diff options
author | Florian Jacob <projects+git@florianjacob.de> | 2017-10-11 20:12:58 +0200 |
---|---|---|
committer | Florian Jacob <projects+git@florianjacob.de> | 2017-10-11 20:12:58 +0200 |
commit | 847beb558f858d7270a8e9e87db074bc0978aa9b (patch) | |
tree | 1e7ae5c765f5d4cfd2f710deb8665ae333d5e7c2 /nixos/modules/services/networking/firewall.nix | |
parent | 5dda1324be421c1a2afd5a559a87f97691287003 (diff) | |
download | nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.tar nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.tar.gz nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.tar.bz2 nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.tar.lz nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.tar.xz nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.tar.zst nixpkgs-847beb558f858d7270a8e9e87db074bc0978aa9b.zip |
nixos/firewall: Rename misleading rejected to refused in logging
as that's used as general term for rejected or dropped packets in the rest of the config.
Diffstat (limited to 'nixos/modules/services/networking/firewall.nix')
-rw-r--r-- | nixos/modules/services/networking/firewall.nix | 8 |
1 files changed, 4 insertions, 4 deletions
diff --git a/nixos/modules/services/networking/firewall.nix b/nixos/modules/services/networking/firewall.nix index 68a814b2305..9bd88ca1707 100644 --- a/nixos/modules/services/networking/firewall.nix +++ b/nixos/modules/services/networking/firewall.nix @@ -95,18 +95,18 @@ let ip46tables -N nixos-fw-log-refuse ${optionalString cfg.logRefusedConnections '' - ip46tables -A nixos-fw-log-refuse -p tcp --syn -j LOG --log-level info --log-prefix "rejected connection: " + ip46tables -A nixos-fw-log-refuse -p tcp --syn -j LOG --log-level info --log-prefix "refused connection: " ''} ${optionalString (cfg.logRefusedPackets && !cfg.logRefusedUnicastsOnly) '' ip46tables -A nixos-fw-log-refuse -m pkttype --pkt-type broadcast \ - -j LOG --log-level info --log-prefix "rejected broadcast: " + -j LOG --log-level info --log-prefix "refused broadcast: " ip46tables -A nixos-fw-log-refuse -m pkttype --pkt-type multicast \ - -j LOG --log-level info --log-prefix "rejected multicast: " + -j LOG --log-level info --log-prefix "refused multicast: " ''} ip46tables -A nixos-fw-log-refuse -m pkttype ! --pkt-type unicast -j nixos-fw-refuse ${optionalString cfg.logRefusedPackets '' ip46tables -A nixos-fw-log-refuse \ - -j LOG --log-level info --log-prefix "rejected packet: " + -j LOG --log-level info --log-prefix "refused packet: " ''} ip46tables -A nixos-fw-log-refuse -j nixos-fw-refuse |