| options/nixos/services.crowdsec-firewall-bouncer.secrets.apiKeyPath | Path to the API key to authenticate with a local CrowdSec API
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.api_key | API key to authenticate with a local crowdsec API
|
| options/nixos/services.crowdsec-firewall-bouncer.registerBouncer.enable | Whether to automatically register the bouncer to the locally running
crowdsec service
|
| options/nixos/services.crowdsec.openFirewall | Whether to automatically open firewall ports for crowdsec.
|
| options/nixos/services.crowdsec.user | The user to run crowdsec as
|
| options/nixos/services.crowdsec.hub | Hub collections, parsers, AppSec rules, etc.
|
| options/nixos/services.crowdsec.name | Name of the machine when registering it at the central or local api.
|
| options/nixos/services.crowdsec.group | The group to run crowdsec as
|
| options/nixos/services.crowdsec-firewall-bouncer.enable | Whether to enable CrowdSec Firewall Bouncer.
|
| options/nixos/services.crowdsec.enable | Whether to enable CrowdSec Security Engine.
|
| options/nixos/services.crowdsec-firewall-bouncer.package | The crowdsec-firewall-bouncer package to use.
|
| options/nixos/services.crowdsec.package | The crowdsec package to use.
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.api_url | URL of the local API.
|
| options/nixos/services.crowdsec.localConfig | The configuration for a crowdsec security engine.
|
| options/nixos/services.crowdsec-firewall-bouncer.settings | Settings for the main CrowdSec Firewall Bouncer
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.mode | Firewall mode to use.
|
| options/nixos/services.crowdsec.settings | Set of various configuration attributes
|
| options/nixos/services.crowdsec-firewall-bouncer.createRulesets | Whether to have the module create the appropriate firewall configuration
based on the bouncer settings
|
| options/nixos/services.crowdsec.autoUpdateService | Whether to enable if true cscli hub update will be executed daily
|
| options/nixos/services.crowdsec-firewall-bouncer.registerBouncer.bouncerName | Name to register the bouncer as to the CrowdSec API
|
| options/nixos/nix.firewall.enable | Whether to enable firewalling for outgoing traffic of the nix daemon.
|
| options/nixos/nix.firewall.allowNonTCPUDP | Whether to allow traffic that is neither TCP nor UDP
|
| options/nixos/networking.firewall.enable | Whether to enable the firewall
|
| options/nixos/nix.firewall.allowedTCPPorts | TCP ports to which traffic is allowed
|
| options/nixos/nix.firewall.allowedUDPPorts | UDP ports to which traffic is allowed
|
| options/nixos/networking.firewall.extraCommands | Additional shell commands executed as part of the firewall
initialisation script
|
| options/nixos/networking.firewall.pingLimit | If pings are allowed, this allows setting rate limits on them
|
| options/nixos/networking.firewall.extraReversePathFilterRules | Additional nftables rules to be appended to the rpfilter-allow
chain
|
| options/nixos/networking.firewall.backend | Underlying implementation for the firewall service.
|
| options/nixos/networking.firewall.package | The package to use for running the firewall service.
|
| options/nixos/nix.firewall.allowLoopback | Whether to allow traffic on the loopback interface
|
| options/nixos/networking.firewall.logReversePathDrops | Logs dropped packets failing the reverse path filter test if
the option networking.firewall.checkReversePath is enabled.
|
| options/nixos/networking.firewall.checkReversePath | Performs a reverse path filter test on a packet
|
| options/nixos/nix.firewall.extraNftablesRules | Extra nftables rules to prepend to the generated ones
|
| options/nixos/services.nebula.networks.<name>.firewall.inbound | Firewall rules for inbound traffic.
|
| options/nixos/networking.firewall.extraInputRules | Additional nftables rules to be appended to the input-allow
chain
|
| options/nixos/services.ferm.enable | Whether to enable Ferm Firewall.
Warning: Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/services.nebula.networks.<name>.firewall.outbound | Firewall rules for outbound traffic.
|
| options/nixos/networking.firewall.extraStopCommands | Additional shell commands executed as part of the firewall
shutdown script
|
| options/nixos/networking.firewall.filterForward | Enable filtering in IP forwarding
|
| options/nixos/networking.firewall.extraForwardRules | Additional nftables rules to be appended to the forward-allow
chain
|
| options/nixos/nix.firewall.allowPrivateNetworks | Whether to allow traffic to local networks
|
| options/nixos/networking.firewall.allowPing | Whether to respond to incoming ICMPv4 echo requests
("pings")
|
| options/nixos/networking.firewall.allowedUDPPorts | List of open UDP ports.
|
| options/nixos/networking.firewall.allowedTCPPorts | List of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.technitium-dns-server.firewallUDPPorts | List of UDP ports to open in firewall.
|
| options/nixos/services.prometheus.exporters.pgbouncer.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pgbouncer.openFirewall is true.
|
| options/nixos/networking.firewall.extraPackages | Additional packages to be included in the environment of the system
as well as the path of networking.firewall.extraCommands.
|
| options/nixos/networking.firewall.allowedUDPPortRanges | Range of open UDP ports.
|
| options/nixos/networking.firewall.allowedTCPPortRanges | A range of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.technitium-dns-server.firewallTCPPorts | List of TCP ports to open in firewall
|
| options/nixos/services.prometheus.exporters.pgbouncer.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pgbouncer.openFirewall
is true
|
| options/nixos/networking.firewall.interfaces | Interface-specific open ports.
|
| options/nixos/services.shorewall.enable | Whether to enable Shorewall IPv4 Firewall.
Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/networking.firewall.rejectPackets | If set, refused packets are rejected rather than dropped
(ignored)
|
| options/nixos/networking.firewall.logRefusedPackets | Whether to log all rejected or dropped incoming packets
|
| options/nixos/networking.firewall.logRefusedUnicastsOnly | If networking.firewall.logRefusedPackets
and this option are enabled, then only log packets
specifically directed at this machine, i.e., not broadcasts
or multicasts.
|
| options/nixos/services.shorewall6.enable | Whether to enable Shorewall IPv6 Firewall.
Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/networking.firewall.autoLoadConntrackHelpers | Whether to auto-load connection-tracking helpers
|
| options/nixos/networking.firewall.trustedInterfaces | Traffic coming in from these interfaces will be accepted
unconditionally
|
| options/nixos/services.samba-wsdd.openFirewall | Whether to open the required firewall ports in the firewall.
|
| options/nixos/services.firewalld.settings.CleanupOnExit | Whether to clean up firewall rules when firewalld stops.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedUDPPorts | List of open UDP ports.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedTCPPorts | List of TCP ports on which incoming connections are
accepted.
|
| options/nixos/networking.firewall.logRefusedConnections | Whether to log rejected or dropped incoming connections
|
| options/nixos/services.prometheus.exporters.nut.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nut.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.lnd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.lnd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.sql.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.sql.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.frr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.frr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.pve.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pve.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.zfs.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.zfs.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.kea.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.kea.openFirewall is true.
|
| options/nixos/services.firewalld.zones | firewalld zone configuration files
|
| options/nixos/networking.firewall.interfaces.<name>.allowedUDPPortRanges | Range of open UDP ports.
