diff --git a/nixos/boxes/britway/bgp.nix b/nixos/boxes/britway/bgp.nix index 11f408d..7ff13a9 100644 --- a/nixos/boxes/britway/bgp.nix +++ b/nixos/boxes/britway/bgp.nix @@ -92,7 +92,10 @@ in protocol kernel kernel6 { ipv6 { import none; - export none; + export filter { + if net = HOMENET6 then accept; + reject; + }; }; } diff --git a/nixos/boxes/britway/default.nix b/nixos/boxes/britway/default.nix index 1eb267b..b72bd12 100644 --- a/nixos/boxes/britway/default.nix +++ b/nixos/boxes/britway/default.nix @@ -118,7 +118,9 @@ in }; }; - firewall = { }; + firewall = { + trustedInterfaces = [ "as211024" ]; + }; }; } ];