From 0188f55024cd087b3aea03db97dad1d28f88c950 Mon Sep 17 00:00:00 2001 From: Lucy Hochkamp Date: Tue, 2 Apr 2024 16:29:11 +0200 Subject: [PATCH] stoopid --- nixos-modules/services/tailscale-openvpn.nix | 3 ++- secrets/ovpnDe.age | Bin 1587 -> 1597 bytes secrets/ovpnNl.age | Bin 1316 -> 1326 bytes secrets/ovpnTu.age | Bin 2632 -> 2637 bytes 4 files changed, 2 insertions(+), 1 deletion(-) diff --git a/nixos-modules/services/tailscale-openvpn.nix b/nixos-modules/services/tailscale-openvpn.nix index 2273214a..91175f8c 100644 --- a/nixos-modules/services/tailscale-openvpn.nix +++ b/nixos-modules/services/tailscale-openvpn.nix @@ -61,9 +61,10 @@ with lib; enable = true; useRoutingFeatures = "server"; extraUpFlags = [ "--advertise-exit-node" ]; - authKeyFile = cfg.tsAuthKey; + authKeyFile = "/host${cfg.tsAuthKey}"; openFirewall = true; }; + system.stateVersion = "23.11"; }; }) diff --git a/secrets/ovpnDe.age b/secrets/ovpnDe.age index a415d33fcc4e1bac959b8502c033500b2dfe8512..13026ed47d3dd45220e185b638ab03ef08dfb037 100644 GIT binary patch delta 1514 zcmdnYvzKRrPQ8DIS-3~0Yp#EAX|P#|r>noeXO@SXxubt%MrL7CiJN;?xpt|!Q>j-8^#D#Q_GB;~B-n19M$Xijvck z{R_%X^G(aWf-M8JOU*1Zv+^=igB>gVa|7J8{aum_1GBTaa?AYEUDFKRLo<_dP4vyp z!d$b1)3i;Eyb~>5jLLIOJxwg!GPIMU@=VevpJf!UFElhO$uIB-%uNf>HVVtgDlRk0 zjw~un$}sV>^wu^pG7e7-uyk~_D5>z|$}aYIb~cDC@G8v;D2de0EQ-uF^mO#o&r2yT zbSm^U%<_y(&U3ZUH%-Hc0dqeeQ@?bD{EEP+2n&wLGT;I?1{M2jJ z^vP!r`!CY!TP65%f$+K72|rDDYDZ1~`&}bo)8_J)f7kVQ@J#9q*Enn#<8J>R4U$wNBGSe>sn)*6dz#NvPbQoSKd5l= zdB_syP6N(o3;R~?J+#fPZOvwHm(0l-eWIe(=^VA&&d%mNuVGd>E#x`#*^(BHZ*QiV zFa9N5Us7`99Ix2ZJ&PoGn|#?HCVa|ht9tcy>p8){zs&>YT^DPZ(!