firewall: Fix check for rpfilter on manual-config kernels

This commit is contained in:
Shea Levy 2017-02-06 16:43:23 -05:00
parent 2ac2bd187e
commit 714fdb425a

View File

@ -38,9 +38,9 @@ let
cfg = config.networking.firewall;
kernelPackages = config.boot.kernelPackages;
inherit (config.boot.kernelPackages) kernel;
kernelHasRPFilter = kernelPackages.kernel.features.netfilterRPFilter or false;
kernelHasRPFilter = ((kernel.config.isEnabled or (x: false)) "IP_NF_MATCH_RPFILTER") || (kernel.features.netfilterRPFilter or false);
helpers =
''