We now have direct visibility among nodes so we don't need any extra SSH configuration to reach them. Reviewed-by: Aleix Boné <abonerib@bsc.es>
		
			
				
	
	
		
			24 lines
		
	
	
		
			464 B
		
	
	
	
		
			Nix
		
	
	
	
	
	
			
		
		
	
	
			24 lines
		
	
	
		
			464 B
		
	
	
	
		
			Nix
		
	
	
	
	
	
{ pkgs, lib, ... }:
 | 
						|
 | 
						|
{
 | 
						|
  networking = {
 | 
						|
    enableIPv6 = false;
 | 
						|
    useDHCP = false;
 | 
						|
 | 
						|
    firewall = {
 | 
						|
      enable = true;
 | 
						|
      allowedTCPPorts = [ 22 ];
 | 
						|
    };
 | 
						|
 | 
						|
    # Make sure we use iptables
 | 
						|
    nftables.enable = lib.mkForce false;
 | 
						|
 | 
						|
    hosts = {
 | 
						|
      "84.88.53.236" = [ "ssfhead.bsc.es" "ssfhead" ];
 | 
						|
      "84.88.51.142" = [ "raccoon-ipmi" ];
 | 
						|
      "192.168.11.12" = [ "bscpm04.bsc.es" ];
 | 
						|
      "192.168.11.15" = [ "gitlab-internal.bsc.es" ];
 | 
						|
    };
 | 
						|
  };
 | 
						|
}
 |