2024-06-09 20:48:07 +02:00
|
|
|
{
|
|
|
|
config,
|
|
|
|
lib,
|
|
|
|
inputs,
|
|
|
|
...
|
|
|
|
}: {
|
|
|
|
# networking.nat.enable = true;
|
|
|
|
# networking.nat.externalInterface = "enp0s31f6";
|
|
|
|
# networking.nat.internalInterfaces = "wg0";
|
|
|
|
networking.firewall = {
|
|
|
|
allowedUDPPorts = [51820];
|
|
|
|
};
|
|
|
|
|
|
|
|
networking.wireguard.interfaces = {
|
2024-06-09 21:04:13 +02:00
|
|
|
wg0 = {
|
|
|
|
ips = ["2a01:4f8:10a:1aab::2/64"];
|
2024-06-09 20:48:07 +02:00
|
|
|
|
2024-06-09 21:04:13 +02:00
|
|
|
listenPort = 51820;
|
2024-06-09 20:48:07 +02:00
|
|
|
|
2024-06-09 21:04:13 +02:00
|
|
|
privateKeyFile = "/home/xqtc/wireguard-keys/private";
|
2024-06-09 20:48:07 +02:00
|
|
|
|
2024-06-09 21:04:13 +02:00
|
|
|
peers = [
|
|
|
|
{
|
|
|
|
#anner
|
|
|
|
publicKey = "5ar4lh3Ra4TRmUJeeBtPgDvZnAkGssJDUN53y9oa3So=";
|
|
|
|
allowedIPs = ["2a0f:be01::/48"];
|
|
|
|
endpoint = "[2a0f:be01::1]:51822";
|
|
|
|
}
|
|
|
|
];
|
|
|
|
};
|
2024-06-09 20:48:07 +02:00
|
|
|
};
|
|
|
|
}
|