nixos-module/container/vpn: allow link-local addrs for ipv6 slaac

This commit is contained in:
Astro 2022-07-18 22:43:01 +02:00
parent 0d6bcab8f2
commit 78586ec3f6
1 changed files with 8 additions and 1 deletions

View File

@ -40,11 +40,18 @@ in
wireguardPeers = map ({ publicKey, allowedIPs }: {
wireguardPeerConfig = {
PublicKey = publicKey;
AllowedIPs = allowedIPs;
AllowedIPs = allowedIPs ++ [ "fe80::/64" "ff02::/16" ];
};
}) config.site.vpn.wireguard.peers;
};
systemd.network.networks.vpn.addresses = [ {
addressConfig = {
Address = "fe80::1/64";
Scope = "link";
};
} ];
environment.systemPackages = [
pkgs.wireguard-tools
];