forked from zentralwerk/network
nixos-module/container/vpn: allow link-local addrs for ipv6 slaac
This commit is contained in:
parent
0d6bcab8f2
commit
78586ec3f6
|
@ -40,11 +40,18 @@ in
|
||||||
wireguardPeers = map ({ publicKey, allowedIPs }: {
|
wireguardPeers = map ({ publicKey, allowedIPs }: {
|
||||||
wireguardPeerConfig = {
|
wireguardPeerConfig = {
|
||||||
PublicKey = publicKey;
|
PublicKey = publicKey;
|
||||||
AllowedIPs = allowedIPs;
|
AllowedIPs = allowedIPs ++ [ "fe80::/64" "ff02::/16" ];
|
||||||
};
|
};
|
||||||
}) config.site.vpn.wireguard.peers;
|
}) config.site.vpn.wireguard.peers;
|
||||||
};
|
};
|
||||||
|
|
||||||
|
systemd.network.networks.vpn.addresses = [ {
|
||||||
|
addressConfig = {
|
||||||
|
Address = "fe80::1/64";
|
||||||
|
Scope = "link";
|
||||||
|
};
|
||||||
|
} ];
|
||||||
|
|
||||||
environment.systemPackages = [
|
environment.systemPackages = [
|
||||||
pkgs.wireguard-tools
|
pkgs.wireguard-tools
|
||||||
];
|
];
|
||||||
|
|
Loading…
Reference in New Issue
Block a user