fix: fix tailscale routing, etc.
This commit is contained in:
@@ -108,6 +108,7 @@ let
|
||||
firewall.extraCommands = ''
|
||||
iptables -I INPUT -s 10.255.241.0/24 -j ACCEPT
|
||||
iptables -I INPUT -s 10.255.243.0/24 -j ACCEPT
|
||||
iptables -I INPUT -s 100.64.0.0/24 -j ACCEPT
|
||||
'';
|
||||
};
|
||||
|
||||
@@ -143,7 +144,9 @@ let
|
||||
features.hpc.slurm = {
|
||||
enable = true;
|
||||
client = true;
|
||||
# clusterName = "ekman";
|
||||
mungeKey = ./munge.key;
|
||||
# jwtKey = ./jwt_hs256.key;
|
||||
mungeUid = mkDefault 996; # hack
|
||||
# pkey = "0x7666";
|
||||
controlMachine = "ekman-manage";
|
||||
|
||||
BIN
ekman/jwt_hs256.key
Normal file
BIN
ekman/jwt_hs256.key
Normal file
Binary file not shown.
@@ -26,7 +26,7 @@ in
|
||||
opt = false;
|
||||
work = true;
|
||||
data = true;
|
||||
backup = true;
|
||||
backup =false;
|
||||
ceph = true;
|
||||
};
|
||||
};
|
||||
@@ -338,7 +338,7 @@ in
|
||||
"--login-server=https://headscale.svc.oceanbox.io"
|
||||
"--accept-dns"
|
||||
"--advertise-exit-node"
|
||||
"--advertise-routes=10.255.241.241.0/24"
|
||||
"--advertise-routes=10.255.241.0/24"
|
||||
"--advertise-tags=tag:ekman"
|
||||
];
|
||||
};
|
||||
|
||||
@@ -325,6 +325,7 @@ in {
|
||||
"--login-server=https://headscale.svc.oceanbox.io"
|
||||
"--accept-dns=false"
|
||||
"--advertise-exit-node"
|
||||
"--advertise-routes=10.255.241.0/24"
|
||||
];
|
||||
};
|
||||
|
||||
|
||||
Reference in New Issue
Block a user