From fc32a98da32af36e25b5478319d2d62601235e43 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Kjetil=20=C3=98rbekk?= Date: Fri, 24 Nov 2017 12:54:12 -0500 Subject: wireguard server --- config/vpn-server.nix | 21 +++++++++++++++++++++ 1 file changed, 21 insertions(+) create mode 100644 config/vpn-server.nix (limited to 'config/vpn-server.nix') diff --git a/config/vpn-server.nix b/config/vpn-server.nix new file mode 100644 index 0000000..f2663d5 --- /dev/null +++ b/config/vpn-server.nix @@ -0,0 +1,21 @@ +{ config, lib, pkgs, ... }: +let + port = (import ../data/aliases.nix).services.wireguard.port; +in +{ + networking.wireguard = { + interfaces = { + wg0 = { + ips = [ "10.35.190.1/23" ]; + privateKeyFile = "/opt/secret/wireguard/wg0.key"; + listenPort = port; + peers = [ + { + publicKey = "ULWhaOsAaTu4cu84v3PM4DL7arxc/WNnzI/ic2k1KBU="; + allowedIPs = ["0.0.0.0/0" "::/0"]; + } + ]; + }; + }; + }; +} -- cgit v1.2.3