aerial/blueberry: extract and enable dns cache
This commit is contained in:
parent
2ea0070ca1
commit
8aa5cf6ac6
3 changed files with 15 additions and 10 deletions
12
nixos/features/dns-cache.nix
Normal file
12
nixos/features/dns-cache.nix
Normal file
|
@ -0,0 +1,12 @@
|
|||
{...}: {
|
||||
networking.nameservers = [ "1.1.1.1#one.one.one.one" "1.0.0.1#one.one.one.one" ];
|
||||
services.resolved = {
|
||||
enable = true;
|
||||
dnssec = "true";
|
||||
domains = [ "~." ];
|
||||
fallbackDns = [ "1.1.1.1#one.one.one.one" "1.0.0.1#one.one.one.one" ];
|
||||
extraConfig = ''
|
||||
DNSOverTLS=yes
|
||||
'';
|
||||
};
|
||||
}
|
|
@ -8,6 +8,7 @@
|
|||
../../features/sound
|
||||
../../features/nvidia.nix
|
||||
../../features/steam.nix
|
||||
../../features/dns-cache.nix
|
||||
];
|
||||
|
||||
home-manager.users.noe = import ../../../home-manager/noe/hosts/aerial.nix;
|
||||
|
@ -28,15 +29,6 @@
|
|||
networking.firewall.allowedTCPPorts = [ 42069 ];
|
||||
networking.firewall.allowedUDPPorts = [ 42069 ];
|
||||
|
||||
networking.nameservers = [ "1.1.1.1#one.one.one.one" "1.0.0.1#one.one.one.one" ];
|
||||
services.resolved = {
|
||||
enable = true;
|
||||
dnssec = "true";
|
||||
domains = [ "~." ];
|
||||
fallbackDns = [ "1.1.1.1#one.one.one.one" "1.0.0.1#one.one.one.one" ];
|
||||
extraConfig = ''
|
||||
DNSOverTLS=yes
|
||||
'';
|
||||
};
|
||||
|
||||
|
||||
}
|
||||
|
|
|
@ -7,6 +7,7 @@
|
|||
|
||||
../../features/podman.nix
|
||||
../../features/nginx.nix
|
||||
../../features/dns-cache.nix
|
||||
|
||||
../../stacks/ps2.live
|
||||
];
|
||||
|
|
Loading…
Add table
Reference in a new issue