ansible/host_vars/vpn-ovh-ng.auro.re.yml

20 lines
417 B
YAML

---
wireguard_endpoints:
- name: gs
addrs:
- 10.128.0.225/16
listen_port: 5412
private_key: "{{ vault_wireguard_secrets.ovh_gs.private }}"
peers:
- public_key: "{{ vault_wireguard_secrets.gs_ovh.public }}"
allowed_addrs:
- 10.128.0.0/16
nftables_basic_input_rules:
- proto: tcp
port: 22
verdict: accept
- proto: udp
port: 5412
verdict: accept
...