From 6513755670892983db88a6633b8c1ea6019c03d1 Mon Sep 17 00:00:00 2001 From: Ben Sima Date: Fri, 15 Nov 2024 14:55:37 -0500 Subject: Re-namespace some stuff to Omni I was getting confused about what is a product and what is internal infrastructure; I think it is good to keep those things separate. So I moved a bunch of stuff to an Omni namespace, actually most stuff went there. Only things that are explicitly external products are still in the Biz namespace. --- Biz/Dev/Vpn.nix | 33 --------------------------------- 1 file changed, 33 deletions(-) delete mode 100644 Biz/Dev/Vpn.nix (limited to 'Biz/Dev/Vpn.nix') diff --git a/Biz/Dev/Vpn.nix b/Biz/Dev/Vpn.nix deleted file mode 100644 index 9b791b7..0000000 --- a/Biz/Dev/Vpn.nix +++ /dev/null @@ -1,33 +0,0 @@ -{ config, ... }: - -let - ports = import ../Cloud/Ports.nix; - domain = "headscale.simatime.com"; -in { - services.headscale = { - enable = true; - address = "0.0.0.0"; - port = ports.headscale; - settings = { dns.base_domain = "simatime.com"; }; - }; - - services.nginx.virtualHosts.${domain} = { - forceSSL = true; - enableAcme = true; - locations."/" = { - proxyPass = "http://localhost:${toString ports.headscale}"; - proxyWebsockets = true; - }; - }; - - environment.systemPackages = [ config.services.headscale.package ]; - - services.tailscale.enable = true; - - networking.firewall = { - checkReversePath = "loose"; - trustedInterfaces = [ "tailscale0" ]; - allowedUDPPorts = [ config.services.tailscale.port ]; - }; - -} -- cgit v1.2.3