From ec63b1c032c0953d117ad6ab579961d0a5226582 Mon Sep 17 00:00:00 2001 From: dadada Date: Sun, 10 Apr 2022 16:10:04 +0200 Subject: [PATCH] Update vpn config --- nixos/modules/networking.nix | 20 +++----------------- 1 file changed, 3 insertions(+), 17 deletions(-) diff --git a/nixos/modules/networking.nix b/nixos/modules/networking.nix index 5520bd7..e1ffb9f 100644 --- a/nixos/modules/networking.nix +++ b/nixos/modules/networking.nix @@ -114,7 +114,7 @@ in })); networking.wireguard.interfaces = mkIf (cfg.vpnExtension != null) { - bs = { + dadada = { ips = [ "fd42:9c3b:f96d:200::${cfg.vpnExtension}/64" ]; listenPort = 51234; @@ -124,7 +124,7 @@ in { publicKey = "lFB2DWtzp55ajV0Fk/OWdO9JlGvN9QsayYKQQHV3GEs="; allowedIPs = [ "fd42:9c3b:f96d::/48" ]; - endpoint = "bs.vpn.dadada.li:51234"; + endpoint = "vpn.dadada.li:51234"; persistentKeepalive = 25; } ]; @@ -140,22 +140,8 @@ in systemd.services.wg-reresolve-dns = mkIf (cfg.vpnExtension != null) { serviceConfig.Type = "oneshot"; script = '' - ${pkgs.wireguard-tools}/bin/wg set bs peer lFB2DWtzp55ajV0Fk/OWdO9JlGvN9QsayYKQQHV3GEs= endpoint bs.vpn.dadada.li:51234 persistent-keepalive 25 allowed-ips fd42:9c3b:f96d::/48 + ${pkgs.wireguard-tools}/bin/wg set dadada peer lFB2DWtzp55ajV0Fk/OWdO9JlGvN9QsayYKQQHV3GEs= endpoint vpn.dadada.li:51234 persistent-keepalive 25 allowed-ips fd42:9c3b:f96d::/48 ''; }; - - fileSystems."/mnt/media.dadada.li" = mkIf cfg.enableBsShare { - device = "media.dadada.li:/mnt/storage/share"; - fsType = "nfs"; - options = [ "x-systemd.automount" "noauto" "x-systemd.idle-timeout=600" ]; - }; - - networking.firewall = { - enable = true; - allowedUDPPorts = [ - 51234 # Wireguard - 5353 # mDNS - ]; - }; }; }