summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--modules/simple-firewall.nix2
1 files changed, 2 insertions, 0 deletions
diff --git a/modules/simple-firewall.nix b/modules/simple-firewall.nix
index 1590bcd..c2ed26b 100644
--- a/modules/simple-firewall.nix
+++ b/modules/simple-firewall.nix
@@ -32,12 +32,14 @@ in
table inet filter {
set allowed_tcp_ports {
type inet_service
+ flags interval
${lib.optionalString (cfg.allowedTCPPorts != [])''
elements = {${csvPorts cfg.allowedTCPPorts}}
''}
}
set allowed_udp_ports {
type inet_service
+ flags interval
${lib.optionalString (cfg.allowedUDPPorts != [])''
elements = {${csvPorts cfg.allowedUDPPorts}}
''}