tailscale security

This commit is contained in:
Danilo Reyes 2025-11-01 17:19:44 -06:00
parent 4abb664cfe
commit 78afe09dcb

View File

@ -32,21 +32,19 @@ in
"nixminiserver" "nixminiserver"
]; ];
}; };
home-manager.users.jawz = { home-manager.users.jawz.programs = {
programs = { vscode = {
vscode = { enable = true;
enable = true; package = pkgs.code-cursor;
package = pkgs.code-cursor; };
}; ghostty = {
ghostty = { enable = true;
enable = true; package = pkgs.ghostty;
package = pkgs.ghostty; enableBashIntegration = shellType == "bash";
enableBashIntegration = shellType == "bash"; enableZshIntegration = shellType == "zsh";
enableZshIntegration = shellType == "zsh"; installBatSyntax = true;
installBatSyntax = true; installVimSyntax = true;
installVimSyntax = true; settings.term = "xterm-256color";
settings.term = "xterm-256color";
};
}; };
}; };
networking = { networking = {
@ -128,7 +126,14 @@ in
services = { services = {
flatpak.enable = true; flatpak.enable = true;
open-webui.enable = true; open-webui.enable = true;
tailscale.enable = true; tailscale = {
enable = true;
useRoutingFeatures = "client";
extraUpFlags = [
"--accept-routes"
"--shields-up"
];
};
scx = { scx = {
enable = true; enable = true;
scheduler = "scx_lavd"; scheduler = "scx_lavd";
@ -146,11 +151,5 @@ in
acceleration = "cuda"; acceleration = "cuda";
models = "/srv/ai/ollama"; models = "/srv/ai/ollama";
}; };
sunshine = {
enable = true;
autoStart = false;
capSysAdmin = true;
openFirewall = true;
};
}; };
} }