ansible/host_vars/vpn-ovh-ng.auro.re.yml
jeltz f1605415fe
Some checks failed
continuous-integration/drone/push Build is failing
Configure endpoints + "point-to-point" network
2021-02-20 21:03:35 +01:00

24 lines
491 B
YAML

---
wireguard_endpoints:
- name: gs
addrs:
- 192.168.0.2/24
listen_port: 5412
private_key: "{{ vault_wireguard_secrets.ovh_gs.private }}"
peers:
- public_key: "{{ vault_wireguard_secrets.gs_ovh.public }}"
allowed_addrs:
- 192.168.0.0/24
- 10.128.0.0/16
- 10.132.0.0/16
keepalive: 30
nftables_basic_input_rules:
- proto: tcp
port: 22
verdict: accept
- proto: udp
port: 5412
verdict: accept
...