services: Add wireguard service

This commit is contained in:
Tristan Daniël Maat 2023-04-23 23:42:25 +01:00
parent acd7cc802b
commit 14d29fa49d
Signed by: tlater
GPG key ID: 49670FD774E43268
4 changed files with 110 additions and 20 deletions
configuration

View file

@ -1,22 +1,34 @@
{
sops = {
defaultSopsFile = ../keys/production.yaml;
secrets."nextcloud/tlater" = {
owner = "nextcloud";
group = "nextcloud";
};
secrets."steam/tlater" = {};
secrets."heisenbridge/as-token" = {};
secrets."heisenbridge/hs-token" = {};
secrets."turn/env" = {};
secrets."turn/secret" = {
owner = "turnserver";
};
secrets."turn/ssl-key" = {
owner = "turnserver";
};
secrets."turn/ssl-cert" = {
owner = "turnserver";
secrets = {
"nextcloud/tlater" = {
owner = "nextcloud";
group = "nextcloud";
};
"steam/tlater" = {};
"heisenbridge/as-token" = {};
"heisenbridge/hs-token" = {};
"wireguard/server-key" = {
owner = "root";
group = "systemd-network";
mode = "0440";
};
"turn/env" = {};
"turn/secret" = {
owner = "turnserver";
};
"turn/ssl-key" = {
owner = "turnserver";
};
"turn/ssl-cert" = {
owner = "turnserver";
};
};
};
}