blob: 339f15b0a64d649335eb7c112ef04989946d4f4a (
plain) (
blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
|
{ config, ... }:
let
inetVlan = 722;
voipVlan = 1849;
wanInterface = "enp3s0";
nameServer = "1.0.0.1";
in
{
imports = [
./router.nix
./hurricane.nix
];
sops.secrets = {
"ppp/chap-secrets" = {};
"ppp/pap-secrets" = {};
"ppp/username" = {};
};
networking = let
voipVlanIface = "voip";
in {
vlans = {
wan = {
id = inetVlan;
interface = wanInterface;
};
${voipVlanIface} = {
id = voipVlan;
interface = wanInterface;
};
};
interfaces = {
${voipVlanIface}.useDHCP = true;
${wanInterface}.macAddress = "c4:54:44:d5:17:68";
};
dhcpcd.extraConfig = ''
interface ${voipVlanIface}
ipv4only
nogateway
'';
};
services = {
dnsmasq = {
enable = true;
settings = {
server = [ nameServer ];
bind-interfaces = true;
};
};
pppd = {
enable = true;
config = ''
plugin pppoe.so
debug
nic-wan
defaultroute
ipv6 ::1,
noauth
persist
lcp-echo-adaptive
lcp-echo-interval 1
lcp-echo-failure 5
'';
peers.bsnl = {
enable = true;
autostart = true;
configFile = config.sops.secrets."ppp/username".path;
};
secret = {
chap = config.sops.secrets."ppp/chap-secrets".path;
pap = config.sops.secrets."ppp/pap-secrets".path;
};
};
};
}
|