This commit is contained in:
Schrottkatze 2023-12-09 22:18:18 +01:00
parent f40587796a
commit abe555ca4c

View file

@ -1,38 +1,45 @@
{ pkgs, modulesPath, lib, ... }:
{ {
imports = pkgs,
[ (modulesPath + "/profiles/qemu-guest.nix") modulesPath,
lib,
...
}: {
imports = [
(modulesPath + "/profiles/qemu-guest.nix")
]; ];
systemd.services."NetworkManager-wait-oline".enable = false; systemd.services."NetworkManager-wait-oline".enable = false;
networking = { networking = {
nameservers = [ "9.9.9.9" "149.112.112.112" ]; nameservers = ["9.9.9.9" "149.112.112.112"];
hostName = "katzen-cafe"; hostName = "katzen-cafe";
networkmanager = { networkmanager = {
enable = true; enable = true;
unmanaged = [ "interface-name:ve-phtanumb+" "interface-name:ve-katzenwiki" "interface-name:ve-nextcloud" ]; unmanaged = ["interface-name:ve-phtanumb+" "interface-name:ve-katzenwiki" "interface-name:ve-nextcloud"];
}; };
firewall.allowedTCPPorts = [ 22 80 443 2222]; firewall.allowedTCPPorts = [22 80 443 2222];
firewall.checkReversePath = false; firewall.checkReversePath = false;
# firewall.allowedUDPPorts = [ 25568 25569 ]; # firewall.allowedUDPPorts = [ 25568 25569 ];
nat = { nat = {
enable = true; enable = true;
internalInterfaces = [ "ve-phtanumb+" "ve-katzenwiki" "ve-nextcloud" ]; internalInterfaces = ["ve-phtanumb+" "ve-katzenwiki" "ve-nextcloud"];
externalInterface = "enp1s0"; externalInterface = "enp1s0";
}; };
interfaces."enp1s0" = { interfaces."enp1s0" = {
ipv6.addresses = [{ ipv6.addresses = [
address = "2a01:4f8:c17:c51f::"; {
prefixLength = 64; address = "2a01:4f8:c17:c51f::";
}]; prefixLength = 64;
ipv4.addresses = [{ }
address = "91.107.221.11"; ];
prefixLength = 32; ipv4.addresses = [
}]; {
address = "91.107.221.11";
prefixLength = 32;
}
];
}; };
defaultGateway6 = { defaultGateway6 = {
address = "fe80::1"; address = "fe80::1";
@ -46,24 +53,29 @@
boot = { boot = {
kernelPackages = pkgs.linuxPackages_latest; kernelPackages = pkgs.linuxPackages_latest;
kernelParams = [ "console=tty" ]; kernelParams = ["console=tty"];
loader = { loader = {
systemd-boot.enable = true; systemd-boot.enable = true;
efi.canTouchEfiVariables = true; efi.canTouchEfiVariables = true;
}; };
initrd = { initrd = {
availableKernelModules = [ "xhci_pci" "virtio_pci" "usbhid" "sr_mod" ]; availableKernelModules = ["xhci_pci" "virtio_pci" "usbhid" "sr_mod"];
kernelModules = [ "virtio_gpu" ]; kernelModules = ["virtio_gpu"];
}; };
}; };
programs.mosh.enable = true;
services.openssh = { services.openssh = {
enable = true; enable = true;
settings.PermitRootLogin = "prohibit-password"; settings.PermitRootLogin = "prohibit-password";
}; };
environment.systemPackages = with pkgs; [ environment.systemPackages = with pkgs; [
vim wget neofetch btop vim
wget
neofetch
btop
]; ];
fileSystems."/" = { fileSystems."/" = {
@ -76,7 +88,9 @@
fsType = "vfat"; fsType = "vfat";
}; };
swapDevices = [ { swapDevices = [
device = "/dev/sda2"; {
} ]; device = "/dev/sda2";
}
];
} }