From 3befdea20669f5b6e09cadb20f91d33a3cded459 Mon Sep 17 00:00:00 2001 From: Quentin Dufour Date: Fri, 28 Apr 2023 09:26:32 +0200 Subject: nix: allow wireguard + logs --- nix/deuxfleurs.nix | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'nix') diff --git a/nix/deuxfleurs.nix b/nix/deuxfleurs.nix index f7b70d7..ad5249d 100644 --- a/nix/deuxfleurs.nix +++ b/nix/deuxfleurs.nix @@ -201,10 +201,15 @@ in domain-insecure = [ "consul." ]; local-zone = [ "consul. nodefault" ]; log-servfail = true; + verbosity = 1; + log-queries = true; + use-syslog = false; + logfile = "/dev/stdout"; access-control = [ "127.0.0.0/8 allow" "${cfg.lan_ip}/${toString cfg.lan_ip_prefix_length} allow" "172.17.0.0/16 allow" + "10.83.0.0/16 allow" ]; }; forward-zone = [ -- cgit v1.2.3