*EzD=nO_#EVs) zneEKH=n#h2^+rV(LZ=Fgc(jTNm@Y2%Gs~0 zcrlx^eO~ar{J5)D$`PuwY;V>q-zz3)6I@(%?UnVCS;B#vZk}cRYIkL)!u$8tt^IFx zGOsV1?ftyZMpXZ2{nLzXUtG z>Yn`E7dU6(!Qv?W@H>}3DFppD?Q+#Cl??Yf&*tuZV%B-RkJ-A{Pi>ga)3W2!XQvnw z&4S23$5y;vLdS(Cs delta 1504 zcmdnXvzcdtPJKauqnUwzSa3#aVOd~AT5x7cl|iCwxVOJWm9|-iyJe=faag8PT3EVs zB$rF2XTDQGR${Jmgll$YR=SCWXQZ~fn|Yp(rI)r@T27v)VP-&Lxp9=C374*&LUD11 zZfc5=si~o*LTS23czC%&Zc;#5scTqHNVd6?r+=|)xtmd*OOAPZhO@rAp`ll1rM5|y zkz<*YX|9ngSDA58WtDfKqjq_EgrSE~sc*PXrEyW9TXt@4WmRyNS!HohdS!WOL7uDY z#E;_PrD=Y7X)fBH+WF}LCXvOF5!xYs$&o1*MP}i7DHfHb{-x<5VLnB<&Uv0(h2a%h zZV{y>F2+6{!8xAV!6o`mQAI{2mRW&5K?O$HDFG&)zG2~xM#;sK;~B-nwX;2fEh{}O z$}FElezY{Q`WoJ(5!0JiRKNojnuHv&?hdT-=kn3W_qFz5Gj^3iZ=6waeU1 zGo3x$va-t~GTo|5Je>SfDlN<$eZxyUBC{PQpJf!U4|B~i)DOvZ_w+M#k4h;v4l2%w za(D8|E=o?xNihla@pI1zj4~}qF%8btB z&UH&GGBe4_kMd1RGS@ahj{$Q(A5*_{1(#%JBOhPyWc|vjid4_SJdb+A3@4XT|8mz- zui#P-FORT7)AB$wA7@{ue6FN?%akJHOt+$J_r$Q|kYsO{3X4eNeE%rt0R58Ol6;fO zBF_*@_ejT}d@fyGU4<0$M3cOzvTVbk!fe=QZ)d<;$;4qgE>&kKeLzdaBbgOUa*aPVLsaRA8=i z;A^m>{nCB@g|82qx1@hgKhP1HYOJ(u+m`7o>*}lJq`oGeaf}sOF@3g-M1YA;jBLm1 zGg15twz(~wBpniY_q?Fct3KJ25iXI9@4d20Gqjv$WzW)Rbu^zpOV5vEYyD;G^_ic%q2r5wh4W1l z6`Yvwx|jX--aC8jd2UQHeE7KO+OmSDryu8;er30@sIjlP91x{f@jl?#-ZyQRPA~cO zan_fh#Dw&-yHx~Cn7SQ*J`|i2{!Z<>e*M{9!4b`jtG2I86g6(X`mFP<|Hh-XZIA0e zEjX2w_5Fwbac}jxM=GY-H|VbEn6tl~Z5N zJHkCX{(+f&{qG|t|GtSaXZb33U&{}^`LjPEEA90AFQuKUJ9bD2uXuhs_P#nj!ZC+o1MaisKbO)_7h-Vk)aZ_3gC?oF!imCnbm zTP>`3a&_`)lm63JJs*c%vhUcVEvYf<+qASjg$3gGbXLr+?=9O_$5>Iwu~>WJj<5SC z9)A0}d;89kuOBxs8g$5ZTHo1H8|I>`Vj_EuUnBpRc$|yC_Yjud9IJ0#S~O*^fZg;A zm1liVCN{-A{E+zl9Nz^)r(LU#9ylmFYj@(~N0A#(hw$y^x+$=4qu<|;TyHmg6nJT+ zJYg~O-L^?DqK(-NnN!Q_KWTWmKGLn8v%Pw8!