This commit is contained in:
iFargle 2023-10-08 16:32:20 +09:00
parent 7a532a07cf
commit 30bc4bf2df

View file

@ -36,7 +36,11 @@
};
# Wireguard Forwarder
boot.kernel.sysctl = { "net.ipv4.ip_forward" = true; };
boot.kernel.sysctl = {
"net.ipv4.ip_forward" = true;
"net.ipv4.conf.all.forwarding" = 1;
"net.ipv4.conf.default.forwarding" = 1;
};
networking.firewall.allowPing = true;
networking.wireguard = {
enable = true;
@ -67,13 +71,17 @@
};
};
services.xinetd = {
enable = true;
};
networking.nat = {
enable = true;
internalInterfaces = [ "wireguard0" ];
externalInterface = "eno3";
# forwardPorts = [
# { sourcePort = 80; destination = "10.100.0.2:80"; }
# { sourcePort = 443; destination = "10.100.0.2:443"; }
# ];
forwardPorts = [
{ sourcePort = 80; destination = "10.100.0.2:80"; }
{ sourcePort = 443; destination = "10.100.0.2:443"; }
];
};
}