diff --git a/modules/server/nftables/default.nix b/modules/server/nftables/default.nix index d6f2a9d..fcd0bef 100644 --- a/modules/server/nftables/default.nix +++ b/modules/server/nftables/default.nix @@ -12,7 +12,7 @@ type filter hook input priority filter; policy drop; ct state established,related accept iifname "lo" accept - tcp dport {5432, 6379} ip saddr { 10.0.0.0/8 169.254.0.0/16 } accept + tcp dport {5432, 6379} ip saddr { 10.0.0.0/8, 169.254.0.0/16 } accept tcp dport {80, 443, 22} accept udp dport {80, 443, 22} accept