updates nixos config

- adds applications to david user
- disables wireguard
- enables tor
This commit is contained in:
2023-11-13 18:32:49 -05:00
parent 21821d5da4
commit 7f462688d3
2 changed files with 26 additions and 27 deletions
+13 -10
View File
@@ -12,13 +12,18 @@
extraGroups = [ "networkmanager" "wheel" ];
shell = pkgs.zsh;
packages = with pkgs; [
firefox
thunderbird
sparrow
freecad
cura
dig
element-desktop
firefox
freecad
nmap
sparrow
sublime-music
thunderbird
timeshift
transmission-qt
tor-browser-bundle-bin
transmission-gtk
unison
];
};
@@ -59,6 +64,7 @@
git
htop
lsof
mullvad-vpn
tree
unzip
vim
@@ -107,12 +113,9 @@
};
pulse.enable = true;
};
transmission = {
tor = {
enable = true;
user = "transmission";
group = "transmission";
openFirewall = true;
openRPCPort = true;
client.enable = true;
};
udev.packages = with pkgs; [
gnome.gnome-settings-daemon
+13 -17
View File
@@ -10,23 +10,7 @@
networking.firewall.allowedTCPPorts = [ ];
networking.firewall.allowedUDPPorts = [ 51820 ];
networking.wg-quick.interfaces = {
wg0 = {
address = [ "10.8.0.4/24" ];
dns = [ "10.0.10.20" "10.0.10.1" ];
privateKeyFile = "/root/wg-home.privkey";
peers = [
{
publicKey = "KRI5BtJHsU9RWvf1syJ8zWkKtH9RMg/R/v88j1IH6iE=";
presharedKeyFile = "/root/wg-preshared.key";
allowedIPs = [ "0.0.0.0/0" ];
endpoint = "vpn.dvdt.dev:51820";
persistentKeepalive = 25;
}
];
};
};
security.pki.certificateFiles = [ "/root/ominous-law.local.crt" ];
hardware.bluetooth.enable = true;
@@ -40,6 +24,18 @@
boot.initrd.secrets."/crypto_keyfile.bin" = null;
services.avahi = {
nssmdns = true;
enable = true;
ipv4 = true;
ipv6 = true;
publish = {
enable = true;
addresses = true;
workstation = true;
};
};
services.power-profiles-daemon.enable = false;
services.thermald.enable = true;
services.tlp = {