From 8524df12590f09966e783edfe4cc8aed1cbe33c3 Mon Sep 17 00:00:00 2001 From: Alexander Ried Date: Fri, 9 Sep 2016 01:22:44 +0200 Subject: networking.nat: replace network-interfaces.target We can replace this safely with network-pre because iptables does not care whether the interfaces exist or not. --- nixos/modules/services/networking/nat.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'nixos/modules/services/networking/nat.nix') diff --git a/nixos/modules/services/networking/nat.nix b/nixos/modules/services/networking/nat.nix index 9d163e60d5e..23f1b2476eb 100644 --- a/nixos/modules/services/networking/nat.nix +++ b/nixos/modules/services/networking/nat.nix @@ -171,7 +171,7 @@ in systemd.services = mkIf (!config.networking.firewall.enable) { nat = { description = "Network Address Translation"; wantedBy = [ "network.target" ]; - after = [ "network-interfaces.target" "systemd-modules-load.service" ]; + after = [ "network-pre.target" "systemd-modules-load.service" ]; path = [ pkgs.iptables ]; unitConfig.ConditionCapability = "CAP_NET_ADMIN"; -- cgit 1.4.1