nixfiles/presets/nixos/serverBase.nix

37 lines
741 B
Nix
Raw Normal View History

2023-10-30 13:57:30 +00:00
{tree, ...}: {
2023-09-18 03:56:58 +01:00
imports = with tree; [
users.root
profiles.sshd
profiles.firewallAllow.ssh
profiles.nixGC
profiles.serverExtras
];
home-manager.users.root = {
imports = with tree; [home.base.zsh home.base.age-encyption home.dev.small];
2023-09-18 03:56:58 +01:00
};
networking.firewall = {
enable = true;
allowPing = true;
checkReversePath = "loose";
};
# TODO: Better DNS setup
services.resolved.enable = false;
environment.etc."resolv.conf".text = ''
nameserver 8.8.8.8
nameserver 8.8.4.4
'';
boot.kernel.sysctl = {
"net.core.default_qdisc" = "fq";
"net.ipv4.tcp_congestion_control" = "bbr";
2023-09-18 03:56:58 +01:00
"fs.inotify.max_user_watches" = 1024 * 64 * 16;
};
time.timeZone = "Europe/London";
}