From 0c9c4ef70474a4c01956550656a3e7e5cd8164f7 Mon Sep 17 00:00:00 2001 From: dadada Date: Sat, 17 Jun 2023 20:55:17 +0200 Subject: [PATCH] Fix routing via VPN --- nixos/gorgon/configuration.nix | 2 +- nixos/modules/networking.nix | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/nixos/gorgon/configuration.nix b/nixos/gorgon/configuration.nix index 2b03923..ba4988a 100644 --- a/nixos/gorgon/configuration.nix +++ b/nixos/gorgon/configuration.nix @@ -172,7 +172,7 @@ in peers = [ { publicKey = "tuoiOWqgHz/lrgTcLjX+xIhvxh9jDH6gmDw2ZMvX5T8="; - allowedIPs = [ "10.11.0.0/22" "fc00:1337:dead:beef::10.11.0.0/118" "192.168.178.0/23" ]; + allowedIPs = [ "10.11.0.0/22" "fc00:1337:dead:beef::10.11.0.0/118" ]; endpoint = "53c70r.de:51820"; persistentKeepalive = 25; } diff --git a/nixos/modules/networking.nix b/nixos/modules/networking.nix index a27f102..43ddd8c 100644 --- a/nixos/modules/networking.nix +++ b/nixos/modules/networking.nix @@ -132,7 +132,7 @@ in networking.wireguard.interfaces = mkIf (cfg.vpnExtension != null) { dadada = { - ips = [ "fd42:9c3b:f96d:201::${cfg.vpnExtension}/64" "192.168.120.${cfg.vpnExtension}/24" ]; + ips = [ "fd42:9c3b:f96d:201::${cfg.vpnExtension}/64" "192.168.120.${cfg.vpnExtension}/17" ]; listenPort = 51234; privateKeyFile = "/var/lib/wireguard/privkey"; postSetup = '' @@ -143,7 +143,7 @@ in peers = [ { publicKey = vpnPubKey; - allowedIPs = [ "fd42:9c3b:f96d::/48" "192.168.120.0/24" ]; + allowedIPs = [ "fd42:9c3b:f96d::/48" "192.168.0.0/17" ]; endpoint = "vpn.dadada.li:51234"; persistentKeepalive = 25; }