From 60ddbc18e57f4abc8e8e2f0f2ee43aeb4d8c8004 Mon Sep 17 00:00:00 2001 From: zuckerberg <5-zuckerberg@users.noreply.git.neet.dev> Date: Mon, 6 Sep 2021 12:43:07 -0400 Subject: [PATCH] iodine DNS tunnel --- machines/liza/configuration.nix | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/machines/liza/configuration.nix b/machines/liza/configuration.nix index 6113665..94c4fa8 100644 --- a/machines/liza/configuration.nix +++ b/machines/liza/configuration.nix @@ -217,12 +217,16 @@ in { services.iodine.server = { enable = true; - ip = "94.23.33.23"; + ip = "192.168.99.1"; domain = "tun.neet.dev"; passwordFile = "/run/secrets/iodine"; }; age.secrets.iodine.file = ../../secrets/iodine.age; + networking.firewall.allowedUDPPorts = [ 53 ]; boot.kernel.sysctl."net.ipv4.ip_forward" = 1; + networking.nat.enable = true; + networking.nat.internalInterfaces = [ "dns0" ]; + networking.nat.externalInterface = "enp1s0"; security.acme.acceptTerms = true; security.acme.email = "zuckerberg@neet.dev";