`X@Fa^47?d;V@C-?Q^3eqBu*Csp^e zvFqf1%zwNm`o8ksO>TSkpI4aBeu4K_<@%>$-+J5UpUw}^j$XyUb2DqwizUb8Htabn zQ(gXXX=U=0%4@GLJZr7~Zl_mzOUP5M%w-88wX`Nc0>pM);nDw&zii4bI+EbH(OcHD~GL}`o#D9$+TVHU&zkY oGZLF#bRj3Me$u}=>&`_*`xWcI6g8HdVW@i7*i3P%ZPmt408j+xiIp2h|hY1$zn+GV+3WtC|b#StNGzcHuZ4J@^QDYNX@n2G7m3Jw{&xg^!G5$ttd#%DNXe^iZam7@iZ?D z&NeYAPxUbisHlu6Hq7)zj{$Q(A5*_{g^;vFH)lte%)%0jtn!SEM3Z_K?V=KcBK->I z^a$-x<0Qwj^yKXDV3)w)K(6piAD=Ae^lT?Ipn#AMS%?SSN9zZB1))UsUDvUJBVKPNMjWXE(T|FC3pvjXSr z$kL*MWUlE+?Q`s;Us%_N-{`t?!>#F1>y^(ns&{Stmh3zbv+ms;&aPbvLg&j>WT$4R z-ukJzHnR7uW+9uhsdwkT_@iHT9}1GHpL=g#`&XyaY71k+IUy9ty#0R3-mPa_L-bty|O1GX5Q;B%=NQdp1IuH z7ON-rzTn-9$UPP_+t+Sf&hk@g>znU4U&u%stK{D_xU}TSv{R;XZNC+|p1;rQVBN4o z>GG$aktf4m9GG9G_V9iCz26`VaqU&{CX zeUZ26_$_909p!6_!%e45;;cLOk|Xkk^r8nTrg!EQTE6XG7BZ*l^7(a<@{6;YWK*r4 z%SmspUs0gBYy0vUPU(>;lkB!eEOk7s8N2GkyVkv7ENgZyFw#-1wA$lTKP4ewXadWA z&&XQ;H}=Z20uPs+%RAPU+5D5iPQ29OXmv?^r(*v3gI4b*y2{$BO#0E0^F1Wa{r-LV zDw*ba7g`HjJv2A|T#?5Z8*tm{#;x9W^=4{`JV(}=KM1%U@K|oP=hVW2J*BK~lXdxx zF2sv((|#`G8aV0kqdN@KmRIj=o_PF;k>r;1UbjzIYx?GWdT^X4Tb^ltcg3;uMUz$* T>7Nx^rYtPX?y}@w*F7Ns6dm`! delta 1231 zcmZ3-wS;SePQAN%WN>&`NTH*taa4|rVWoLWad@P$XKrMunWIxchH0invXfbkWs!?< zF_&dlL|}-gU%rn;c2TOOc4~g1d2p6{P)S}%czJH7i%(*ebFzMLSV%=hK9{bYLUD11 zZfc5=si~o*LTS23czC%&aX~?(aj02pc(7AOYG9bYpPRmSfrnpyiMD5Xka40(Nnvhj+Sw+_eqk0BdEw4R&K54lVacxLnOXTo$p(>J#=d2K znGr520m&K80U4=f9-b+N$&tY+p+ON&*+mhd6&?ZkA!g}Wd8QVV;~B-n11r0u)G0AgE$~N%MOv$ix zF7eOw%PP|^NGbEraW^wTj{$Q(A5*_{g`7nF0uKu_3w_I|^uP$mLdW|2!t}BLgK&?^ z{4l5NRDTy&A0LnWz;yrINUn0Dl)(J7G$+TLjB+1;FE7XBe3Q}$4>L~#4^3ar2 z!=k9nbn`TiWG-D@T?Lb@a;MPXl<=^uNKeC1!}8p+N<*`P0F#g^7Z;i{+}lu z&D{KZ?p})zKdP)VV|!L@>~5HvvwL;uQZ=iV*SfVYpJd(V$^Yg0{Ks*1{RR6uA{3Hk zlt0dUbnr{mgX!zq=PG3E2{|~i_!