nix-config/hosts/trantor
William f1b6be6f3f Add fail2ban configuration for SSH and Forgejo on Trantor
- Configure fail2ban with progressive ban times (1h base, up to 10000h max)
- Add SSH jail with password authentication disabled
- Add Forgejo jail using systemd journal backend
- Ignore private networks and Tailscale IPs
- Set Forgejo to 10 retries per hour, 15min initial ban

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-11-09 13:00:17 -03:00
..
boot.nix fixing trantor 2025-11-03 17:19:21 -03:00
disko.nix no diskoConfirations outputs 2025-11-03 22:03:02 -03:00
fail2ban.nix Add fail2ban configuration for SSH and Forgejo on Trantor 2025-11-09 13:00:17 -03:00
forgejo.nix Add fail2ban configuration for SSH and Forgejo on Trantor 2025-11-09 13:00:17 -03:00
hardware-configuration.nix no diskoConfirations outputs 2025-11-03 22:03:02 -03:00
networking.nix now using flake-parts; refactored nixosConfigurations; using hm standalone 2025-10-14 19:28:30 -03:00
nginx.nix Switch ACME to DNS-01 challenge with auto-configured certificates 2025-11-08 22:53:18 -03:00
openssh.nix Add fail2ban configuration for SSH and Forgejo on Trantor 2025-11-09 13:00:17 -03:00
unbound.nix Split DNS servers: alexandria for LAN, trantor for tailnet 2025-11-08 21:35:53 -03:00