|
| options/nixos/services.prometheus.exporters.nats.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nats.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.bind.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bind.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ping.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ping.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.flow.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.flow.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.json.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.json.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ipmi.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ipmi.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.bird.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bird.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mail.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mail.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ebpf.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ebpf.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.knot.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.knot.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.node.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.node.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.snmp.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.snmp.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mqtt.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mqtt.openFirewall is true.
|
| options/nixos/services.firewalld.enable | Whether to enable FirewallD.
|
| options/nixos/networking.firewall.interfaces.<name>.allowedTCPPortRanges | A range of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.prometheus.exporters.php-fpm.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.php-fpm.openFirewall is true.
|
| options/nixos/services.firewalld.extraArgs | Extra arguments to pass to FirewallD.
|
| options/nixos/services.prometheus.exporters.nginx.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nginx.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.redis.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.redis.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.kafka.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.kafka.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.idrac.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.idrac.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.v2ray.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.v2ray.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.jitsi.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.jitsi.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.fritz.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.fritz.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dmarc.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dmarc.openFirewall is true.
|
| options/nixos/services.pgbouncer.openFirewall | Whether to automatically open the specified TCP port in the firewall.
|
| options/nixos/services.prometheus.exporters.node-cert.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.node-cert.openFirewall is true.
|
| options/nixos/services.reaction.stopForFirewall | Whether to stop reaction when reloading the firewall
|
| options/nixos/virtualisation.libvirtd.firewallBackend | The backend used to setup virtual network firewall rules.
|
| options/nixos/services.firewalld.settings.CleanupModulesOnExit | Whether to unload all firewall-related kernel modules when firewalld stops.
|
| options/nixos/services.prometheus.exporters.sql.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.sql.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.lnd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.lnd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.frr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.frr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.zfs.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.zfs.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nut.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nut.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.kea.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.kea.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.pve.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pve.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fastly.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.fastly.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.shelly.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.shelly.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.statsd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.statsd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.tibber.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.tibber.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rspamd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rspamd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.chrony.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.chrony.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.pihole.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pihole.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.script.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.script.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dnssec.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dnssec.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.restic.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.restic.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.domain.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.domain.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.deluge.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.deluge.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mysqld.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mysqld.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mqtt.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mqtt.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.json.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.json.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.flow.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.flow.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mail.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mail.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ebpf.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ebpf.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nats.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nats.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.knot.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.knot.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bind.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.bind.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bird.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.bird.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.node.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.node.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ipmi.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ipmi.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ping.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ping.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.snmp.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.snmp.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.php-fpm.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.php-fpm.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nvidia-gpu.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nvidia-gpu.openFirewall is true.
|
| options/nixos/services.firewalld.package | The firewalld package to use.
|
| options/nixos/services.prometheus.exporters.jitsi.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.jitsi.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.redis.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.redis.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nginx.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nginx.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.idrac.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.idrac.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.kafka.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.kafka.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.v2ray.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.v2ray.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fritz.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fritz.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dmarc.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dmarc.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bitcoin.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bitcoin.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dnsmasq.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dnsmasq.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.unbound.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.unbound.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.apcupsd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.apcupsd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.libvirt.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.libvirt.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.varnish.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.varnish.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.postfix.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.postfix.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.sabnzbd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.sabnzbd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.ecoflow.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ecoflow.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.klipper.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.klipper.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.systemd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.systemd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.dovecot.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.dovecot.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mongodb.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mongodb.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.process.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.process.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.node-cert.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.node-cert.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.domain.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.domain.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.chrony.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.chrony.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.statsd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.statsd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.tibber.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.tibber.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mysqld.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mysqld.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.rspamd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.rspamd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.pihole.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pihole.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.deluge.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.deluge.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dnssec.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dnssec.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.restic.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.restic.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.script.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.script.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fastly.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fastly.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.shelly.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.shelly.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.short | Short description for the zone.
|
| options/nixos/services.firewalld.zones.<name>.rules | Rich rules for the zone.
|
| options/nixos/services.firewalld.zones.<name>.ports | Ports to allow in the zone.
|
| options/nixos/services.prometheus.exporters.py-air-control.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.py-air-control.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rtl_433.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rtl_433.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.unpoller.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.unpoller.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.blackbox.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.blackbox.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.influxdb.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.influxdb.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.collectd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.collectd.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.mikrotik.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mikrotik.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.fritzbox.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.fritzbox.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.graphite.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.graphite.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.nginxlog.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nginxlog.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.postgres.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.postgres.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.keylight.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.keylight.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.opnsense.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.opnsense.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.smartctl.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.smartctl.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.nvidia-gpu.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nvidia-gpu.openFirewall
is true
|
| options/nixos/services.ferm.config | Verbatim ferm.conf configuration.
|
| options/nixos/services.firewalld.settings.FirewallBackend | The firewall backend implementation
|
| options/nixos/services.prometheus.exporters.apcupsd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.apcupsd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.unbound.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.unbound.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.varnish.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.varnish.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.ecoflow.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.ecoflow.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.bitcoin.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.bitcoin.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dnsmasq.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dnsmasq.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.dovecot.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.dovecot.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.libvirt.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.libvirt.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.sabnzbd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.sabnzbd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.process.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.process.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.systemd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.systemd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mongodb.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mongodb.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.klipper.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.klipper.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.postfix.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.postfix.openFirewall
is true
|
| options/nixos/services.firewalld.services | firewalld service configuration files
|
| options/nixos/services.prometheus.exporters.mailman3.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mailman3.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.imap-mailstat.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.imap-mailstat.openFirewall is true.
|
| options/nixos/networking.firewall.connectionTrackingModules | List of connection-tracking helpers that are auto-loaded
|
| options/nixos/services.firewalld.zones.<name>.ports.*.port | |
| options/nixos/services.prometheus.exporters.py-air-control.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.py-air-control.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nextcloud.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.nextcloud.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.surfboard.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.surfboard.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.smokeping.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.smokeping.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.wireguard.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.wireguard.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.rasdaemon.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rasdaemon.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.borgmatic.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.borgmatic.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.tailscale.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.tailscale.openFirewall is true.
|
| options/nixos/services.firewalld.zones.<name>.target | Action for packets that doesn't match any rules.
|
| options/nixos/services.prometheus.exporters.rtl_433.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.rtl_433.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.junos-czerwonk.openFirewall is true.
|
| options/nixos/services.firewalld.settings.IndividualCalls | Whether to use individual -restore calls to apply changes to the firewall
|
| options/nixos/services.firewalld.settings | FirewallD config file
|
| options/nixos/services.prometheus.exporters.keylight.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.keylight.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.fritzbox.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fritzbox.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.opnsense.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.opnsense.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.smartctl.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.smartctl.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.mikrotik.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mikrotik.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.influxdb.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.influxdb.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.postgres.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.postgres.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nginxlog.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nginxlog.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.unpoller.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.unpoller.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.blackbox.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.blackbox.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.collectd.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.collectd.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.graphite.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.graphite.openFirewall
is true
|
| options/nixos/services.cloudflare-warp.udpPort | The UDP port to open in the firewall
|
| options/nixos/power.ups.openFirewall | Open ports in the firewall for upsd.
