catvayor
e8fde45fbf
All checks were successful
lint / check (push) Successful in 24s
build configuration / build_rescue01 (pull_request) Successful in 1m5s
build configuration / build_web02 (pull_request) Successful in 1m7s
build configuration / build_storage01 (pull_request) Successful in 1m9s
build configuration / build_vault01 (pull_request) Successful in 1m13s
build configuration / build_compute01 (pull_request) Successful in 1m16s
build configuration / build_web01 (pull_request) Successful in 1m34s
build configuration / build_rescue01 (push) Successful in 1m8s
build configuration / build_web02 (push) Successful in 1m9s
build configuration / build_vault01 (push) Successful in 1m10s
build configuration / build_storage01 (push) Successful in 1m11s
build configuration / build_compute01 (push) Successful in 1m18s
build configuration / build_web01 (push) Successful in 1m36s
102 lines
2.1 KiB
Nix
102 lines
2.1 KiB
Nix
let
|
|
vlanName = "vlan-uplink-cri";
|
|
vlanAdmin = "vlan-admin";
|
|
vlanAP = "vlan-admin-ap";
|
|
vlanAP-apro = "vlan-apro";
|
|
|
|
linkIp = "10.120.33.250";
|
|
linkPrefix = "30";
|
|
|
|
upstreamRouterIp = "10.120.33.249";
|
|
|
|
publicIp = "129.199.195.129"; # sync with meta
|
|
|
|
linkPrefixedIp = "${linkIp}/${linkPrefix}";
|
|
in
|
|
{
|
|
systemd.network = {
|
|
networks = {
|
|
"10-enp67s0f0np0" = {
|
|
name = "enp67s0f0np0";
|
|
networkConfig = {
|
|
VLAN = [
|
|
vlanName
|
|
vlanAdmin
|
|
vlanAP
|
|
vlanAP-apro
|
|
];
|
|
|
|
LinkLocalAddressing = false;
|
|
LLDP = false;
|
|
EmitLLDP = false;
|
|
IPv6AcceptRA = false;
|
|
IPv6SendRA = false;
|
|
};
|
|
};
|
|
"10-${vlanName}" = {
|
|
name = vlanName;
|
|
address = [ linkPrefixedIp ];
|
|
routes = [
|
|
{
|
|
routeConfig = {
|
|
PreferredSource = publicIp;
|
|
Gateway = upstreamRouterIp;
|
|
};
|
|
}
|
|
];
|
|
};
|
|
"10-${vlanAdmin}" = {
|
|
name = vlanAdmin;
|
|
address = [ "fd26:baf9:d250:8000::1/64" ];
|
|
};
|
|
"10-${vlanAP}" = {
|
|
name = vlanAP;
|
|
address = [ "fd26:baf9:d250:8010::1/60" ];
|
|
};
|
|
"10-${vlanAP-apro}" = {
|
|
name = vlanAP-apro;
|
|
address = [ "10.0.255.1/24" ];
|
|
networkConfig.DHCPServer = "yes";
|
|
};
|
|
};
|
|
netdevs = {
|
|
"10-${vlanName}" = {
|
|
netdevConfig = {
|
|
Name = vlanName;
|
|
Kind = "vlan";
|
|
};
|
|
vlanConfig = {
|
|
Id = 223;
|
|
};
|
|
};
|
|
"10-${vlanAdmin}" = {
|
|
netdevConfig = {
|
|
Name = vlanAdmin;
|
|
Kind = "vlan";
|
|
};
|
|
vlanConfig = {
|
|
Id = 3000;
|
|
};
|
|
};
|
|
"10-${vlanAP}" = {
|
|
netdevConfig = {
|
|
Name = vlanAP;
|
|
Kind = "vlan";
|
|
};
|
|
vlanConfig = {
|
|
Id = 3001;
|
|
};
|
|
};
|
|
"10-${vlanAP-apro}" = {
|
|
netdevConfig = {
|
|
Name = vlanAP-apro;
|
|
Kind = "vlan";
|
|
};
|
|
vlanConfig = {
|
|
Id = 2000;
|
|
};
|
|
};
|
|
};
|
|
};
|
|
networking.firewall.allowedUDPPorts = [ 67 ];
|
|
}
|