feat: new DNS, fix vm networking
This commit is contained in:
parent
25482383c1
commit
661f594696
|
@ -21,8 +21,8 @@
|
||||||
|
|
||||||
networking.firewall.allowedUDPPorts = [ 51899 ];
|
networking.firewall.allowedUDPPorts = [ 51899 ];
|
||||||
networking.firewall.extraForwardRules = [
|
networking.firewall.extraForwardRules = [
|
||||||
|
"iifname { != wg0 } reject"
|
||||||
"iifname wg0 accept"
|
"iifname wg0 accept"
|
||||||
"iifname enp1s0 reject"
|
|
||||||
];
|
];
|
||||||
|
|
||||||
# Enable WireGuard
|
# Enable WireGuard
|
||||||
|
|
|
@ -65,10 +65,12 @@
|
||||||
{
|
{
|
||||||
name = ".";
|
name = ".";
|
||||||
forward-addr = [
|
forward-addr = [
|
||||||
"9.9.9.9@53#quad9"
|
"193.110.81.0#dns0.eu"
|
||||||
"2620:fe::fe@53#quad9"
|
"2a0f:fc80::#dns0.eu"
|
||||||
|
"185.253.5.0#dns0.eu"
|
||||||
|
"2a0f:fc81::#dns0.eu"
|
||||||
];
|
];
|
||||||
forward-tls-upstream = "no";
|
forward-tls-upstream = "yes";
|
||||||
}
|
}
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
|
|
|
@ -43,11 +43,12 @@ in {
|
||||||
systemd.tmpfiles.rules = [
|
systemd.tmpfiles.rules = [
|
||||||
"f /dev/shm/looking-glass 0660 ${psCfg.user.name} kvm"
|
"f /dev/shm/looking-glass 0660 ${psCfg.user.name} kvm"
|
||||||
];
|
];
|
||||||
networking.bridges.virbr1.interfaces = [];
|
|
||||||
networking.interfaces.virbr1 = {
|
networking.bridges.virbr0.interfaces = [];
|
||||||
|
networking.interfaces.virbr0 = {
|
||||||
ipv4.addresses = [
|
ipv4.addresses = [
|
||||||
{
|
{
|
||||||
address = "192.168.123.1";
|
address = "192.168.122.1";
|
||||||
prefixLength = 24;
|
prefixLength = 24;
|
||||||
}
|
}
|
||||||
];
|
];
|
||||||
|
|
|
@ -83,6 +83,14 @@ in {
|
||||||
"droppie.b12f.io" = {
|
"droppie.b12f.io" = {
|
||||||
user = "yule";
|
user = "yule";
|
||||||
};
|
};
|
||||||
|
|
||||||
|
"nachtigall.pub.solar" = {
|
||||||
|
user = "barkeeper";
|
||||||
|
};
|
||||||
|
|
||||||
|
"flora-6.pub.solar" = {
|
||||||
|
user = "barkeeper";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
Loading…
Reference in a new issue