fix(orion): properly configure systemd-resolved
This commit is contained in:
parent
96f35ee16c
commit
1588ab30f5
@ -19,7 +19,12 @@ let
|
|||||||
"194.242.2.2#dns.mullvad.net"
|
"194.242.2.2#dns.mullvad.net"
|
||||||
"2a07:e340::2:853#dns.mullvad.net"
|
"2a07:e340::2:853#dns.mullvad.net"
|
||||||
];
|
];
|
||||||
resolved_fallback_nameservers = [ "1.1.1.1#one.one.one.one" "1.0.0.1#one.one.one.one" ];
|
resolved_fallback_nameservers = [
|
||||||
|
"1.1.1.1#cloudflare-dns.com"
|
||||||
|
"1.0.0.1#cloudflare-dns.com"
|
||||||
|
"2606:4700:4700::1111#cloudflare-dns.com"
|
||||||
|
"2606:4700:4700::1001#cloudflare-dns.com"
|
||||||
|
];
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
systemd.network = {
|
systemd.network = {
|
||||||
@ -67,15 +72,16 @@ in
|
|||||||
|
|
||||||
services.resolved = {
|
services.resolved = {
|
||||||
enable = true;
|
enable = true;
|
||||||
dnssec = "true";
|
dnssec = "allow-downgrade";
|
||||||
domains = [ "~." ];
|
domains = resolved_nameservers;
|
||||||
fallbackDns = resolved_fallback_nameservers;
|
fallbackDns = resolved_fallback_nameservers;
|
||||||
llmnr = "true";
|
llmnr = "resolve";
|
||||||
extraConfig = ''
|
extraConfig = ''
|
||||||
MulticastDNS=yes
|
MulticastDNS=yes
|
||||||
DNSOverTLS=yes
|
DNSOverTLS=yes
|
||||||
CacheFromLocalhost=no
|
CacheFromLocalhost=no
|
||||||
Cache=yes
|
Cache=yes
|
||||||
|
Domains=~.
|
||||||
'';
|
'';
|
||||||
};
|
};
|
||||||
networking = {
|
networking = {
|
||||||
|
Loading…
Reference in New Issue
Block a user