|
| options/nixos/services.prometheus.exporters.imap-mailstat.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.imap-mailstat.openFirewall
is true
|
| options/nixos/services.firewalld.packages | Packages providing firewalld zones and other files
|
| options/nixos/services.fail2ban.packageFirewall | The firewall package used by fail2ban service
|
| options/nixos/services.prometheus.exporters.mailman3.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mailman3.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.version | Version of the zone.
|
| options/nixos/services.irkerd.openPorts | Open ports in the firewall for irkerd
|
| options/nixos/services.prometheus.exporters.buildkite-agent.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.buildkite-agent.openFirewall is true.
|
| options/nixos/services.firewalld.zones.<name>.icmpBlocks | ICMP types to block in the zone.
|
| options/nixos/services.prometheus.exporters.scaphandre.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.scaphandre.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.storagebox.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.storagebox.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.smokeping.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.smokeping.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.wireguard.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.wireguard.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.nextcloud.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nextcloud.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.borgmatic.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.borgmatic.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.surfboard.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.surfboard.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.rasdaemon.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.rasdaemon.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.tailscale.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.tailscale.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.junos-czerwonk.openFirewall
is true
|
| options/nixos/services.zammad.openPorts | Whether to open firewall ports for Zammad
|
| options/nixos/services.opensnitch.settings.Rules.Path | Path to the directory where firewall rules can be found and will
get stored by the NixOS module.
|
| options/nixos/services.prometheus.exporters.exportarr-sonarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-sonarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-lidarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-bazarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.exportarr-radarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-radarr.openFirewall is true.
|
| options/nixos/services.firewalld.services.<name>.ports | Ports of the service.
|
| options/nixos/services.firewalld.zones.<name>.services | Services to allow in the zone.
|
| options/nixos/services.firewalld.services.<name>.short | Short description for the service.
|
| options/nixos/services.firewalld.zones.<name>.sources.*.mac | A MAC address.
|
| options/nixos/services.firewalld.zones.<name>.sourcePorts | Source ports to allow in the zone.
|
| options/nixos/services.firewalld.zones.<name>.sources | Source addresses, address ranges, MAC addresses or ipsets to bind.
|
| options/nixos/services.amule.openPeerPorts | Whether to enable open the peer port(s) in the firewall.
|
| options/nixos/services.prometheus.exporters.buildkite-agent.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.buildkite-agent.openFirewall
is true
|
| options/nixos/services.k3s.serverAddr | The k3s server to connect to
|
| options/nixos/services.prometheus.exporters.scaphandre.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.scaphandre.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.storagebox.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.storagebox.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-readarr.openFirewall is true.
|
| options/nixos/services.prometheus.exporters.artifactory.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.artifactory.openFirewall is true.
|
| options/nixos/services.firewalld.zones.<name>.sourcePorts.*.port | |
| options/nixos/services.firewalld.services.<name>.ports.*.port | |
| options/nixos/services.prometheus.exporters.exportarr-radarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-radarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-lidarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-sonarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-sonarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-bazarr.openFirewall
is true
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts | Ports to forward in the zone.
|
| options/nixos/services.firewalld.zones.<name>.sources.*.ipset | An ipset.
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-prowlarr.openFirewall is true.
|
| options/nixos/services.nfs.server.statdPort | Use a fixed port for rpc.statd
|
| options/nixos/services.dae.openFirewall | Open the firewall port.
|
| options/nixos/services.mediatomb.openFirewall | If false (the default), this is up to the user to declare the firewall rules
|
| options/nixos/services.firewalld.settings.RFC3964_IPv4 | Whether to filter IPv6 traffic with 6to4 destination addresses that correspond to IPv4 addresses that should not be routed over the public internet.
|
| options/nixos/services.miredo.bindPort | Depending on the local firewall/NAT rules, you might need to force
Miredo to use a fixed UDP port and or IPv4 address.
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-readarr.openFirewall
is true
|
| options/nixos/services.prometheus.exporters.artifactory.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.artifactory.openFirewall
is true
|
| options/nixos/services.aria2.openPorts | Open listen and RPC ports found in settings.listen-port and
settings.rpc-listen-port options in the firewall.
|
| options/nixos/services.firewalld.zones.<name>.forward | Whether to enable intra-zone forwarding
|
| options/nixos/services.nbd.server.listenPort | Port to listen on
|
| options/nixos/services.prometheus.exporters.modemmanager.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.modemmanager.openFirewall is true.
|
| options/nixos/services.firewalld.settings.DefaultZone | Default zone for connections.
|
| options/nixos/services.qui.openFirewall | Whether or not to open ports in the firewall for qui.
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.port | |
| options/nixos/services.firewalld.services.<name>.version | Version of the service.
|
| options/nixos/services.firewalld.services.<name>.helpers | Helpers for the service.
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.to-port | |
| options/nixos/services.nfs.server.mountdPort | Use fixed port for rpc.mountd, useful if server is behind firewall.
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-prowlarr.openFirewall
is true
|
| options/nixos/services.firewalld.settings.ReloadPolicy | The policy during reload.
|
| options/nixos/services.n8n.openFirewall | Open ports in the firewall for the n8n web interface.
|
| options/nixos/services.fedimintd.<name>.api.openFirewall | Opens port in firewall for fedimintd's api port
|
| options/nixos/services.firewalld.settings.FlushAllOnReload | Whether to flush all runtime rules on a reload.
|
| options/nixos/services.firewalld.zones.<name>.ports.*.protocol | |
| options/nixos/services.tor.openFirewall | Whether to enable opening of the relay port(s) in the firewall.
|
| options/nixos/services.firewalld.services.<name>.sourcePorts | Source ports for the service.
|
| options/nixos/services.firewalld.zones.<name>.protocols | Protocols to allow in the zone.
|
| options/nixos/services.nfs.server.lockdPort | Use a fixed port for the NFS lock manager kernel module
(lockd/nlockmgr)
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.to-addr | Destination IP address.
|
| options/nixos/services.send.openFirewall | Whether to open firewall ports for send
|
| options/nixos/services.plex.openFirewall | Open ports in the firewall for the media server.
|
| options/nixos/services.prometheus.exporters.modemmanager.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.modemmanager.openFirewall
is true
|
| options/nixos/services.ombi.openFirewall | Open ports in the firewall for the Ombi web interface.
|
| options/nixos/services.xrdp.openFirewall | Whether to open the firewall for the specified RDP port.
|
| options/nixos/services.firewalld.settings.LogDenied | Add logging rules right before reject and drop rules in the INPUT, FORWARD and OUTPUT chains for the default rules and also final reject and drop rules in zones for the configured link-layer packet type.
|
| options/nixos/services.node-red.openFirewall | Open ports in the firewall for the server.
|
| options/nixos/services.gnome.rygel.enable | Whether to enable Rygel UPnP Mediaserver
|
| options/nixos/services.croc.openFirewall | Whether to enable opening of the peer port(s) in the firewall.
|
| options/nixos/services.ergo.openFirewall | Open ports in the firewall for the Ergo node as well as the API.
|
| options/nixos/services.firewalld.services.<name>.sourcePorts.*.port | |
| options/nixos/services.firewalld.services.<name>.includes | Services to include for the service.
|
| options/nixos/services.plikd.openFirewall | Open ports in the firewall for the plikd.
