arch-setup/host_vars/xps/vpn.yml
Sonny Bakker c5c7c8ce88 Revert to route only domains
Resolution sometimes fails as HTTPS requests are not possible yet to
some domains. This causes HTTP requests to fail later on. Can be reproduced
by doing a HTTPS request first (for a domain configured without HTTPS) and retrying
with a HTTP request afterwards.
2025-04-26 09:48:58 +02:00

52 lines
1.6 KiB
YAML

pa_dlna_version: 0.16
pa_dlna_systemd_version: 0.0.9
vpn_default:
ip: 10.0.0.2
prefix: 24
interface: wg0
dns: 10.0.0.1
domains:
- '~vpn.{{ server_domain }}'
- '~transmission.{{ server_domain }}'
- '~syncthing.{{ server_domain }}'
- '~radicale.{{ server_domain }}'
- '~mpd.{{ server_domain }}'
public_key_path: '{{ vpn_config_dir }}/keys/public/default/laptop.pub'
private_key_path: '{{ vpn_config_dir }}/keys/private/default/laptop.key'
peers:
- name: fudiggity
allowed_ips:
- 10.0.0.0/24
- 172.16.238.0/24
- 172.32.238.0/24
- 172.64.238.0/24
- 172.128.238.0/24
endpoint: '{{ server_domain }}:51902'
public_key: 'CeybSMpJiicXmndIuhe89Bay3z3PEdYNyAwIFsacBEo='
preshared_key_path: '{{ vpn_config_dir }}/keys/private/default/preshared-zeus.psk'
preshared_key_source_path: files/personal/xps/wireguard/default/preshared.psk
vpn_media:
ip: 10.0.1.2
prefix: 24
interface: wg1
dns: 10.0.1.1
domains:
- '~media-vpn.{{ server_domain }}'
- '~jellyfin.{{ server_domain }}'
public_key_path: '{{ vpn_config_dir }}/keys/public/media/laptop.pub'
private_key_path: '{{ vpn_config_dir }}/keys/private/media/laptop.key'
peers:
- name: fudiggity-media
allowed_ips:
- 10.0.1.0/24
- 172.8.238.0/24
endpoint: '{{ server_domain }}:51903'
public_key: EugKeo63C5N5kz9ShMHtYswO9Qh6mE00MtfLSFmqqjg=
preshared_key_path: '{{ vpn_config_dir }}/keys/private/media/preshared-zeus.psk'
preshared_key_source_path: files/personal/xps/wireguard/media/preshared.psk