add c2 keys
This commit is contained in:
parent
16f491a6ca
commit
7268b56265
3 changed files with 11 additions and 0 deletions
|
|
@ -27,6 +27,10 @@
|
||||||
"10.68.140.249/32"
|
"10.68.140.249/32"
|
||||||
"fc00:bbbb:bbbb:bb01::5:8cf8/128"
|
"fc00:bbbb:bbbb:bb01::5:8cf8/128"
|
||||||
];
|
];
|
||||||
|
"c2".ips = [
|
||||||
|
"10.64.179.105/32"
|
||||||
|
"fc00:bbbb:bbbb:bb01::1:b368/128"
|
||||||
|
];
|
||||||
};
|
};
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
|
|
|
||||||
|
|
@ -2,6 +2,7 @@ _: rec {
|
||||||
# this is only used for forcing password entry on colmena apply
|
# this is only used for forcing password entry on colmena apply
|
||||||
priviliged-by-host = {
|
priviliged-by-host = {
|
||||||
"solo" = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIFsl8pLaGeCL3kacGWf8pzoLQr501ga/2OzvI2wWbTZJ";
|
"solo" = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIFsl8pLaGeCL3kacGWf8pzoLQr501ga/2OzvI2wWbTZJ";
|
||||||
|
"c2" = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIJAZaswaiA+oQ9NviADYFf7BJQHNlmdxQuocIdoJmv3o";
|
||||||
};
|
};
|
||||||
priviliged = builtins.attrValues priviliged-by-host;
|
priviliged = builtins.attrValues priviliged-by-host;
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -3,6 +3,7 @@ rec {
|
||||||
publicKey = {
|
publicKey = {
|
||||||
"roam" = "yUbdRfRFFVe4FPUaD7pVByLRhpF9Yl1kethxRUHpVgs=";
|
"roam" = "yUbdRfRFFVe4FPUaD7pVByLRhpF9Yl1kethxRUHpVgs=";
|
||||||
"solo" = "SRDguh0aN/RH8q/uB09w/OZTbP9JZZy0ABowbWIfkTk=";
|
"solo" = "SRDguh0aN/RH8q/uB09w/OZTbP9JZZy0ABowbWIfkTk=";
|
||||||
|
"c2" = "yJ1vrI9+qzUHuQJxeRDLCDCMRCIhF+0UNPwz3agyxTk=";
|
||||||
};
|
};
|
||||||
wireguard-network = {
|
wireguard-network = {
|
||||||
"roam" = {
|
"roam" = {
|
||||||
|
|
@ -17,6 +18,11 @@ rec {
|
||||||
ips = [ "10.10.11.2/24" ];
|
ips = [ "10.10.11.2/24" ];
|
||||||
allowedIPs = [ "10.10.11.2/32" ];
|
allowedIPs = [ "10.10.11.2/32" ];
|
||||||
};
|
};
|
||||||
|
"c2" = {
|
||||||
|
publicKey = publicKey."c2";
|
||||||
|
ips = [ "10.10.11.2/24" ];
|
||||||
|
allowedIPs = [ "10.10.11.2/32" ];
|
||||||
|
};
|
||||||
};
|
};
|
||||||
keyFile = "/var/secrets/wg.key";
|
keyFile = "/var/secrets/wg.key";
|
||||||
|
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue