From d55fccdd3a2f53bd45be6725c2d4a4868dd9dde1 Mon Sep 17 00:00:00 2001 From: Infinidoge Date: Sun, 14 Apr 2024 07:27:35 -0400 Subject: [PATCH] global/security: enable ssh GatewayPorts --- modules/global/security.nix | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/modules/global/security.nix b/modules/global/security.nix index 5bc5d5a..3642bb6 100644 --- a/modules/global/security.nix +++ b/modules/global/security.nix @@ -38,10 +38,13 @@ with lib; services.openssh = { enable = true; openFirewall = mkDefault true; - settings.X11Forwarding = mkDefault false; + settings = { + X11Forwarding = mkDefault false; + GatewayPorts = mkDefault "yes"; + }; hostKeys = mkDefault [{ - path = "/etc/ssh/ssh_host_ed25519_key"; - type = "ed25519"; + path = "/etc/ssh/ssh_host_ed25519_key"; + type = "ed25519"; }]; };