system: services: Update Mullvad VPN Servers.

This commit is contained in:
Raghav Gururajan 2023-07-15 12:17:02 -04:00
parent d9f5933e01
commit 29c6b5e0bc
Signed by: raghavgururajan
GPG Key ID: 5F5816647F8BE551
1 changed files with 6 additions and 66 deletions

View File

@ -16,6 +16,7 @@
glib
gnome
gstreamer
hunspell
kde-frameworks
linux
lisp
@ -101,11 +102,10 @@
(dependencies mapped-devices)))
%base-file-systems))
(swap-devices
(append
(list
(swap-space
(target "/dev/mapper/secondary-swap")
(dependencies mapped-devices)))))
(list
(swap-space
(target "/dev/mapper/secondary-swap")
(dependencies mapped-devices))))
(users
(append
(list
@ -227,75 +227,15 @@
(service wireguard-service-type
(wireguard-configuration
(interface "mullvad")
(addresses '("10.64.85.137/32" "fc00:bbbb:bbbb:bb01::1:5588/128"))
(addresses '("10.64.72.77/32" "fc00:bbbb:bbbb:bb01::1:484c/128"))
(dns '("10.64.0.1"))
(peers
(list
(wireguard-peer
(name "se-sto-wg-001")
(endpoint "185.195.233.76:51820")
(public-key "MkP/Jytkg51/Y/EostONjIN6YaFRpsAYiNKMX27/CAY=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-002")
(endpoint "185.65.135.67:51820")
(public-key "q2ZZPfumPaRVl4DJfzNdQF/GHfe6BYAzQ2GZZHb6rmI=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-003")
(endpoint "185.65.135.68:51820")
(public-key "qZbwfoY4LHhDPzUROFbG+LqOjB0+Odwjg/Nv3kGolWc=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-004")
(endpoint "185.65.135.69:51820")
(public-key "94qIvXgF0OXZ4IcquoS7AO57OV6JswUFgdONgGiq+jo=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-005")
(endpoint "185.65.135.72:51820")
(public-key "5rVa0M13oMNobMY7ToAMU1L/Mox7AYACvV+nfsE7zF0=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-006")
(endpoint "185.65.135.73:51820")
(public-key "5WNG/KKCtgF4+49e/4iqvHVY/i+6dzUmVKXcJj7zi3I=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-007")
(endpoint "185.65.135.70:51820")
(public-key "YD4k8xaiw2kcRhfLRf2UiRNcDmvvu5NV0xT4d5xOFzU=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-008")
(endpoint "185.65.135.71:51820")
(public-key "4nOXEaCDYBV//nsVXk7MrnHpxLV9MbGjt+IGQY//p3k=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-009")
(endpoint "185.195.233.69:51820")
(public-key "t1XlQD7rER0JUPrmh3R5IpxjUP9YOqodJAwfRorNxl4=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-010")
(endpoint "185.195.233.70:51820")
(public-key "zWh5JzqxNhaJ7tMFDRkj9etq6rqRZrUhv156lG6H+Vc=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))
(wireguard-peer
(name "se-sto-wg-011")
(endpoint "185.195.233.71:51820")
(public-key "GqKpm8VwKJQLQEQ0PXbkRueY9hDqiMibr+EpW3n9syk=")
(allowed-ips '("0.0.0.0/0" "::0/0"))
(keep-alive "25"))))
(post-up '("iptables -I OUTPUT ! -o %i -m mark ! --mark $(wg show %i fwmark) -m addrtype ! --dst-type LOCAL -j REJECT && ip6tables -I OUTPUT ! -o %i -m mark ! --mark $(wg show %i fwmark) -m addrtype ! --dst-type LOCAL -j REJECT"))
(pre-down '("iptables -D OUTPUT ! -o %i -m mark ! --mark $(wg show %i fwmark) -m addrtype ! --dst-type LOCAL -j REJECT && ip6tables -D OUTPUT ! -o %i -m mark ! --mark $(wg show %i fwmark) -m addrtype ! --dst-type LOCAL -j REJECT"))))