falkenstein.vpn -> falkenstein

This commit is contained in:
Rouven Seifert 2024-03-09 12:40:02 +01:00
parent 525b92a65d
commit 05dc9b4671
Signed by: rouven.seifert
GPG key ID: B95E8FE6B11C4D09
4 changed files with 9 additions and 5 deletions

View file

@ -44,7 +44,8 @@ in
sslKey = "/var/lib/acme/${hostname}/key.pem";
config = {
home_mailbox = "Maildir/";
smtp_helo_name = "falkenstein.vpn.rfive.de";
smtp_helo_name = config.networking.fqdn;
smtpd_banner = "${config.networking.fqdn} ESMTP $mail_name";
smtp_use_tls = true;
smtpd_use_tls = true;
smtpd_tls_protocols = [
@ -220,7 +221,6 @@ in
"dkim_signing.conf".text = ''
selector = "rspamd";
allow_username_mismatch = true;
allow_hdrfrom_mismatch = true;
path = /var/lib/rspamd/dkim/$domain.key;
'';
};

View file

@ -31,6 +31,10 @@
"2620:fe::fe"
"2620:fe::9"
];
extraConfig = ''
[Resolve]
DNSStubListener=no
'';
};
systemd.network = {
enable = true;
@ -72,7 +76,7 @@
wireguardPeerConfig = {
PublicKey = "Z5lwwHTCDr6OF4lfaCdSHNveunOn4RzuOQeyB+El9mQ=";
PresharedKeyFile = config.age.secrets."wireguard/dorm/preshared".path;
Endpoint = "dorm.vpn.rfive.de:51820";
Endpoint = "nuc.rfive.de:51820";
AllowedIPs = "192.168.42.0/24, 192.168.43.0/24";
};
}

View file

@ -151,7 +151,7 @@
wireguardPeerConfig = {
PublicKey = "Z5lwwHTCDr6OF4lfaCdSHNveunOn4RzuOQeyB+El9mQ=";
PresharedKeyFile = config.age.secrets."wireguard/dorm/preshared".path;
Endpoint = "dorm.vpn.rfive.de:51820";
Endpoint = "nuc.rfive.de:51820";
AllowedIPs = "192.168.42.0/24, 192.168.43.0/24";
};
}

View file

@ -22,7 +22,7 @@ in
identityFile = git;
};
"rfive.de" = {
hostname = "falkenstein.vpn.rfive.de";
hostname = "falkenstein.rfive.de";
user = "root";
extraOptions = {
VerifyHostKeyDNS = "yes";