42 lines
1.2 KiB
Nix
42 lines
1.2 KiB
Nix
|
{ lib, stdenv, rustPlatform, fetchFromGitHub, darwin }:
|
||
|
|
||
|
let
|
||
|
inherit (darwin.apple_sdk.frameworks) Security;
|
||
|
in
|
||
|
rustPlatform.buildRustPackage rec {
|
||
|
pname = "diswall";
|
||
|
version = "0.6.0";
|
||
|
|
||
|
src = fetchFromGitHub {
|
||
|
owner = "dis-works";
|
||
|
repo = "diswall-rs";
|
||
|
rev = "v${version}";
|
||
|
sha256 = "sha256-jrifO6LRxVhgPoUOAm+7RT+LIhjsw/mEDFBZSJYMv/w=";
|
||
|
};
|
||
|
|
||
|
buildInputs = lib.optionals stdenv.hostPlatform.isDarwin [
|
||
|
Security
|
||
|
];
|
||
|
|
||
|
cargoHash = "sha256-1HxuVZ4J/Ds1aOIIcNa/XGi7PhKgB+iAESMa1muTL48=";
|
||
|
|
||
|
doCheck = false;
|
||
|
|
||
|
meta = with lib; {
|
||
|
description = "Distributed firewall";
|
||
|
longDescription = ''
|
||
|
Diswall (distributed firewall) - a client of distributed firewall
|
||
|
working on many servers and using NATS for the transport level.
|
||
|
Its purpose - blocking IPs with a blink of the eye on all servers
|
||
|
in any infrastructure when some IP checks any of the closed ports
|
||
|
of anyone of these servers. Therefore, diswall provides good
|
||
|
protection of whole infrastructure (as anti-shodan) preventing
|
||
|
intruder to get any system information.
|
||
|
'';
|
||
|
homepage = "https://www.diswall.stream";
|
||
|
license = with licenses; [ gpl3 ];
|
||
|
maintainers = with maintainers; [ izorkin ];
|
||
|
mainProgram = "diswall";
|
||
|
};
|
||
|
}
|