fix: Remove lib.mkForce from allowed ports as it prevents SP modules from opening required ports

This commit is contained in:
Inex Code 2024-12-26 18:19:21 +03:00
parent 5bc89e3359
commit bf299b19b8
No known key found for this signature in database

View file

@ -83,8 +83,8 @@ in
domain = config.selfprivacy.domain;
usePredictableInterfaceNames = false;
firewall = {
allowedTCPPorts = lib.mkForce [ 22 25 80 143 443 465 587 993 4443 8443 ];
allowedUDPPorts = lib.mkForce [ 8443 10000 ];
allowedTCPPorts = [ 22 25 80 143 443 465 587 993 4443 8443 ];
allowedUDPPorts = [ 8443 10000 ];
extraCommands = ''
iptables --table nat --append POSTROUTING --out-interface eth0 -j MASQUERADE
iptables --append FORWARD --in-interface vpn00 -j ACCEPT