<*K^YUHkSrMr*JXV)#mTFy%U+2}e*0R1rSNqBQ z^)-wB{9nM#e`A%5_0gyLthc9JoA@?xYRIigHMN!Dd{Z+23hFHm<6in`{}LnTu%`>> z+diGZS>Cm=JoV_qx3QBLems1)o#DLyt?AMi%a$vAX^K6|P*#25Z(7cUj)RQ-&AKZm z-k$yX$+{qoFF_e?5>^Sn&P7+cwc>AcICW(avLn#gqTx}>)daN?4MtEsQZg> z@=4Cp!_h1JyDS!38&0?5Zd`Je%XEER`2WpXQhW9|F4DQMI$N=I!ApJ@!{*1?rA0oC zg3o@P-8b9%l7{Dx^=FjV2G5<-d`=_k@PvRRmOQ@9E>8s`_o`P13tW-%Ui8gLpsFZ$wh0INg8t6^A#bdg_0c(Z?e)Tc#dBr3-)TNI)VsXG zAn0*`m*$K1(zJ~KQLF(j_9=cUJU;a)SsM0t-xU2?>2iG9zLz()KC0MQo^11X$BX2} zzpwg*N&j5gVWr{m|8APfzu-dOEx*^rP5IgWYRcAM8v>QwmYieC6c3GY30--(V6&wB zha#m!5PQ6iJm0^)vqQ8G}Vu5+7fxEH3XQ@G8uwPI~ig~`fxlx8+R8Us1lewE~ zC|6;KcCnFjUTB(QN{N1whpD4}K!u@izE@D7Z$?32X?Sq3bCg?=agLj}1(&X!LUD11 zZfc5=si~o*LTS23czC&jQI4r)rD2v&o{yt@nQLTNp<8f3dSHHTP)TK4dSr@;sbyJ} zzrS;4kh`lZSAJ-kTZE^ZS(RZxR%CW^ez2*Rn`=&qeqdp)zqX@KZgOghi*rPjr=y|4 z#E;_PX6YWzh8Z5l`N=t!8AhHS!THH$<=W1{?gpvZ8Ai?lf&S^m>6s=0POjNpeo-l* zt|3XDfi7;v6$K@ZmZiDAj{f=<{$8n76_&m!`36O4mPTPEc_zt|;~B-n-E*pn%Bw83 z&B{UxEZjnhP0NFP42@h$je<%l{E}RJgOWT;b0hr1BAv3iQY!TgO9Ct_aw{z?Orvt$ z4N|;Zw9^X{JxenEyfX8Aa=c57!m5l7-9rK=pJf!U_ewO(b#ph)3(2VR%X6!Uibx5o zN(#s<(Jt`HFf|RfG}d=aEDz2JFba?43M~$;%q}R%k2G{~aSu*SuShE}54Ld5@F>i5 z^^Zu-)pidl%h%2fNQ^8;j{$Q(A5*_{1;26&XZ;GF?1-rJC`{ z|EcTAla`3-l!snFaiaL`p-Z2)-1512uk3`L{1txJrMgKfA9&)y@587FX|^bvx_c_FZMjCA!DX_~+sIZ|ct)Z&KWo zE&McX@2Vw#CN;SkXzA^FaMUrr&_E}9f_tUp2`71x^-upz*f4*B)1Fj|^0x;2xQeBE z_I|DqUD4wzd~+k?v8Ac<&N3+u>c`)S-4AJsI`~hR`^w4LD}IU;{SpvgQ0Vi{0zxkPC_=T~c2lo`sJ%9N%w*LS8Q0BmQ$@RDQ zJ!1FyUZ2sxR(Nr3Wm8!4<2ZrUds&xrX>M4&MYryMo?Eri>VKL2nWc*&#*4+GG|*sg>!3u&F5ObEx^&vY=RFNZ&cdB<@3y{< zO(~dcP9LJvdfd{Y5*}3R>gvIqMCnu~I6W{V#r*rAH&_tt&lRjGfcf76E{ zjAffwk6(`h7n|KdudX96TKz7V-ruq4(6zT$j}?gbDqLBeT+upnLPUJfn#BHZ(xz^Ty=Vx&`)h5qYwsadGsVYOA{Ti{ zJr(hdo)9%te*658WesszK^nOU{)qUvnNUJa#6TuYA7fqGhjbc5+wA$@I>+U!T~x?