nixcfg/cluster
Alex Auvolat a0db30ca26 Sanitize DNS configuration
- get rid of outside nameserver, unbound does the recursive resolving
  itself (and it checks DNSSEC)
- remove CAP_NET_BIND_SERVICE for Consul as it is no longer binding on
  port 53 (was already obsolete)
- make unbound config independant of LAN IPv4 address
2023-03-24 12:58:44 +01:00
..
prod wgautomesh actually on prod 2023-03-24 12:01:38 +01:00
staging Sanitize DNS configuration 2023-03-24 12:58:44 +01:00