enable iodine

This commit is contained in:
zuckerberg 2021-11-15 09:25:53 -05:00
parent 877b34578e
commit 09000f3748

View File

@ -282,19 +282,19 @@ in {
}; };
# iodine DNS-based vpn # iodine DNS-based vpn
#services.iodine.server = { services.iodine.server = {
# enable = true; enable = true;
# ip = "192.168.99.1"; ip = "192.168.99.1";
# domain = "tun.neet.dev"; domain = "tun.neet.dev";
# passwordFile = "/run/secrets/iodine"; passwordFile = "/run/secrets/iodine";
#}; };
#age.secrets.iodine.file = ../../secrets/iodine.age; age.secrets.iodine.file = ../../secrets/iodine.age;
#networking.firewall.allowedUDPPorts = [ 53 ]; networking.firewall.allowedUDPPorts = [ 53 ];
#boot.kernel.sysctl."net.ipv4.ip_forward" = 1; boot.kernel.sysctl."net.ipv4.ip_forward" = 1;
networking.nat.enable = true; networking.nat.enable = true;
networking.nat.internalInterfaces = [ networking.nat.internalInterfaces = [
# "dns0" # iodine "dns0" # iodine
"ve-vpn-continer" # vpn container "ve-vpn-continer" # vpn container
]; ];
networking.nat.externalInterface = "enp1s0"; networking.nat.externalInterface = "enp1s0";