updates nixos config
- adds applications to david user - disables wireguard - enables tor
This commit is contained in:
+13
-17
@@ -10,23 +10,7 @@
|
||||
networking.firewall.allowedTCPPorts = [ ];
|
||||
networking.firewall.allowedUDPPorts = [ 51820 ];
|
||||
|
||||
networking.wg-quick.interfaces = {
|
||||
wg0 = {
|
||||
address = [ "10.8.0.4/24" ];
|
||||
dns = [ "10.0.10.20" "10.0.10.1" ];
|
||||
privateKeyFile = "/root/wg-home.privkey";
|
||||
|
||||
peers = [
|
||||
{
|
||||
publicKey = "KRI5BtJHsU9RWvf1syJ8zWkKtH9RMg/R/v88j1IH6iE=";
|
||||
presharedKeyFile = "/root/wg-preshared.key";
|
||||
allowedIPs = [ "0.0.0.0/0" ];
|
||||
endpoint = "vpn.dvdt.dev:51820";
|
||||
persistentKeepalive = 25;
|
||||
}
|
||||
];
|
||||
};
|
||||
};
|
||||
security.pki.certificateFiles = [ "/root/ominous-law.local.crt" ];
|
||||
|
||||
hardware.bluetooth.enable = true;
|
||||
|
||||
@@ -40,6 +24,18 @@
|
||||
|
||||
boot.initrd.secrets."/crypto_keyfile.bin" = null;
|
||||
|
||||
services.avahi = {
|
||||
nssmdns = true;
|
||||
enable = true;
|
||||
ipv4 = true;
|
||||
ipv6 = true;
|
||||
publish = {
|
||||
enable = true;
|
||||
addresses = true;
|
||||
workstation = true;
|
||||
};
|
||||
};
|
||||
|
||||
services.power-profiles-daemon.enable = false;
|
||||
services.thermald.enable = true;
|
||||
services.tlp = {
|
||||
|
||||
Reference in New Issue
Block a user