disable iodine for now

This commit is contained in:
zuckerberg 2021-09-24 14:22:21 -04:00
parent 42837ce836
commit fdda82775b

View File

@ -270,19 +270,19 @@ in {
};
# iodine DNS-based vpn
services.iodine.server = {
enable = true;
ip = "192.168.99.1";
domain = "tun.neet.dev";
passwordFile = "/run/secrets/iodine";
};
age.secrets.iodine.file = ../../secrets/iodine.age;
networking.firewall.allowedUDPPorts = [ 53 ];
#services.iodine.server = {
# enable = true;
# ip = "192.168.99.1";
# domain = "tun.neet.dev";
# passwordFile = "/run/secrets/iodine";
#};
#age.secrets.iodine.file = ../../secrets/iodine.age;
#networking.firewall.allowedUDPPorts = [ 53 ];
boot.kernel.sysctl."net.ipv4.ip_forward" = 1;
#boot.kernel.sysctl."net.ipv4.ip_forward" = 1;
networking.nat.enable = true;
networking.nat.internalInterfaces = [
"dns0" # iodine
# "dns0" # iodine
"ve-vpn-continer" # vpn container
];
networking.nat.externalInterface = "enp1s0";