{ ... }: { imports = [ ./default.nix ]; networking = { firewall = { enable = false; allowPing = true; logRefusedConnections = false; }; }; # Used by systemd-resolved, not directly by resolv.conf. networking.nameservers = [ "8.8.8.8#dns.google" "1.0.0.1#cloudflare-dns.com" ]; users.users.root.openssh.authorizedKeys.keys = [ "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAINBkozy+X96u5ciX766bJ/AyQ3xm1tXZTIr5+4PVFZFi" ]; networking.firewall.allowedTCPPorts = [ 22 ]; }