(we` zcY}k@HC?LBS;4dE5>xk$H|HF~POAKWS@EUx{(a%#syUU?aXFt{>H?=-<8`}g9X;tB zbB&Mrk<0GinVU^td|wmAKj~oLe1i{1=Poat*Z=AX_us{l~{Q z4>8o-$bNIf@75KyWP__Zix?K9hVnN5tSM%R!9u3=a%<@^7I^>OWWP*!J=DzLl@PMjctZ z!?35CL3>qZqr)XL-6c*M9~xw;CQ7Ybnb$piWxuIWtY+yvzm&ZXD=(kl@^aqidZR@W zTS7N2U-_MNX@&lV=x=N{bmxRhOQf3idCI0WsV$9r^qu3;wqU<`rj;DA&w_aaeGf|P z+ZWwaeLls|zICE##iqb|)5@RpeH>%y#h(R7RN zcHu|Njkd1seb14xJY(69l6&{g+dVp)e9Y`{FMIieoY-v|tb1mxd;KEnT?IGu%>|#k zq{3eDe2&t&_jDV#q~4B{{OgxC$p2lw{QH;d<=w`gJWp)&*l#&K<Hud@n2XkL*hsodh!Kk|Sr^llVZ;rPiK?|;h25UYlxsWc#T@-xX zu5g*1Q zv~#(EE&7{F*RVMx+4@SSF1s)N;(W{dr;BFEUNU7rQE*_B`^nUI5z*Z_%1(?MR=UqW zFR0x1FKESfd7bxug-^ntUY=BF{EV|JZmph@rTT_@bI!)?YI)W`jfpoqIzw9 z-C~W_On9m#b>GL)P4H0p)}XW3e@uU%xNuJCzEw-kKDz6DQYkg<=eMR~N7rOb+b4YI Mk3q0n?Z&&R05D>l?EnA( delta 2557 zcmX>razbQ+PJK{bNm-7Oeqlv~MRr()Q=p%@Q;=6izFVYcQI27Sr-i9esacenqqkW` zIajV_p|iVwvSoOIfuCD`L8?)ResNi9rMq*WqnD?DZh4SXniI;(ip|7V;fsa>Nu}5Iw z#E;_P`QfF0h6V1fS)Tf(`o=~@l~tLk6~!JUNrsu>c^P>@=B1f|hFSU{+F2G{Mmgze zQ2{yn7EZ1?+6CTuJ~>(L*`_J_rIBV4SykcAIof6h#YL5F-u{l0;~B-nog=DD^vk?U zDqI7SEej({bNw7cv$C_i{Ic9jeapR!3d_A5O;Vgf+}w(}Eb={56D^aCeGR-koy-Hg z3f;neLi|ddoT^;Hor03W(~~kow9CBoD=RD}pJf!UFUfGp%PmbWuFy~R3knL&ttziF zFY?N-a`F%G@-Gg^@o>&GGfFcxOpM6pN=nQsOEd{F@-fLW_weuv^sp!lF-h`r49qhu zt_aW$jY@GZ$g>Cv@-K))j{$Q(A5*_{1-J5YKf{7z&j=I0EcdA7Fpv6*bYF|m%94<% zj6@%|058X^h?25!mlADb11|HB)T)T^@`_U9U^DZa3Zrm?l%R}cKU0Iuuv}Mv!*Z{% zC?