From dc7dc9e7853ac2cbfc58cd65a0f1d40e08637b3d Mon Sep 17 00:00:00 2001 From: schererleander Date: Tue, 3 Feb 2026 19:13:48 +0100 Subject: refactor(module): remove old module options --- modules/nixos/server/openssh/default.nix | 15 +++++++-------- 1 file changed, 7 insertions(+), 8 deletions(-) (limited to 'modules/nixos/server/openssh/default.nix') diff --git a/modules/nixos/server/openssh/default.nix b/modules/nixos/server/openssh/default.nix index a56460d..ac23d28 100644 --- a/modules/nixos/server/openssh/default.nix +++ b/modules/nixos/server/openssh/default.nix @@ -5,7 +5,7 @@ }: let - inherit (lib) mkEnableOption mkIf; + inherit (lib) mkEnableOption mkIf mkDefault; cfg = config.nx.server.openssh; in { @@ -17,18 +17,17 @@ in services.openssh = { enable = true; ports = [ 8693 ]; - settings = { - PasswordAuthentication = false; - AllowUsers = [ ]; - X11Forwarding = false; - PermitRootLogin = "yes"; - }; + settings = { + PasswordAuthentication = false; + X11Forwarding = false; + PermitRootLogin = "yes"; + }; }; networking.firewall.allowedTCPPorts = [ 8693 ]; services.fail2ban = { enable = true; - bantime = "1h"; + bantime = lib.mkDefault "1h"; jails = { sshd = { enabled = true; -- cgit v1.3.1