* the lua necessary is quite wordy, but it's less of a hack than post-processing the rules file with pseudo-sed to get rid of `elements = { }` lines * also switch from stop/starting the firewall service to using a signal, so that we don't go briefly offline every time a new interface appears |
||
---|---|---|
.. | ||
default-rules.nix | ||
default.nix | ||
ifwatch.fnl | ||
service.nix |