disables nftables for woodpecker, just like for forgejo-ci

This commit is contained in:
Kiara Grouwstra 2025-08-04 14:04:49 +02:00
parent c2a3eb967c
commit baff847e6e
Signed by: kiara
SSH key fingerprint: SHA256:COspvLoLJ5WC5rFb9ZDe5urVCkK4LJZOsjfF4duRJFU
2 changed files with 6 additions and 2 deletions

View file

@ -28,8 +28,8 @@ in
## Procolix-made ruleset.
firewall.enable = false;
nftables = {
enable = false;
# rulesetFile = ./nftables-ruleset.nft;
enable = true;
rulesetFile = ./nftables-ruleset.nft;
};
}

View file

@ -269,6 +269,10 @@
};
};
networking = {
nftables.enable = lib.mkForce false;
};
networking.firewall.allowedTCPPorts = [
22
80