1 Commits
Author SHA1 Message Date
imxyy1soope1 ad9771d339 server: podman: use nftables firewall driver
After `lpppsssy`, `networking.nat` now recreates table ip nat on each switch, evicting
netavark's published-port DNAT rules and breaking Caddy reverse proxies
to published container ports. Pin the nftables driver so rules live in
an isolated table inet netavark that NixOS never touches.
2026-07-27 22:24:04 +08:00