From c52bf8079a30e507c2e253d610cbfbcbfb8ddbcf Mon Sep 17 00:00:00 2001 From: Ciapa Date: Sun, 4 Feb 2024 20:12:00 +0100 Subject: [PATCH] Allow all IPs for wireguard interface without routing them --- hosts/phoenix.lewd.wtf/networking.nix | 8 +++++--- 1 file changed, 5 insertions(+), 3 deletions(-) diff --git a/hosts/phoenix.lewd.wtf/networking.nix b/hosts/phoenix.lewd.wtf/networking.nix index 1dcb454..7002549 100644 --- a/hosts/phoenix.lewd.wtf/networking.nix +++ b/hosts/phoenix.lewd.wtf/networking.nix @@ -27,16 +27,18 @@ enableIPv6 = true; }; - networking.wireguard.interfaces = { + networking.wg-quick.interfaces = { wg0 = { ips = [ "10.175.197.82/32" "fd7d:76ee:e68f:a993:f6b2:9dab:ddd3:a02/128" ]; privateKeyFile = "/run/secrets/services/wireguard/airvpn.private"; - + table = "off"; + mtu = 1320; + peers = [ { publicKey = "PyLCXAQT8KkM4T+dUsOQfn+Ub3pGxfGlxkIApuig+hk="; presharedKeyFile = "/run/secrets/services/wireguard/airvpn.psk"; - allowedIPs = [ "10.128.0.1" ]; + allowedIPs = [ "0.0.0.0/0" ]; endpoint = "134.19.179.213:1637"; persistentKeepalive = 25; }