feat: new DNS, fix vm networking

This commit is contained in:
Benjamin Bädorf 2023-11-02 01:25:39 +01:00
parent 25482383c1
commit 661f594696
No known key found for this signature in database
GPG key ID: 4406E80E13CD656C
4 changed files with 18 additions and 7 deletions

View file

@ -21,8 +21,8 @@
networking.firewall.allowedUDPPorts = [ 51899 ]; networking.firewall.allowedUDPPorts = [ 51899 ];
networking.firewall.extraForwardRules = [ networking.firewall.extraForwardRules = [
"iifname { != wg0 } reject"
"iifname wg0 accept" "iifname wg0 accept"
"iifname enp1s0 reject"
]; ];
# Enable WireGuard # Enable WireGuard

View file

@ -65,10 +65,12 @@
{ {
name = "."; name = ".";
forward-addr = [ forward-addr = [
"9.9.9.9@53#quad9" "193.110.81.0#dns0.eu"
"2620:fe::fe@53#quad9" "2a0f:fc80::#dns0.eu"
"185.253.5.0#dns0.eu"
"2a0f:fc81::#dns0.eu"
]; ];
forward-tls-upstream = "no"; forward-tls-upstream = "yes";
} }
]; ];
}; };

View file

@ -43,11 +43,12 @@ in {
systemd.tmpfiles.rules = [ systemd.tmpfiles.rules = [
"f /dev/shm/looking-glass 0660 ${psCfg.user.name} kvm" "f /dev/shm/looking-glass 0660 ${psCfg.user.name} kvm"
]; ];
networking.bridges.virbr1.interfaces = [];
networking.interfaces.virbr1 = { networking.bridges.virbr0.interfaces = [];
networking.interfaces.virbr0 = {
ipv4.addresses = [ ipv4.addresses = [
{ {
address = "192.168.123.1"; address = "192.168.122.1";
prefixLength = 24; prefixLength = 24;
} }
]; ];

View file

@ -83,6 +83,14 @@ in {
"droppie.b12f.io" = { "droppie.b12f.io" = {
user = "yule"; user = "yule";
}; };
"nachtigall.pub.solar" = {
user = "barkeeper";
};
"flora-6.pub.solar" = {
user = "barkeeper";
};
}; };
}; };