nixos-config/nixos/networking/unbound.nix

36 lines
807 B
Nix

{ config, ... }:
{
services.unbound = {
enable = true;
settings = {
server = {
qname-minimisation = "yes";
interface = "0.0.0.0";
access-control = [
"192.168.0.0/24 allow"
"10.101.0.0/24 allow"
];
local-zone = [
"\"pp.comfycamp.space\" static"
"\"vault.comfycamp.space\" static"
"\"deluge.comfycamp.space\" static"
];
local-data = [
"\"pp.comfycamp.space IN A 10.101.0.1\""
"\"vault.comfycamp.space IN A 10.101.0.1\""
"\"deluge.comfycamp.space IN A 10.101.0.1\""
];
};
forward-zone = [
{
name = ".";
forward-addr = [
"1.1.1.1"
"8.8.8.8"
];
}
];
};
};
}