7 ../../nixos/profiles/tor.nix
13 role = "private-bridge";
14 onionServices."radicle/1" = {
35 VirtualAddrNetwork = "10.192.0.0/10";
36 AutomapHostsOnResolve = true;
37 HashedControlPassword = lib.readFile tor/HashedControlPassword.clear;
38 # https://metrics.torproject.org/rs.html#search/flag:exit%20country:be%20running:true
39 # https://nusenu.github.io/OrNetStats/w/relay/58B81035FC28AACA8F0E85E46C8EBAD7FCFA8404.html
41 "*.gcp.cloud.es.io *.gcp.cloud.es.io.58B81035FC28AACA8F0E85E46C8EBAD7FCFA8404.exit"
42 "*.redbee.live *.redbee.live.58B81035FC28AACA8F0E85E46C8EBAD7FCFA8404.exit"
43 "*.rtbf.be *.rtbf.be.58B81035FC28AACA8F0E85E46C8EBAD7FCFA8404.exit"
50 networking.networkmanager = {
57 systemd.services.systemd-networkd.environment.SYSTEMD_LOG_LEVEL = "debug";
58 systemd.network.enable = true;
59 systemd.network.wait-online.enable = false;
60 systemd.network.netdevs = {
63 Name = "out-${torjail}";
67 Name = "in-${torjail}";
72 networking.nftables.rulesets = lib.mkAfter '''';