summaryrefslogtreecommitdiffstats
path: root/programs
diff options
context:
space:
mode:
authorJon Santmyer <jon@jonsantmyer.com>2023-09-23 18:20:59 -0400
committerJon Santmyer <jon@jonsantmyer.com>2023-09-23 18:20:59 -0400
commit5b6da895b974c2272374a961d40619fa013a8432 (patch)
tree3bf106ad35e2b4a45c067260443fa5a4a0a64129 /programs
parent5d738414d3056171ac5ccb34445db2d79dd792f1 (diff)
downloadnix-config-5b6da895b974c2272374a961d40619fa013a8432.tar.gz
nix-config-5b6da895b974c2272374a961d40619fa013a8432.tar.bz2
nix-config-5b6da895b974c2272374a961d40619fa013a8432.zip
fix openvpn config?
Diffstat (limited to 'programs')
-rw-r--r--programs/openvpn.nix28
1 files changed, 27 insertions, 1 deletions
diff --git a/programs/openvpn.nix b/programs/openvpn.nix
index 5f1c198..e4f396d 100644
--- a/programs/openvpn.nix
+++ b/programs/openvpn.nix
@@ -3,7 +3,33 @@
services.openvpn = {
servers = {
MulladVPN-US-Miami = {
- config = builtins.readFile ../secrets/mullvad_us_mia/mullvad_us_mia.conf
+ config = ''
+client
+dev tun
+resolv-retry infinite
+nobind
+persist-key
+persist-tun
+verb 3
+remote-cert-tls server
+ping 10
+ping-restart 60
+sndbuf 524288
+rcvbuf 524288
+cipher AES-256-GCM
+tls-cipher TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
+proto udp
+auth-user-pass /etc/nixos/secrets/mullvad_us_mia/mullvad_userpass.txt
+ca /etc/nixos/secrets/mullvad_us_mia/mullvad_ca.crt
+tun-ipv6
+script-security 2
+up /etc/nixos/secrets/mullvad_us_mia/update-resolv-conf
+down /etc/nixos/secrets/mullvad_us_mia/update-resolv-conf
+fast-io
+remote-random
+remote 146.70.187.194 1302 # us-mia-ovpn-101
+remote 146.70.183.66 1302 # us-mia-ovpn-102
+ '';
};
};
};