summaryrefslogtreecommitdiff
path: root/daeva/nftables-rules.nft
Commit message (Collapse)AuthorAge
* configure systemd-resolved with DoTHEADmasterKenny Ballou2021-07-23
| | | | | | | | | | Disable networkmanager from writing `/etc/resolv.conf` and use configured DNS servers with DNS over TLS. Prune down list of nameservers as Level3 and OpenDNS do not currently support DoT. Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* daeva: nft: allow local bound ipv6 trafficKenny Ballou2021-07-22
| | | | | | | | Allowing this traffic makes lsp and dap modes usable. Before, I would have to wait for, apparently, ipv6 to timeout and fall back to ipv4 to use Java dap debugging in emacs. No more! Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* firewall: add outbound kde connect portsKenny Ballou2021-05-14
| | | | Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* firewall: add another http alt portKenny Ballou2021-05-14
| | | | Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* firewall: :rose: remove tabsKenny Ballou2021-05-14
| | | | Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* firewall: enable KDE connect portsKenny Ballou2021-05-14
| | | | Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* firewall: add google meet portsKenny Ballou2021-03-28
| | | | Signed-off-by: Kenny Ballou <kb@devnulllabs.io>
* update firewall rulesKenny Ballou2021-02-24
| | | | Signed-off-by: Kenny Ballou <kballou@devnulllabs.io>
* daeva: complete configurationKenny Ballou2020-12-16
| | | | | | Installation complete, luks container and boot loader configured. Signed-off-by: Kenny Ballou <kballou@devnulllabs.io>
* daeva: add skeleton config for new laptopKenny Ballou2020-12-15
Signed-off-by: Kenny Ballou <kballou@devnulllabs.io>