|
| options/nixos/services.omnom.openFirewall | Whether to open ports in the firewall.
|
| options/nixos/services.snmpd.openFirewall | Open port in firewall for snmpd.
|
| options/nixos/services.tika.openFirewall | Whether to open the firewall for Apache Tika
|
| options/nixos/services.znc.openFirewall | Whether to open ports in the firewall for ZNC
|
| options/nixos/services.atuin.openFirewall | Open ports in the firewall for the atuin server.
|
| options/nixos/services.memos.openFirewall | Whether to enable opening the ports in the firewall.
|
| options/nixos/services.cook-cli.openFirewall | Whether to open the cook-cli server port in the firewall.
|
| options/nixos/services.firewalld.zones.<name>.egressPriority | Priority for outbound traffic
|
| options/nixos/services.flood.openFirewall | Whether to open the firewall for the port in services.flood.port.
|
| options/nixos/services.komga.openFirewall | Whether to open the firewall for the port in services.komga.settings.server.port.
|
| options/nixos/services.gatus.openFirewall | Whether to open the firewall for the Gatus web interface.
|
| options/nixos/services.paisa.openFirewall | Open ports in the firewall for the Paisa web server.
|
| options/nixos/services.stash.openFirewall | Open ports in the firewall for the Stash web interface.
|
| options/nixos/services.firewalld.zones.<name>.interfaces | Interfaces to bind.
|
| options/nixos/services.karma.openFirewall | Whether to open ports in the firewall needed for karma to function.
|
| options/nixos/services.rqbit.openFirewall | Whether to enable opening of the HTTP and Peer ports in the firewall.
|
| options/nixos/services.shoko.openFirewall | Open ports in the firewall for the ShokoAnime api and web interface.
|
| options/nixos/services.samba.openFirewall | Whether to enable opening the default ports in the firewall for Samba.
|
| options/nixos/services.wivrn.openFirewall | Whether to enable the default ports in the firewall for the WiVRn server.
|
| options/nixos/services.nix-serve.openFirewall | Open ports in the firewall for nix-serve.
|
| options/nixos/services.firewalld.zones.<name>.masquerade | Whether to enable masquerading in the zone.
|
| options/nixos/services.llama-cpp.openFirewall | Open ports in the firewall for LLaMA C++ server.
|
| options/nixos/networking.nftables.extraDeletions | Extra deletion commands to be run on every firewall start, reload
and after stopping the firewall.
|
| options/nixos/services.firewalld.services.<name>.ports.*.protocol | |
| options/nixos/services.firewalld.services.<name>.protocols | Protocols for the service.
|
| options/nixos/services.firewalld.zones.<name>.sourcePorts.*.protocol | |
| options/nixos/services.lidarr.openFirewall | Open ports in the firewall for Lidarr
|
| options/nixos/services.firewalld.zones.<name>.ingressPriority | Priority for inbound traffic
|
| options/nixos/services.slskd.openFirewall | Whether to open the firewall for the soulseek network listen port (not the web interface port).
|
| options/nixos/services.actual.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.immich.openFirewall | Whether to open the immich port in the firewall
|
| options/nixos/services.etcd.openFirewall | Open etcd ports in the firewall
|
| options/nixos/services.deluge.web.openFirewall | Open ports in the firewall for deluge web daemon
|
| options/nixos/services.dae.openFirewall.enable | Whether to enable opening port in the firewall.
|
| options/nixos/services.deconz.openFirewall | Whether to enable opening up the service ports in the firewall.
|
| options/nixos/services.bazarr.openFirewall | Open ports in the firewall for the bazarr web interface.
|
| options/nixos/services.porn-vault.openFirewall | Whether to open the Porn-Vault port in the firewall.
|
| options/nixos/services.sonarr.openFirewall | Open ports in the firewall for the Sonarr web interface
|
| options/nixos/services.nitter.openFirewall | Open ports in the firewall for Nitter web interface.
|
| options/nixos/services.radarr.openFirewall | Open ports in the firewall for the Radarr web interface.
|
| options/nixos/services.redlib.openFirewall | Open ports in the firewall for the redlib web interface
|
| options/nixos/services.mpd.openFirewall | Open ports in the firewall for mpd
|
| options/nixos/services.yggdrasil.openMulticastPort | Whether to open the UDP port used for multicast peer discovery
|
| options/nixos/services.glance.openFirewall | Whether to open the firewall for Glance
|
| options/nixos/services.ollama.openFirewall | Whether to open the firewall for ollama
|
| options/nixos/services.murmur.openFirewall | Whether to enable opening ports in the firewall for the Mumble server.
|
| options/nixos/services.miredo.bindAddress | Depending on the local firewall/NAT rules, you might need to force
Miredo to use a fixed UDP port and or IPv4 address.
|
| options/nixos/services.firewalld.zones.<name>.forwardPorts.*.protocol | |
| options/nixos/services.avahi.openFirewall | Whether to open the firewall for UDP port 5353
|
| options/nixos/services.veilid.openFirewall | Whether to open firewall on ports 5150/tcp, 5150/udp
|
| options/nixos/services.meme-bingo-web.openFirewall | Whether to enable Opens the specified port in the firewall.
.
|
| options/nixos/services.firewalld.zones.<name>.sources.*.address | An IP address or a network IP address with a mask for IPv4 or IPv6
|
| options/nixos/services.firewalld.zones.<name>.description | Description for the zone.
|
| options/nixos/services.openarena.openPorts | Whether to open firewall ports for OpenArena
|
| options/nixos/services.teeworlds.openPorts | Whether to open firewall ports for Teeworlds.
|
| options/nixos/services.firewalld.zones.<name>.icmpBlockInversion | Whether to invert the icmp block handling
|
| options/nixos/services.roon-server.openFirewall | Open ports in the firewall for the server.
|
| options/nixos/services.roon-bridge.openFirewall | Open ports in the firewall for the bridge.
|
| options/nixos/services.open-webui.openFirewall | Whether to open the firewall for Open-WebUI
|
| options/nixos/services.mchprs.openFirewall | Whether to open ports in the firewall for the server
|
| options/nixos/services.iperf3.openFirewall | Open ports in the firewall for iperf3.
|
| options/nixos/boot.initrd.network.ifstate.cleanupSettings | Content of IfState's initrd cleanup configuration file
|
| options/nixos/services.hardware.lcd.server.openPorts | Open the ports in the firewall
|
| options/nixos/services.prometheus.exporters.pgbouncer.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.llama-swap.openFirewall | Whether to open the firewall for llama-swap
|
| options/nixos/services.corteza.openFirewall | Whether to open ports in the firewall.
|
| options/nixos/services.glances.openFirewall | Open port in the firewall for glances.
|
| options/nixos/services.grafana.openFirewall | Open the ports in the firewall for the server.
|
| options/nixos/services.polaris.openFirewall | Open the configured port in the firewall.
|
| options/nixos/services.readarr.openFirewall | Open ports in the firewall for Readarr
|
| options/nixos/services.screego.openFirewall | Open the firewall port(s).
|
| options/nixos/services.druid.broker.openFirewall | Open firewall ports for Druid Broker.
|
| options/nixos/services.druid.router.openFirewall | Open firewall ports for Druid Router.
