From 7092c91008ab85163815cd9bcb05c74596a4b40b Mon Sep 17 00:00:00 2001 From: leon Date: Sun, 13 Nov 2022 00:29:51 +0000 Subject: [PATCH 1/5] update --- hosts/leoncloud/default.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/hosts/leoncloud/default.nix b/hosts/leoncloud/default.nix index 526f2910..099daf08 100644 --- a/hosts/leoncloud/default.nix +++ b/hosts/leoncloud/default.nix @@ -97,7 +97,7 @@ services.nextcloud = { dbname = "nextcloud"; adminpassFile = "/etc/nixos/next-cloud/pass"; adminuser = "root"; - extraTrustedDomains = [ "172.20.79.254" "10.10.11.4" ]; + extraTrustedDomains = [ "172.20.79.254" "10.10.11.4" "10.10.11.1" ]; }; }; From f5061186214684220cd5149e4238a416003d2125 Mon Sep 17 00:00:00 2001 From: leon Date: Sun, 13 Nov 2022 00:31:43 +0000 Subject: [PATCH 2/5] update --- hosts/leon/default.nix | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) diff --git a/hosts/leon/default.nix b/hosts/leon/default.nix index 7152b0ae..e85c2d0f 100644 --- a/hosts/leon/default.nix +++ b/hosts/leon/default.nix @@ -216,5 +216,22 @@ networking.wireguard.interfaces = { #-----------------------------END-VPN--------------------------------- + +#-----------------------------ngin-X-------------------------------- + +# services.nginx = { +# enable = true; +# virtualHosts."bicospacetech.c3d2.de" = { +# default = true; +# forceSSL = true; +# enableACME = true; +# locations."/login" = { +# proxyPass = "http://10.10.11.1:80"; +# proxyWebsockets = true; +# }; +# }; + +#-----------------------------ngin-X-------------------------------- + system.stateVersion = "22.05"; } From 81c2d99ceada7d8c4a40f2f4471b4d5274d8a5d7 Mon Sep 17 00:00:00 2001 From: leon Date: Sun, 13 Nov 2022 02:07:51 +0000 Subject: [PATCH 3/5] update --- hosts/leon/default.nix | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/hosts/leon/default.nix b/hosts/leon/default.nix index e85c2d0f..33836eeb 100644 --- a/hosts/leon/default.nix +++ b/hosts/leon/default.nix @@ -220,7 +220,8 @@ networking.wireguard.interfaces = { #-----------------------------ngin-X-------------------------------- # services.nginx = { -# enable = true; +# listen 80; + enable = true; # virtualHosts."bicospacetech.c3d2.de" = { # default = true; # forceSSL = true; From 457411ede6561afe48bb6c034c766b9ef7ec5c6c Mon Sep 17 00:00:00 2001 From: leon Date: Sun, 13 Nov 2022 02:11:06 +0000 Subject: [PATCH 4/5] update --- hosts/leon/default.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/hosts/leon/default.nix b/hosts/leon/default.nix index 33836eeb..bfe010d2 100644 --- a/hosts/leon/default.nix +++ b/hosts/leon/default.nix @@ -221,7 +221,7 @@ networking.wireguard.interfaces = { # services.nginx = { # listen 80; - enable = true; +# enable = true; # virtualHosts."bicospacetech.c3d2.de" = { # default = true; # forceSSL = true; From dfad2b97216d6573d28bdc3ffe06d2b6c8a223d2 Mon Sep 17 00:00:00 2001 From: leon Date: Sun, 13 Nov 2022 11:44:43 +0000 Subject: [PATCH 5/5] open kernel routing --- hosts/leoncloud/default.nix | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/hosts/leoncloud/default.nix b/hosts/leoncloud/default.nix index 099daf08..6790d95d 100644 --- a/hosts/leoncloud/default.nix +++ b/hosts/leoncloud/default.nix @@ -54,6 +54,11 @@ ]; }; + +# enable IP routing + boot.kernel.sysctl."net.ipv4.conf.all.forwarding" = 1; + boot.kernel.sysctl."net.ipv4.conf.default.forwarding" = 1; + networking.firewall = { allowedTCPPorts = [ 80 443 22 53 14000 14500 15000 ]; allowedUDPPorts = [ 18900 53 ];