diff --git a/services.nix b/services.nix index 5f9a968..8c64927 100644 --- a/services.nix +++ b/services.nix @@ -36,7 +36,6 @@ ./gtrackmap.nix ./owncast.nix ./hydra.nix - ./wireguard.nix ./tailscale.nix ]; } diff --git a/wireguard.nix b/wireguard.nix deleted file mode 100644 index 3e52e72..0000000 --- a/wireguard.nix +++ /dev/null @@ -1,41 +0,0 @@ -{ config, pkgs, lib, ... }: -let - port = 51820; - name = "wg0"; - peers = [ - { - PublicKey = "XI0/k2j20CVSfevwjkmo4IddVoA2VY2fN6feauXYEXU="; - AllowedIPs = [ "10.100.0.2" ]; - } # radish - ]; - address = [ "10.100.0.1/24" ]; -in -{ - networking.firewall.allowedUDPPorts = [ port ]; - networking.useNetworkd = true; - - systemd.network = { - enable = true; - netdevs.${name} = { - netdevConfig = { - Kind = "wireguard"; - Name = "${name}"; - MTUBytes = "1300"; - }; - wireguardConfig = { - PrivateKeyFile = "/var/secrets/wireguard-privkey"; - ListenPort = port; - }; - wireguardPeers = peers; - }; - - networks.${name} = { - matchConfig.Name = name; - inherit address; - networkConfig = { - IPMasquerade = "ipv4"; - IPForward = true; - }; - }; - }; -}