgres.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.fritzbox.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.blackbox.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.opnsense.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.librenms.useDistributedPollers | Enables distributed pollers
for this LibreNMS instance
|
| options/nixos/services.audiobookshelf.openFirewall | Open ports in the firewall for the Audiobookshelf web interface.
|
| options/nixos/services.prometheus.exporters.imap-mailstat.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mailman3.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.rasdaemon.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.wireguard.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nextcloud.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.borgmatic.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.smokeping.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.surfboard.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.tailscale.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/programs.steam.localNetworkGameTransfers.openFirewall | Open ports in the firewall for Steam Local Network Game Transfers.
|
| options/nixos/services.prometheus.alertmanager.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.buildkite-agent.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.storagebox.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.scaphandre.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-radarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-sonarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.hadoop.yarn.resourcemanager.openFirewall | Open firewall ports for resourcemanager
|
| options/nixos/services.prometheus.alertmanagerGotify.openFirewall | Opens the bridge port in the firewall.
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.artifactory.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.modemmanager.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/virtualisation.forwardPorts | When using the SLiRP user networking (default), this option allows to
forward ports to/from the host/guest.
If the NixOS firewall on the virtual machine is enabled, you also
have to open the guest ports to enable the traffic between host and
guest.
Currently QEMU supports only IPv4 forwarding.
|
| options/nixos/virtualisation.podman.networkSocket.openFirewall | Whether to open the port in the firewall.
|
| options/nixos/networking.interfaces.<name>.proxyARP | Turn on proxy_arp for this device
|
| options/nixos/networking.wg-quick.interfaces.<name>.peers.*.persistentKeepalive | This is optional and is by default off, because most
users will not need it
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.persistentKeepalive | This is optional and is by default off, because most
users will not need it
|
| options/nixos/virtualisation.oci-containers.containers.<name>.ports | Network ports to publish from the container to the outer host
|
| packages/nixpkgs/gopro-tool | Tool to control GoPro webcam mode in Linux (requires v4l2loopback kernel module and a firewall rule) |
| packages/nixpkgs/shadow-tls | Proxy to expose real tls handshake to the firewall |
| packages/nixpkgs/firehol | Firewall for humans |
| packages/nixpkgs/kube-router | All-in-one router, firewall and service proxy for Kubernetes |
| packages/nixpkgs/diswall | Distributed firewall |
| packages/nixpkgs/cni-plugins | Some standard networking plugins, maintained by the CNI team |
| packages/nixpkgs/gsocket | Connect like there is no firewall, securely |
| packages/nixpkgs/shorewall | IP gateway/firewall configuration tool for GNU/Linux |
| packages/nixpkgs/shellhub-agent | Enables easy access any Linux device behind firewall and NAT |
| packages/nixpkgs/fwbuilder | GUI Firewall Management Application |
| packages/nixpkgs/opensnitch | Application firewall |
| packages/nixpkgs/fffuu | Fancy Formal Firewall Universal Understander |
| packages/nixpkgs/opensnitch-ui | Application firewall |
| packages/nixpkgs/prometheus-opnsense-exporter | Prometheus exporter for opnsense firewall appliances |
| packages/nixpkgs/modsecurity_standalone | Open source, cross-platform web application firewall (WAF) |
| packages/nixpkgs/haskellPackages.hwall-auth-iitk | Initial version of firewall Authentication for IITK network |
| packages/nixpkgs/haskellPackages.moesocks | A functional firewall killer |
| packages/nixpkgs/haskellPackages.amazonka-fms | Amazon Firewall Management Service SDK |
| packages/nixpkgs/vscode-extensions.thorerik.hacker-theme | Perfect theme for writing IP tracers in Visual Basic and reverse-proxying a UNIX-system firewall |
| packages/nixpkgs/crowdsec-firewall-bouncer | Crowdsec bouncer written in golang for firewalls |
| packages/nixpkgs/kdePackages.plasma-firewall | Control Panel for your system firewall |
| packages/nixpkgs/azure-cli-extensions.azure-firewall | Manage Azure Firewall resources |
| packages/nixpkgs/python313Packages.mypy-boto3-network-firewall | Type annotations for boto3 network-firewall |
| packages/nixpkgs/python314Packages.mypy-boto3-network-firewall | Type annotations for boto3 network-firewall |
| packages/nixpkgs/haskellPackages.amazonka-network-firewall | Amazon Network Firewall SDK |
| packages/nixpkgs/python312Packages.mypy-boto3-network-firewall | Type annotations for boto3 network-firewall |
| packages/nixpkgs/nixos-firewall-tool | Tool to temporarily manipulate the NixOS firewall |
| packages/nixpkgs/python313Packages.types-aiobotocore-network-firewall | Type annotations for aiobotocore network-firewall |
| packages/nixpkgs/python314Packages.types-aiobotocore-network-firewall | Type annotations for aiobotocore network-firewall |
| packages/nixpkgs/python312Packages.types-aiobotocore-network-firewall | Type annotations for aiobotocore network-firewall |
| packages/nixpkgs/libsForQt5.plasma-firewall | |
| packages/nixpkgs/firewalld | Firewall daemon with D-Bus interface |
| packages/nixpkgs/firewalld-gui | Firewall daemon with D-Bus interface |
| packages/nixpkgs/haskellPackages.stratosphere-networkfirewall | Stratosphere integration for AWS NetworkFirewall |