|
| options/nixos/services.esphome.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.livekit.openFirewall | Opens port range for LiveKit on the firewall.
|
| options/nixos/services.marytts.openFirewall | Whether to open the port in the firewall for MaryTTS.
|
| options/nixos/services.pgadmin.openFirewall | Whether to enable firewall passthrough for pgadmin4.
|
| options/nixos/services.owncast.openFirewall | Open the appropriate ports in the firewall for owncast.
|
| options/nixos/services.vmagent.openFirewall | Whether to open the firewall for the default ports.
|
| options/nixos/services.vlagent.openFirewall | Whether to open the firewall for the default ports.
|
| options/nixos/services.beszel.agent.openFirewall | Whether to open the firewall port (default 45876).
|
| options/nixos/services.firewalld.services.<name>.sourcePorts.*.protocol | |
| options/nixos/programs.mosh.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/services.fedimintd.<name>.api_ws.openFirewall | Opens TCP port in firewall for fedimintd's Websocket API
|
| options/nixos/services.pihole-ftl.openFirewallDNS | Open ports in the firewall for pihole-FTL's DNS server.
|
| options/nixos/services.autobrr.openFirewall | Open ports in the firewall for the Autobrr web interface.
|
| options/nixos/services.jackett.openFirewall | Open ports in the firewall for the Jackett web interface.
|
| options/nixos/services.biboumi.openFirewall | Whether to enable opening of the identd port in the firewall.
|
| options/nixos/services.sharkey.openFirewall | Whether to open ports in the NixOS firewall for Sharkey.
|
| options/nixos/services.openssh.openFirewall | Whether to automatically open the specified ports in the firewall.
|
| options/nixos/services.umurmur.openFirewall | Open ports in the firewall for the uMurmur Mumble server.
|
| options/nixos/services.serviio.openFirewall | Open ports in the firewall for the Serviio Media Server.
|
| options/nixos/services.sabnzbd.openFirewall | Open ports in the firewall for the sabnzbd web interface
|
| options/nixos/services.pdfding.openFirewall | Open ports in the firewall for the PdfDing web interface.
|
| options/nixos/services.zitadel.openFirewall | Whether to open the port specified in listenPort in the firewall.
|
| options/nixos/services.xonotic.openFirewall | Open the firewall for TCP and UDP on the specified port.
|
| options/nixos/services.uptermd.openFirewall | Whether to open the firewall for the port in services.uptermd.port.
|
| options/nixos/services.cassandra.jmxPort | Specifies the default port over which Cassandra will be available for
JMX connections
|
| options/nixos/services.vwifi.server.openFirewall | Whether to enable opening the firewall for the TCP and spy ports.
|
| options/nixos/services.calibre-web.openFirewall | Open ports in the firewall for the server.
|
| options/nixos/services.firewalld.settings.NftablesCounters | Whether to add a counter to every nftables rule.
|
| options/nixos/programs.alvr.openFirewall | Whether to open the default ports in the firewall for the ALVR server.
|
| options/nixos/services.freeciv.openFirewall | Whether to enable opening the firewall for the port listening for clients.
|
| options/nixos/services.kthxbye.openFirewall | Whether to open ports in the firewall needed for the daemon to function.
|
| options/nixos/services.orthanc.openFirewall | Whether to open the firewall for Orthanc
|
| options/nixos/services.litellm.openFirewall | Whether to open the firewall for LiteLLM
|
| options/nixos/services.hadoop.hbase.rest.openFirewall | Open firewall ports for HBase rest.
|
| options/nixos/services.etesync-dav.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.zabbixAgent.openFirewall | Open ports in the firewall for the Zabbix Agent.
|
| options/nixos/services.zabbixProxy.openFirewall | Open ports in the firewall for the Zabbix Proxy.
|
| options/nixos/services.radicle.node.openFirewall | Whether to enable opening the firewall for radicle-node.
|
| options/nixos/services.firewalld.settings.NftablesTableOwner | If enabled, the generated nftables rule set will be owned exclusively by firewalld
|
| options/nixos/services.pihole-ftl.openFirewallDHCP | Open ports in the firewall for pihole-FTL's DHCP server.
|
| options/nixos/services.unifi.openFirewall | Whether or not to open the minimum required ports on the firewall
|
| options/nixos/services.immich-kiosk.openFirewall | Whether to open the firewall for the immich-kiosk port.
|
| options/nixos/services.haste-server.openFirewall | Whether to enable firewall passthrough for haste-server.
|
| options/nixos/services.anki-sync-server.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.firewalld.services.<name>.destination.ipv4 | IPv4 destination.
|
| options/nixos/services.firewalld.services.<name>.destination.ipv6 | IPv6 destination.
|
| options/nixos/services.caddy.openFirewall | Whether to enable opening the specified http(s) ports in the firewall
|
| options/nixos/services.quake3-server.openFirewall | Open the firewall.
|
| options/nixos/services.public-inbox.openFirewall | Whether to enable opening the firewall when using a port option.
|
| options/nixos/services.netbird.server.coturn.openPorts | The list of ports used by coturn for listening to open in the firewall.
|
| options/nixos/services.firewalld.services.<name>.destination | Destinations for the service.
|
| options/nixos/services.firewalld.services.<name>.description | Description for the service.
|
| options/nixos/services.mycelium.openFirewall | Open the firewall for mycelium
|
| options/nixos/services.devpi-server.openFirewall | Whether to enable opening the default ports in the firewall for Devpi Server.
|
| options/nixos/services.tmate-ssh-server.openFirewall | Whether to automatically open the specified ports in the firewall.
|
| options/nixos/services.matter-server.openFirewall | Whether to open the port in the firewall.
|
| options/nixos/services.terraria.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.metabase.openFirewall | Open ports in the firewall for Metabase.
|
| options/nixos/services.tautulli.openFirewall | Open ports in the firewall for Tautulli.
|
| options/nixos/services.zapret.params | Specify the bypass parameters for Zapret binary
|
| options/nixos/services.hadoop.hdfs.httpfs.openFirewall | Open firewall ports for HDFS JournalNode.
|
| options/nixos/services.firewalld.settings.StrictForwardPorts | If enabled, the generated destination NAT (DNAT) rules will NOT accept traffic that was DNAT'd by other entities, e.g. docker
|
| options/nixos/services.ersatztv.openFirewall | Open the default ports in the firewall for the server.
|
| options/nixos/services.spoolman.openFirewall | Open the appropriate ports in the firewall for spoolman.
|
| options/nixos/services.sunshine.openFirewall | Whether to automatically open ports in the firewall.
|
| options/nixos/services.opensnitch.enable | Whether to enable Opensnitch application firewall.
|
| options/nixos/services.zabbixServer.openFirewall | Open ports in the firewall for the Zabbix Server.
|
| options/nixos/services.libeufin.bank.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.portunus.ldap.tls | Whether to enable LDAPS protocol
|
| options/nixos/services.netbird.server.coturn.enable | Whether to enable a Coturn server for Netbird, will also open the firewall on the configured range.
|
| options/nixos/services.gemstash.openFirewall | Whether to open the firewall for the port in services.gemstash.bind.
|
| options/nixos/services.endlessh.openFirewall | Whether to open a firewall port for the SSH listener.