^l^G)se2M=o7mU4>NVaI*scq7(ze2#Y{ppQwroFT;uoKa0{LXFu1<$P8ESbf1dw zjAFlnY%Wi`D^o&4_0;S4=5Bg6bM4GY5==3bUq2sMl~o@7`yv0c)dzmcbx*SIUoCFU zoNTRk{Qlxyr3V62&UejwzC%vMUdOaJ>$YxUv1Bvr&9fGYCw&=hUMU}WWP9J`*c+e2 zCw~@QW?8d+gVV*Ei-VMz-Wi0Hzs!pL$x}Dq#y_I%*EQ+MO_K_|elavg(0T2i>x#$Ed!O{LJ(vFM(+A7zxqD1n_W0=jO!i2$+t2^;z^Tsy zTUjEtSF)buc1=-IjQXAYWy;L@ zn0DVOP`IjOr&_$1>eG~ zhyFX&e=TqRA^%{_J*oFmcXbwdd_HD=qv%?T=NzYijl1pFyp^i^lUTs)Ygbx6ZNk!$ z>cA<+QrtS9PzOB~~Ey`@?%vX1&U);+@kIqqw!^1aIjMcvC;|P3XR$Bt@eIC*5i{CGlMe z3*4~G;7h>Vx-xTk-5uV!!PD{mF#(y^kkZZn_foYPZ>*+mpY{QtY{r`=ilGOgQ2c zZ@iZ1roN{!2O1|Hsy|VFp8e=_%f{%7FL!SFqxjCR)rUt(?d!^UsY{z;gN|k}#hV>2 zej0f9%AMK_Pf$nRXrD>9Keg^D*unlL8AWGX5-$ zSu;B}qwLr2dko(U4tE)8>cuKaTP3PgipPq~WW2GjN54qkee-<9D^G9LFF$p_#^}d| z^Pa6{|C_TPtxRJ&_RIP1n-AJcb0^9d{rx^shu_(TPgh)N{X6cSFj=)}$}HQLWHm@x zJxtswE4-~N&UlG-W{>SH7xNsgpoxLpXQwR*I^n;or@*V{r%`=k)#3GxEjJWne|zd1 zU({JX>-BOoy_k~IQJvF{7;T*@8&hw5Xn7NBul1d>?0z*7DeY})Q>4G$zJ6HeQOdKE zfs8Y)PqUbGJw2;4XIb>2pHYvGP5ZR`%;ttCuQt#1R$Mtju}qBlGv|8t^Rc_+ir=@Z zZdnn&eL2rIqwu40R+=l$&EwotF!zpqfKp$E#J0W7?2#t?dgrV=&BA5PXN#5I-8LmN ztv+(XSyyGY37>>7ElFs5n&Ee7hizl*cg^Ue=nx?V^T3CTcI>$yqQLdBcln7$=YAw{ zq=x2xt8cLvpIjz2Xs51q}~z9_X_eZ|Aw zOJkfQv)wt$?(C2XzZu20Icg23q3+W8Y6`2G6jtr3Klyu8nPl6EtxGnXwm!RHyTcz7 z;lLjuY(4htirhVy2jp>;Y?Eu&zqD^fr--HRzKXlyJ7u@Kn@v$%)D$T=%jV^*DOOKJ z99OMv>2mv+*J|54CpUY#MXU|;r(?^HeA@5geSgtQX)&qrO2>{Re2WDpr0;nb{(7-& zmHC{zUBTt69wydL_%r*=s(n3IcQ6Wx#%8o7c;TkL_}6p8HLoR3ANgRhog;EuO7H*Y-CTT}k|YiHC7XEOY9KO0kQ% zCNZ~@_Rif|P%ARul(TZ4J=dEuRgUeCP8{s$`}?@Yg{L(88vlgLfwKLji3?Yo3(Qqd zo72|&(5zp|(>wG0iKG9f8wno&+Rgs{)@vW#oYSgam^SC_n`O_mHdRIG%JB;nN!KJ>zhJPef)CYGHjlbq?!>^=qx?O zgl{#~AEyX@TeeTvgzMjyo=*Keb5CCkeUY2X+$wE!rMmuaeB%Cx>KlAsJ~`9W6B{Ts z|2(60pC-??Hy0=E+%x%wcfNx~%(3#)8t2PTH=ms9-Z@dq_4@@DgCIbLj CJA0P^