From 7b290253e1c4a9968fa058fec08e74632217ed61 Mon Sep 17 00:00:00 2001 From: Max Date: Mon, 16 May 2022 19:21:31 +0200 Subject: [PATCH] modules/fail2ban: ignore own and internal IPs --- modules/fail2ban/default.nix | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/modules/fail2ban/default.nix b/modules/fail2ban/default.nix index 182c46d..3b80851 100644 --- a/modules/fail2ban/default.nix +++ b/modules/fail2ban/default.nix @@ -1,3 +1,4 @@ +{ config, hosts, ... }: { services.fail2ban = { enable = true; @@ -6,5 +7,9 @@ port = 22 mode = aggressive ''; + ignoreIP = [ + "10.0.0.0/8" + hosts.${config.networking.hostName}.interfaces.primary.addr + ]; }; }