{ imports = [ ./hardware-configuration.nix ../../modules ]; sbruder = { nginx.hardening.enable = true; restic.system = { enable = true; }; wireguard.home.enable = true; }; networking.hostName = "renge"; system.stateVersion = "21.11"; services.nginx = { enable = true; recommendedGzipSettings = true; recommendedOptimisation = true; recommendedProxySettings = true; recommendedTlsSettings = true; }; networking.firewall.allowedTCPPorts = [ 80 443 ]; }