From 9857cabb07b9e4bab1ab2ffdc8fb7ae669fcff62 Mon Sep 17 00:00:00 2001 From: Gabriel Arazas Date: Sun, 11 Jun 2023 12:28:36 +0800 Subject: [PATCH] hosts/ni: update Wireguard "client" config again --- hosts/ni/default.nix | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/hosts/ni/default.nix b/hosts/ni/default.nix index 21861697..60a75149 100644 --- a/hosts/ni/default.nix +++ b/hosts/ni/default.nix @@ -241,7 +241,7 @@ in { privateKeyFile = config.sops.secrets."ni/wireguard/private-key".path; listenPort = wireguardPort; - dns = with interfaces.internal; [ IPv4.adress IPv6.address ]; + dns = with wireguardPeers.server; [ IPv4 IPv6 ]; postUp = let resolvectl = "${lib.getBin pkgs.systemd}/bin/resolvectl"; @@ -262,6 +262,7 @@ in presharedKeyFile = config.sops.secrets."ni/wireguard/preshared-keys/plover".path; allowedIPs = wireguardAllowedIPs; endpoint = "${interfaces.main'.IPv4.address}:${toString wireguardPort}"; + persistentKeepalive = 25; } # The "phone" peer.