{ pkgs, ... }: { boot.kernel.sysctl = { "fs.inotify.max_user_watches" = 10485760; "fs.inotify.max_user_instances" = 1024; }; virtualisation.docker = { enable = true; enableOnBoot = true; autoPrune.enable = true; autoPrune.dates = "weekly"; liveRestore = true; }; networking.firewall.allowedTCPPorts = [ 8080 30003 30005 ]; }