2023-08-27 09:35:56 +00:00
|
|
|
---
|
2024-02-04 20:22:20 +00:00
|
|
|
|
2024-02-13 19:24:42 +00:00
|
|
|
ansible_host: merlin-dev.lan.ducamps.dev
|
2024-02-04 20:22:20 +00:00
|
|
|
default_interface: eth0
|
|
|
|
vault_iface: "{{ default_interface}}"
|
2023-08-27 09:35:56 +00:00
|
|
|
wireguard_address: "10.0.1.4/24"
|
|
|
|
wireguard_endpoint: "{{ ansible_default_ipv4.address }}"
|
|
|
|
wireguard_persistent_keepalive: "30"
|
|
|
|
|
|
|
|
wireguard_postup:
|
|
|
|
- iptables -A FORWARD -o %i -j ACCEPT
|
|
|
|
- iptables -A FORWARD -i %i -j ACCEPT
|
2024-02-04 20:22:20 +00:00
|
|
|
- iptables -t nat -A POSTROUTING -o {{ default_interface }} -j MASQUERADE
|
2023-08-27 09:35:56 +00:00
|
|
|
|
|
|
|
wireguard_postdown:
|
|
|
|
- iptables -D FORWARD -i %i -j ACCEPT
|
|
|
|
- iptables -D FORWARD -o %i -j ACCEPT
|
2024-02-04 20:22:20 +00:00
|
|
|
- iptables -t nat -D POSTROUTING -o {{ default_interface }} -j MASQUERADE
|
2023-08-27 09:35:56 +00:00
|
|
|
|
|
|
|
wireguard_unmanaged_peers:
|
|
|
|
phone:
|
|
|
|
public_key: ioG35kDFTtip+Acfq+je9qDHYbZij+J6+Pg3T6Z4N0w=
|
|
|
|
allowed_ips: 10.0.1.3/32
|
|
|
|
persistent_keepalive: 0
|
|
|
|
zen:
|
|
|
|
public_key: rYYljQw8InmM95pxCP9KyZ8R+kcicgnjr6E9qtkI1Ag=
|
|
|
|
allowed_ips: 10.0.1.5/32
|
|
|
|
persistent_keepalive: 0
|
|
|
|
consul_client_addr: "127.0.0.1 10.0.1.4"
|
|
|
|
consul_bind_address: "10.0.1.4"
|
|
|
|
consul_ui: True
|
|
|
|
consul_iface: "wg0"
|
|
|
|
nomad_bind_addr: "10.0.1.4"
|
|
|
|
nomad_host_networks:
|
|
|
|
- name: "private"
|
|
|
|
interface: wg0
|
|
|
|
- name: "public"
|
|
|
|
interface: eth0
|
|
|
|
- name: "default"
|
|
|
|
interface: wg0
|
|
|
|
vault_listener_address: 10.0.1.4
|