|
| options/nixos/services.rtorrent.openFirewall | Whether to open the firewall for the port in services.rtorrent.port.
|
| options/nixos/services.prowlarr.openFirewall | Open ports in the firewall for the Prowlarr web interface.
|
| options/nixos/services.whisparr.openFirewall | Open ports in the firewall for the Whisparr web interface.
|
| options/nixos/services.chromadb.openFirewall | Whether to automatically open the specified TCP port in the firewall.
|
| options/nixos/services.factorio.openFirewall | Whether to automatically open the specified UDP port in the firewall.
|
| options/nixos/services.scrutiny.openFirewall | Whether to enable opening the default ports in the firewall for Scrutiny.
|
| options/nixos/services.endlessh-go.openFirewall | Whether to open a firewall port for the SSH listener.
|
| options/nixos/services.eternal-terminal.port | The port the server should listen on
|
| options/nixos/services.webhook.openFirewall | Open the configured port in the firewall for external ingress traffic
|
| options/darwin/services.eternal-terminal.port | The port the server should listen on
|
| options/nixos/services.hadoop.hbase.thrift.openFirewall | Open firewall ports for HBase thrift.
|
| options/nixos/services.hadoop.hbase.master.openFirewall | Open firewall ports for HBase master.
|
| options/nixos/programs.sharing.enable | Whether to enable sharing, a CLI tool for sharing files
|
| options/nixos/services.printing.openFirewall | Whether to open the firewall for TCP ports specified in
listenAddresses option.
|
| options/nixos/services.pingvin-share.openFirewall | Whether to open the firewall for the port in services.pingvin-share.frontend.port.
|
| options/nixos/services.saunafs.master.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/services.fedimintd.<name>.api_iroh.openFirewall | Opens UDP port in firewall for fedimintd's API Iroh endpoint
|
| options/nixos/services.minidlna.openFirewall | Whether to enable opening HTTP (TCP) and SSDP (UDP) ports in the firewall.
|
| options/nixos/services.stalwart.openFirewall | Whether to open TCP firewall ports, which are specified in
services.stalwart.settings.server.listener on all interfaces.
|
| options/nixos/services.libeufin.nexus.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.taler.exchange.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.taler.merchant.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.druid.overlord.openFirewall | Open firewall ports for Druid Overlord.
|
| options/nixos/services.docling-serve.openFirewall | Whether to open the firewall for Docling Serve
|
| options/nixos/services.moosefs.master.openFirewall | Whether to automatically open required firewall ports for master service.
|
| options/nixos/services.etebase-server.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.firewalld.settings.NftablesFlowtable | This may improve forwarded traffic throughput by enabling nftables flowtable
|
| options/nixos/networking.nat.enable | Whether to enable Network Address Translation (NAT)
|
| options/nixos/services.livekit.ingress.openFirewall.rtc | Open WebRTC ports in the firewall.
|
| options/nixos/services.librechat.openFirewall | Whether to open the port in the firewall.
|
| options/nixos/services.bitmagnet.openFirewall | Open DHT ports in firewall
|
| options/nixos/services.octoprint.openFirewall | Open ports in the firewall for OctoPrint.
|
| options/nixos/services.calibre-server.openFirewall | Open ports in the firewall for the Calibre Server web interface.
|
| options/nixos/services.redis.servers.<name>.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.udp-over-tcp.tcp2udp.<name>.openFirewall | Open the appropriate ports in the firewall.
|
| options/nixos/services.udp-over-tcp.udp2tcp.<name>.openFirewall | Open the appropriate ports in the firewall.
|
| options/nixos/services.immich-public-proxy.openFirewall | Whether to open the IPP port in the firewall
|
| options/nixos/services.tailscale.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.navidrome.openFirewall | Whether to open the TCP port in the firewall
|
| options/nixos/services.pangolin.openFirewall | Whether to enable opening TCP ports 80 and 443, and UDP port 51820 in the firewall for the Pangolin service(s).
|
| options/nixos/services.deluge.openFirewall | Whether to open the firewall for the ports in
services.deluge.config.listen_ports
|
| options/nixos/services.lanraragi.openFirewall | Open ports in the firewall for LANraragi's web interface.
|
| options/nixos/services.pinchflat.openFirewall | Open ports in the firewall for the Pinchflat web interface
|
| options/nixos/services.overseerr.openFirewall | Open a port in the firewall for the Overseerr web interface.
|
| options/nixos/services.livekit.ingress.openFirewall.rtmp | Open RTMP port in the firewall.
|
| options/nixos/services.livekit.ingress.openFirewall.whip | Open WHIP port in the firewall.
|
| options/nixos/services.stalwart-mail.openFirewall | Whether to open TCP firewall ports, which are specified in
services.stalwart-mail.settings.server.listener on all interfaces.
|
| options/nixos/services.blendfarm.openFirewall | Whether to enable allowing blendfarm network access through the firewall.
|
| options/nixos/services.icecream.daemon.openFirewall | Whether to automatically open receive port in the firewall.
|
| options/nixos/services.local-content-share.openFirewall | Whether to automatically open the specified port in the firewall
|
| options/nixos/services.druid.middleManager.openFirewall | Open firewall ports for Druid middleManager.
|
| options/nixos/services.hadoop.hdfs.datanode.openFirewall | Open firewall ports for HDFS DataNode.
|
| options/nixos/services.hadoop.hdfs.namenode.openFirewall | Open firewall ports for HDFS NameNode.
|
| options/nixos/services.cockroachdb.openPorts | Open firewall ports for cluster communication by default
|
| options/nixos/services.dockerRegistry.openFirewall | Opens the port used by the firewall.
|
| options/nixos/services.opensnitch.rules | Declarative configuration of firewall rules
|
| options/nixos/networking.wireguard.interfaces.<name>.fwMark | Mark all wireguard packets originating from
this interface with the given firewall mark
|
| options/nixos/services.shairport-sync.openFirewall | Whether to automatically open ports in the firewall.
|
| options/nixos/services.home-assistant.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.lasuite-meet.livekit.openFirewall | Whether to enable Open firewall ports for livekit.
|
| options/nixos/services.pixiecore.openFirewall | Open ports (67, 69, 4011 UDP and 'port', 'statusPort' TCP) in the firewall for Pixiecore.
|
| options/nixos/services.jellyfin.openFirewall | Open the default ports in the firewall for the media server
|
| options/nixos/services.hadoop.hbase.regionServer.openFirewall | Open firewall ports for HBase regionServer.
|
| options/nixos/services.suwayomi-server.openFirewall | Whether to open the firewall for the port in services.suwayomi-server.settings.server.port.
|
| options/nixos/services.broadcast-box.web.openFirewall | Whether to enable opening the HTTP server port and, if enabled, the HTTPS redirect server
port in the firewall.
