diff --git a/modules/sec_auth/default.nix b/modules/sec_auth/default.nix index 2bfd404..110b2ab 100644 --- a/modules/sec_auth/default.nix +++ b/modules/sec_auth/default.nix @@ -3,6 +3,7 @@ ./apparmor.nix ./firejail.nix ./login-manager.nix - ./ssh.nix + ./ssh-client.nix + #./ssh-server.nix ]; } diff --git a/modules/sec_auth/ssh.nix b/modules/sec_auth/ssh-client.nix similarity index 100% rename from modules/sec_auth/ssh.nix rename to modules/sec_auth/ssh-client.nix diff --git a/modules/sec_auth/ssh-server.nix b/modules/sec_auth/ssh-server.nix new file mode 100644 index 0000000..b3b5c8b --- /dev/null +++ b/modules/sec_auth/ssh-server.nix @@ -0,0 +1,13 @@ +{lib, ...}: { + services.openssh = { + enable = true; + + ports = lib.mkDefault [38742]; + + settings = { + PasswordAuthentication = false; + PermitRootLogin = "yes"; + X11Forwarding = true; + }; + }; +}