summaryrefslogtreecommitdiff
path: root/modules/programs/wireguard
diff options
context:
space:
mode:
Diffstat (limited to 'modules/programs/wireguard')
-rw-r--r--modules/programs/wireguard/default.nix31
1 files changed, 31 insertions, 0 deletions
diff --git a/modules/programs/wireguard/default.nix b/modules/programs/wireguard/default.nix
new file mode 100644
index 0000000..8a0986e
--- /dev/null
+++ b/modules/programs/wireguard/default.nix
@@ -0,0 +1,31 @@
+{ config, lib, pkgs, ... }:
+
+{
+ config = lib.mkIf config.system.enable {
+
+ environment.systemPackages = with pkgs; [
+ wireguard-tools
+ ];
+
+ # TODO: remove this!!!
+ environment.etc = {
+ "resolv.conf".text = "nameserver 10.1.1.1\n";
+ };
+
+ networking.wireguard.enable = true;
+ networking.wireguard.interfaces = {
+ freyanet = {
+ ips = [ "10.2.0.2/32" "fd:cafe:dead:bee::2/128" "fe80::2/128" ];
+ privateKeyFile = "${config.dotfilesPath}/secrets/freyanet.key";
+
+ peers = [{
+ publicKey = "x0ykwakpYCvI/pG+nR83lNUyeOE9m54thnX3bvZ+FUk=";
+ allowedIPs = [ "10.0.0.0/12" "fd:cafe::/32" "fe80::/64" ];
+ endpoint = "freya.cat:41111";
+ persistentKeepalive = 25;
+ }];
+ };
+ };
+
+ };
+}