1 default[:networking][:firewall][:engine] = "nftables"
2 default[:networking][:firewall][:enabled] = true
3 default[:networking][:firewall][:inet] = []
4 default[:networking][:firewall][:inet6] = []
5 default[:networking][:firewall][:sets] = []
6 default[:networking][:firewall][:incoming] = []
7 default[:networking][:firewall][:outgoing] = []
8 default[:networking][:firewall][:http_rate_limit] = "-"
9 default[:networking][:firewall][:http_connection_limit] = "-"
10 default[:networking][:firewall][:log] = true
11 default[:networking][:firewall][:mark] = true
12 default[:networking][:firewall][:raw] = true
13 default[:networking][:firewall][:mangle] = true
14 default[:networking][:firewall][:whitelist] = []
15 default[:networking][:roles] = {}
16 default[:networking][:interfaces] = {}
17 default[:networking][:nameservers] = %w[8.8.8.8 8.8.4.4 2001:4860:4860::8888 2001:4860:4860::8844]
18 default[:networking][:search] = []
19 default[:networking][:dnssec] = "allow-downgrade"
20 default[:networking][:hostname] = node.name
21 default[:networking][:wireguard][:enabled] = true
22 default[:networking][:wireguard][:keepalive] = 180
23 default[:networking][:wireguard][:peers] = []