disable iodine for now

This commit is contained in:
zuckerberg 2021-09-24 14:22:21 -04:00
parent 42837ce836
commit fdda82775b

View File

@ -270,19 +270,19 @@ in {
}; };
# iodine DNS-based vpn # iodine DNS-based vpn
services.iodine.server = { #services.iodine.server = {
enable = true; # enable = true;
ip = "192.168.99.1"; # ip = "192.168.99.1";
domain = "tun.neet.dev"; # domain = "tun.neet.dev";
passwordFile = "/run/secrets/iodine"; # passwordFile = "/run/secrets/iodine";
}; #};
age.secrets.iodine.file = ../../secrets/iodine.age; #age.secrets.iodine.file = ../../secrets/iodine.age;
networking.firewall.allowedUDPPorts = [ 53 ]; #networking.firewall.allowedUDPPorts = [ 53 ];
boot.kernel.sysctl."net.ipv4.ip_forward" = 1; #boot.kernel.sysctl."net.ipv4.ip_forward" = 1;
networking.nat.enable = true; networking.nat.enable = true;
networking.nat.internalInterfaces = [ networking.nat.internalInterfaces = [
"dns0" # iodine # "dns0" # iodine
"ve-vpn-continer" # vpn container "ve-vpn-continer" # vpn container
]; ];
networking.nat.externalInterface = "enp1s0"; networking.nat.externalInterface = "enp1s0";