summaryrefslogtreecommitdiff
path: root/hosts/flex-wg-router/configuration.nix
blob: 6fea096c19173e91d33a34b26b7ef26803784cd4 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
{ config, lib, pkgs, ... }: let
	ipAddress = "10.1.1.1";
in {
	# Setup bootloader
	boot._loader.enable = true;

	# Enable common options
	_archetypes = {
		# Use headless profile
		profiles.headless = {
			enable = true;
			home.users.timmy.enable = true;
		};
		profiles.router = {
			enable = true;
			home.users.timmy.enable = true;
		};
	};

	networking = {
		_interfaceLabels = {
			lan0 = "98:b7:85:22:9b:43";  # internal
			wan0 = "54:ee:75:8c:4b:2d";  # external
		};
		#useDHCP = false;  # TODO Enable when accessible via wireguard
		interfaces = {
			lan0.ipv4.addresses = [{
				address = ipAddress;
				prefixLength = 24;
			}];
			wan0.ipv4.addresses = [{
				address = "46.110.173.165";  # Public static ip 4
				prefixLength = 31;
			}];
		};
	};

	services._router = {
		dnsDhcpConfig = {
			localDomain = "wg-router.pls.lan";
			dhcp = {
				defaultGateway = ipAddress;
				localhostIp = ipAddress;
				rangeStart = "10.1.1.100";
				rangeEnd = "10.1.1.250";
				staticLeases = {
					poweredge-pro-idrac = {
						macAddress = "00:11:22:33:44:55";
						staticIp = "10.1.1.10";
					};
				};
			};
		};
	};

	# Enable user timmy
	_users.timmy.enable = true;

	system.stateVersion = "25.05";
}