nix: allow wireguard + logs
This commit is contained in:
parent
af82308e84
commit
3befdea206
1 changed files with 5 additions and 0 deletions
|
@ -201,10 +201,15 @@ in
|
|||
domain-insecure = [ "consul." ];
|
||||
local-zone = [ "consul. nodefault" ];
|
||||
log-servfail = true;
|
||||
verbosity = 1;
|
||||
log-queries = true;
|
||||
use-syslog = false;
|
||||
logfile = "/dev/stdout";
|
||||
access-control = [
|
||||
"127.0.0.0/8 allow"
|
||||
"${cfg.lan_ip}/${toString cfg.lan_ip_prefix_length} allow"
|
||||
"172.17.0.0/16 allow"
|
||||
"10.83.0.0/16 allow"
|
||||
];
|
||||
};
|
||||
forward-zone = [
|
||||
|
|
Loading…
Reference in a new issue