break tailscale into 2 configs for server and client
This commit is contained in:
@@ -25,7 +25,6 @@ in
|
|||||||
sops.enable = true;
|
sops.enable = true;
|
||||||
podman.enable = true;
|
podman.enable = true;
|
||||||
yubikey.enable = true;
|
yubikey.enable = true;
|
||||||
tailscale.enable = true;
|
|
||||||
nvidia.enable = true;
|
nvidia.enable = true;
|
||||||
};
|
};
|
||||||
holocron = {
|
holocron = {
|
||||||
@@ -38,6 +37,7 @@ in
|
|||||||
};
|
};
|
||||||
homelab = {
|
homelab = {
|
||||||
enable = true;
|
enable = true;
|
||||||
|
tailscale.enable = true;
|
||||||
backups.enable = true;
|
backups.enable = true;
|
||||||
motd.enable = true;
|
motd.enable = true;
|
||||||
postfix.enable = true;
|
postfix.enable = true;
|
||||||
|
|||||||
@@ -62,6 +62,7 @@ in
|
|||||||
./arr/flaresolverr
|
./arr/flaresolverr
|
||||||
./home/mosquitto
|
./home/mosquitto
|
||||||
./uptime-kuma
|
./uptime-kuma
|
||||||
|
./tailscale
|
||||||
];
|
];
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
|
|||||||
@@ -20,7 +20,7 @@
|
|||||||
system.ssh.enable = lib.mkDefault true;
|
system.ssh.enable = lib.mkDefault true;
|
||||||
system.sops.enable = lib.mkDefault true;
|
system.sops.enable = lib.mkDefault true;
|
||||||
system.docker.enable = lib.mkDefault false;
|
system.docker.enable = lib.mkDefault false;
|
||||||
system.tailscale.enable = lib.mkDefault true;
|
system.tailscale.enable = lib.mkDefault false;
|
||||||
system.vpns.enable = lib.mkDefault false;
|
system.vpns.enable = lib.mkDefault false;
|
||||||
system.vpn-confinement.enable = lib.mkDefault false;
|
system.vpn-confinement.enable = lib.mkDefault false;
|
||||||
system.syncthing.enable = lib.mkDefault false;
|
system.syncthing.enable = lib.mkDefault false;
|
||||||
|
|||||||
@@ -17,7 +17,7 @@ in {
|
|||||||
useRoutingFeatures = "both";
|
useRoutingFeatures = "both";
|
||||||
authKeyFile = authkey_file;
|
authKeyFile = authkey_file;
|
||||||
extraUpFlags = [
|
extraUpFlags = [
|
||||||
"--accept-routes=false" # true is equilivant to useRoutingFeatures = "client" (breaks shit)
|
"--accept-routes=true" # true is equilivant to useRoutingFeatures = "client" (breaks shit)
|
||||||
"--accept-dns=true" # explicitly allow resolved
|
"--accept-dns=true" # explicitly allow resolved
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
|
|||||||
@@ -9,6 +9,7 @@
|
|||||||
./kitty
|
./kitty
|
||||||
./dunst
|
./dunst
|
||||||
./waybar
|
./waybar
|
||||||
|
./stylix
|
||||||
./hypr
|
./hypr
|
||||||
./tofi
|
./tofi
|
||||||
./nvf
|
./nvf
|
||||||
|
|||||||
Reference in New Issue
Block a user