.
|
| options/nixos/services.nzbhydra2.openFirewall | Open ports in the firewall for the NZBHydra2 web interface.
|
| options/nixos/programs.steam.remotePlay.openFirewall | Open ports in the firewall for Steam Remote Play.
|
| options/nixos/services.reaction.runAsRoot | Whether to run reaction as root
|
| options/nixos/services.zoneminder.openFirewall | Open the firewall port(s).
|
| options/nixos/services.pulseaudio.tcp.openFirewall | Whether to enable Open firewall for the specified port.
|
| options/nixos/services.fedimintd.<name>.ui.openFirewall | Opens TCP port in firewall for built-in UI
|
| options/nixos/services.broadcast-box.openFirewall | Whether to enable opening WebRTC traffic ports in the firewall
|
| options/nixos/services.beanstalkd.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.linkwarden.openFirewall | Whether to open the Linkwarden port in the firewall
|
| options/nixos/services.firewalld.settings.IPv6_rpfilter | Performs reverse path filtering (RPF) on IPv6 packets as per RFC 3704
|
| options/nixos/services.icecream.daemon.openBroadcast | Whether to automatically open the firewall for scheduler discovery.
|
| options/nixos/services.jellyseerr.openFirewall | Open port in the firewall for the Jellyseerr web interface.
|
| options/nixos/services.lubelogger.openFirewall | Open ports in the firewall for the LubeLogger web interface.
|
| options/nixos/services.snapserver.openFirewall | Whether to automatically open the specified ports in the firewall.
|
| options/nixos/services.szurubooru.openFirewall | Whether to open the firewall for the port in services.szurubooru.server.port.
|
| options/nixos/services.taskserver.openFirewall | Whether to open the firewall for the specified Taskserver port.
|
| options/nixos/services.wgautomesh.openFirewall | Automatically open gossip port in firewall (recommended).
|
| options/nixos/services.homebridge.openFirewall | Open ports in the firewall for the Homebridge web interface and service.
|
| options/nixos/services.keepalived.openFirewall | Whether to automatically allow VRRP and AH packets in the firewall.
|
| options/nixos/programs.envision.openFirewall | Whether to enable the default ports in the firewall for the WiVRn server.
|
| options/nixos/services.fedimintd.<name>.p2p.openFirewall | Opens port in firewall for fedimintd's p2p port (both TCP and UDP)
|
| options/nixos/services.crossfire-server.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.minecraft-server.openFirewall | Whether to open ports in the firewall for the server.
|
| options/nixos/services.druid.historical.openFirewall | Open firewall ports for Druid Historical.
|
| options/nixos/services.transmission.openRPCPort | Whether to enable opening of the RPC port in the firewall.
|
| options/nixos/services.gotosocial.openFirewall | Open the configured port in the firewall
|
| options/nixos/services.reposilite.openFirewall | Whether to open the firewall ports for Reposilite
|
| options/nixos/services.cloudflare-warp.openFirewall | Whether to enable opening UDP ports in the firewall.
|
| options/nixos/services.tailscale.derper.openFirewall | Whether to open the firewall for the specified port
|
| options/nixos/services.lighthouse.beacon.openFirewall | Open the port in the firewall
|
| options/nixos/services.teamspeak3.openFirewall | Open ports in the firewall for the TeamSpeak3 server.
|
| options/nixos/services.mirakurun.openFirewall | Open ports in the firewall for Mirakurun.
Exposing Mirakurun to the open internet is generally advised
against
|
| options/nixos/services.zapret.configureFirewall | Whether to setup firewall routing so that system http(s) traffic is forwarded via this service
|
| options/nixos/services.pihole-ftl.openFirewallWebserver | Open ports in the firewall for pihole-FTL's webserver, as configured in settings.webserver.port.
|
| options/nixos/services.transmission.openPeerPorts | Whether to enable opening of the peer port(s) in the firewall.
|
| options/nixos/services.filebrowser.openFirewall | Whether to enable opening firewall ports for FileBrowser.
|
| options/nixos/services.spacecookie.openFirewall | Whether to open the necessary port in the firewall for spacecookie.
|
| options/nixos/services.netbird.clients.<name>.openFirewall | Opens up firewall port for communication between NetBird peers directly over LAN or public IP,
without using (internet-hosted) TURN servers as intermediaries.
|
| options/nixos/services.netbird.tunnels.<name>.openFirewall | Opens up firewall port for communication between NetBird peers directly over LAN or public IP,
without using (internet-hosted) TURN servers as intermediaries.
|
| options/nixos/services.qbittorrent.openFirewall | Whether to enable opening both the webuiPort and torrentPort over TCP in the firewall.
|
| options/nixos/services.icecream.scheduler.openFirewall | Whether to automatically open the daemon port in the firewall.
|
| options/nixos/programs.localsend.openFirewall | Whether to enable opening the firewall port 53317 for receiving files.
|
| options/nixos/services.druid.coordinator.openFirewall | Open firewall ports for Druid Coordinator.
|
| options/nixos/services.opensnitch.settings.Firewall | Which firewall backend to use.
|
| options/nixos/services.homepage-dashboard.openFirewall | Open ports in the firewall for Homepage.
|
| options/nixos/services.cassandra.rpcAddress | The address or interface to bind the native transport server to
|
| options/nixos/services.adguardhome.openFirewall | Open ports in the firewall for the AdGuard Home web interface
|
| options/nixos/services.epgstation.openFirewall | Open ports in the firewall for the EPGStation web interface.
Exposing EPGStation to the open internet is generally advised
against
|
| options/nixos/services.jitsi-videobridge.openFirewall | Whether to open ports in the firewall for the videobridge.
|
| options/nixos/services.hadoop.hdfs.journalnode.openFirewall | Open firewall ports for HDFS JournalNode.
|
| options/nixos/services.syncthing.openDefaultPorts | Whether to open the default ports in the firewall: TCP/UDP 22000 for transfers
and UDP 21027 for discovery
|
| options/nixos/services.silverbullet.openFirewall | Open port in the firewall.
|
| options/nixos/services.flaresolverr.openFirewall | Open the port in the firewall for FlareSolverr.
|
| options/nixos/services.photonvision.openFirewall | Whether to open the required ports in the firewall.
|
| options/nixos/services.kubernetes.flannel.openFirewallPorts | Whether to open the Flannel UDP ports in the firewall on all interfaces.
|
| options/nixos/services.saunafs.chunkserver.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/services.prometheus.exporters.sql.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.zfs.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.pve.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.lnd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nut.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.frr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.kea.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.moosefs.chunkserver.openFirewall | Whether to automatically open required firewall ports for chunkserver service.
|
| options/nixos/services.foundationdb.openFirewall | Open the firewall ports corresponding to FoundationDB processes and coordinators
using config.networking.firewall.*.
|
| options/nixos/programs.ausweisapp.openFirewall | Whether to open the required firewall ports for the Smartphone as Card Reader (SaC) functionality of AusweisApp.
|
| options/nixos/services.hadoop.yarn.nodemanager.openFirewall | Open firewall ports for nodemanager
|
| options/nixos/services.netbird.tunnels.<name>.openInternalFirewall | Opens up internal firewall ports for the NetBird's network interface.
|
| options/nixos/services.netbird.clients.<name>.openInternalFirewall | Opens up internal firewall ports for the NetBird's network interface.
|
| options/nixos/services.prometheus.exporters.ipmi.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.knot.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.bind.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mail.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.bird.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.flow.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.php-fpm.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.ebpf.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mqtt.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nats.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.snmp.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.ping.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.json.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.node.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/programs.steam.dedicatedServer.openFirewall | Open ports in the firewall for Source Dedicated Server.
