Try to get nextcloud to be able to connect to itself.

This commit is contained in:
Raphaël Numbus
2026-02-27 17:36:17 +01:00
parent d7a28f93f1
commit af86328ec1
+1 -8
View File
@@ -8,14 +8,7 @@
allowPing = true;
allowedTCPPorts = [ 53 80 443 ];
allowedUDPPorts = [ 53 443 ];
interfaces."podman*".allowedTCPPorts = [ 443 ];
};
extraCommands = ''
# Accept HTTPS from podman network
${pkgs.nftables}/bin/nft add rule inet filter input ip saddr 10.89.0.0/16 tcp dport 443 ct state new,established accept || true
${pkgs.nftables}/bin/nft add rule inet filter input ip saddr 192.168.11.0/24 tcp dport 443 ct state new,established accept || true
${pkgs.nftables}/bin/nft add rule inet filter input ip saddr 192.168.27.0/24 tcp dport 443 ct state new,established accept || true
# Accept established responses
${pkgs.nftables}/bin/nft add rule inet filter input ct state established,related accept || true
'';
};
}