diff options
Diffstat (limited to 'modules/core/networking/vpn')
| -rw-r--r-- | modules/core/networking/vpn/default.nix | 6 | ||||
| -rw-r--r-- | modules/core/networking/vpn/pia.nix | 10 | ||||
| -rw-r--r-- | modules/core/networking/vpn/tailscale.nix | 35 |
3 files changed, 0 insertions, 51 deletions
diff --git a/modules/core/networking/vpn/default.nix b/modules/core/networking/vpn/default.nix deleted file mode 100644 index 92a11b0..0000000 --- a/modules/core/networking/vpn/default.nix +++ /dev/null @@ -1,6 +0,0 @@ -{ - imports = [ - ./pia.nix - ./tailscale.nix - ]; -} diff --git a/modules/core/networking/vpn/pia.nix b/modules/core/networking/vpn/pia.nix deleted file mode 100644 index d52dbf8..0000000 --- a/modules/core/networking/vpn/pia.nix +++ /dev/null @@ -1,10 +0,0 @@ -{ secrets, ... }: -{ - services.pia = { - enable = true; - - authUserPass = { - inherit (secrets.pia) username password; - }; - }; -} diff --git a/modules/core/networking/vpn/tailscale.nix b/modules/core/networking/vpn/tailscale.nix deleted file mode 100644 index 0228915..0000000 --- a/modules/core/networking/vpn/tailscale.nix +++ /dev/null @@ -1,35 +0,0 @@ -{ - config, - lib, - pkgs, - ... -}: -{ - networking.firewall.trustedInterfaces = [ "${config.services.tailscale.interfaceName}" ]; - - # <https://tailscale.com/kb/1019/subnets/?tab=linux#step-1-install-the-tailscale-client> - boot.kernel.sysctl = { - "net.ipv4.ip_forward" = true; - "net.ipv6.conf.all.forwarding" = true; - }; - - services = { - tailscale = { - enable = true; - useRoutingFeatures = "both"; - authKeyFile = config.sops.secrets.tailscale_authentication_key.path; - }; - - networkd-dispatcher = { - enable = true; - - rules."50-tailscale" = { - onState = [ "routable" ]; - - script = '' - ${lib.getExe pkgs.ethtool} -K enp42s0 rx-udp-gro-forwarding on rx-gro-list off - ''; - }; - }; - }; -} |