|
| options/nixos/services.prometheus.exporters.dmarc.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.v2ray.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.idrac.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.kafka.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nginx.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.jitsi.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.redis.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.fritz.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.node-cert.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.teamspeak3.openFirewallServerQuery | Open ports in the firewall for the TeamSpeak3 serverquery (administration) system
|
| options/nixos/services.technitium-dns-server.openFirewall | Whether to open ports in the firewall
|
| options/nixos/services.torrentstream.openFirewall | Open ports in the firewall for TorrentStream daemon.
|
| options/nixos/services.prometheus.exporters.fastly.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.statsd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.rspamd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.tibber.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.script.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.domain.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.dnssec.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.deluge.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mysqld.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.restic.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.chrony.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.pihole.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.shelly.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nvidia-gpu.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.systemd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.klipper.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.dovecot.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.postfix.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.varnish.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.libvirt.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.bitcoin.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.process.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.apcupsd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mongodb.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.sabnzbd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.dnsmasq.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.unbound.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.ecoflow.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.openssh.listenAddresses | List of addresses and ports to listen on (ListenAddress directive
in config)
|
| options/nixos/services.taskchampion-sync-server.openFirewall | Whether to enable Open firewall port for taskchampion-sync-server.
|
| options/nixos/services.prometheus.exporters.py-air-control.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.rtl_433.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.librenms.useDistributedPollers | Enables distributed pollers
for this LibreNMS instance
|
| options/nixos/services.prometheus.exporters.unpoller.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.keylight.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.collectd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nginxlog.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mikrotik.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.influxdb.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.graphite.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.smartctl.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.postgres.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.fritzbox.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.blackbox.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.opnsense.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.audiobookshelf.openFirewall | Open ports in the firewall for the Audiobookshelf web interface.
|
| options/nixos/services.prometheus.exporters.imap-mailstat.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mailman3.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/programs.steam.localNetworkGameTransfers.openFirewall | Open ports in the firewall for Steam Local Network Game Transfers.
|
| options/nixos/services.prometheus.exporters.rasdaemon.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.wireguard.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.nextcloud.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.borgmatic.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.smokeping.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.surfboard.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.tailscale.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.alertmanager.openFirewall | Open port in firewall for incoming connections.
|
| options/darwin/networking.applicationFirewall.enable | Whether to enable application firewall.
|
| options/nixos/services.prometheus.exporters.buildkite-agent.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.storagebox.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.scaphandre.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-radarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.exportarr-sonarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.hadoop.yarn.resourcemanager.openFirewall | Open firewall ports for resourcemanager
|
| options/nixos/services.prometheus.alertmanagerGotify.openFirewall | Opens the bridge port in the firewall.
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.artifactory.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/networking.nftables.enable | Whether to enable nftables and use nftables based firewall if enabled.
nftables is a Linux-based packet filtering framework intended to
replace frameworks like iptables
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/virtualisation.forwardPorts | When using the SLiRP user networking (default), this option allows to
forward ports to/from the host/guest.
If the NixOS firewall on the virtual machine is enabled, you also
have to open the guest ports to enable the traffic between host and
guest.
Currently QEMU supports only IPv4 forwarding.
|
| options/nixos/services.prometheus.exporters.modemmanager.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/virtualisation.podman.networkSocket.openFirewall | Whether to open the port in the firewall.
|
| options/nixos/networking.interfaces.<name>.proxyARP | Turn on proxy_arp for this device
|
| options/nixos/networking.wg-quick.interfaces.<name>.peers.*.persistentKeepalive | This is optional and is by default off, because most
users will not need it
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.persistentKeepalive | This is optional and is by default off, because most
users will not need it
|
| options/nixos/virtualisation.oci-containers.containers.<name>.ports | Network ports to publish from the container to the outer host
|
| packages/nixpkgs/gopro-tool | Tool to control GoPro webcam mode in Linux (requires v4l2loopback kernel module and a firewall rule) |
| packages/nixpkgs/shadow-tls | Proxy to expose real tls handshake to the firewall |
| packages/nixpkgs/firehol | Firewall for humans |
| packages/nixpkgs/kube-router | All-in-one router, firewall and service proxy for Kubernetes |
| packages/nixpkgs/diswall | Distributed firewall |
| packages/nixpkgs/cni-plugins | Some standard networking plugins, maintained by the CNI team |
| packages/nixpkgs/gsocket | Connect like there is no firewall, securely |
| packages/nixpkgs/shorewall | IP gateway/firewall configuration tool for GNU/Linux |
| packages/nixpkgs/shellhub-agent | Enables easy access any Linux device behind firewall and NAT |
| packages/nixpkgs/fwbuilder | GUI Firewall Management Application |
| packages/nixpkgs/opensnitch | Application firewall |
| packages/nixpkgs/fffuu | Fancy Formal Firewall Universal Understander |
| packages/nixpkgs/opensnitch-ui | Application firewall |
| packages/nixpkgs/prometheus-opnsense-exporter | Prometheus exporter for opnsense firewall appliances |
| packages/nixpkgs/modsecurity_standalone | Open source, cross-platform web application firewall (WAF) |
| packages/nixpkgs/haskellPackages.hwall-auth-iitk | Initial version of firewall Authentication for IITK network |
| packages/nixpkgs/haskellPackages.moesocks | A functional firewall killer |
| packages/nixpkgs/haskellPackages.amazonka-fms | Amazon Firewall Management Service SDK |
| packages/nixpkgs/vscode-extensions.thorerik.hacker-theme | Perfect theme for writing IP tracers in Visual Basic and reverse-proxying a UNIX-system firewall |
| packages/nixpkgs/crowdsec-firewall-bouncer | Crowdsec bouncer written in golang for firewalls |
| packages/nixpkgs/kdePackages.plasma-firewall | Control Panel for your system firewall |
| packages/nixpkgs/azure-cli-extensions.azure-firewall | Manage Azure Firewall resources |
| packages/nixpkgs/python313Packages.mypy-boto3-network-firewall | Type annotations for boto3 network-firewall |
| packages/nixpkgs/python314Packages.mypy-boto3-network-firewall | Type annotations for boto3 network-firewall |
| packages/nixpkgs/haskellPackages.amazonka-network-firewall | Amazon Network Firewall SDK |
| packages/nixpkgs/python312Packages.mypy-boto3-network-firewall | Type annotations for boto3 network-firewall |
| packages/nixpkgs/nixos-firewall-tool | Tool to temporarily manipulate the NixOS firewall |
| packages/nixpkgs/python313Packages.types-aiobotocore-network-firewall | Type annotations for aiobotocore network-firewall |
| packages/nixpkgs/python314Packages.types-aiobotocore-network-firewall | Type annotations for aiobotocore network-firewall |
| packages/nixpkgs/python312Packages.types-aiobotocore-network-firewall | Type annotations for aiobotocore network-firewall |
| packages/nixpkgs/libsForQt5.plasma-firewall | |
| packages/nixpkgs/firewalld | Firewall daemon with D-Bus interface |
| packages/nixpkgs/firewalld-gui | Firewall daemon with D-Bus interface |
| packages/nixpkgs/haskellPackages.stratosphere-networkfirewall | Stratosphere integration for AWS NetworkFirewall |