diff --git a/hosts/jupiter-vps/configs/wireguard/default.nix b/hosts/jupiter-vps/configs/wireguard/default.nix index 58c1008..a30b875 100644 --- a/hosts/jupiter-vps/configs/wireguard/default.nix +++ b/hosts/jupiter-vps/configs/wireguard/default.nix @@ -21,6 +21,7 @@ in wireguard.interfaces.wg0 = { ips = [ "10.0.0.1/24" ]; listenPort = wireguardPort; + privateKeyFile = config.sops.secrets.wireguard.path; peers = [ diff --git a/hosts/jupiter/configs/wireguard/default.nix b/hosts/jupiter/configs/wireguard/default.nix index c4b9f0f..bbb34ca 100644 --- a/hosts/jupiter/configs/wireguard/default.nix +++ b/hosts/jupiter/configs/wireguard/default.nix @@ -32,12 +32,11 @@ in "10.0.0.2/24" "${jupiterPublicIPv4}/32" ]; - listenPort = wireguardPort; + privateKeyFile = config.sops.secrets.wireguard.path; + table = "wireguard"; - postSetup = [ "${ip} rule add from ${jupiterPublicIPv4} table ${table}" ]; - postShutdown = [ "${ip} rule del from ${jupiterPublicIPv4} table ${table}" ]; peers = [