!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

913 Members
Declaratively manage your switching, routing, wireless, tunneling and more.265 Servers

Load older messages


SenderMessageTime
18 Dec 2025
@magic_rb:matrix.redalder.orgmagic_rbEyyy .cz spotted10:07:54
@magic_rb:matrix.redalder.orgmagic_rbIll write my own simple thing one of these days. Which will just drive kernel space wg. Youll be the first ill ask for feedback10:08:27
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)unfortunately C, but i'll look into it10:23:51
@acidbong:envs.netAcid Bong
In reply to @k900:0upti.me
And I thought Tailscale was bad
eli5 how bad is it?
12:52:43
@k900:0upti.meK900Mostly just not a lot of options for DNS12:53:03
@aktaboot:tchncs.deaktaboothmm, i can't see this image, matrix hs issues again? :(12:53:17
@aktaboot:tchncs.deaktabootnvm, seems like a client issue12:55:04
@acidbong:envs.netAcid Bong
In reply to @k900:0upti.me
Mostly just not a lot of options for DNS
as in using the homeserver as DNS server via VPN?
12:57:12
@k900:0upti.meK900No, as in customizing how the integrated DNS server in the client behaves12:57:59
@adam:robins.wtfadamcstephensfor simple zone based routing over vpn, resolved kinda works13:23:05
19 Dec 2025
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)is it just me or is caddy's server side ALPN broken?07:24:14
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)https://caddyserver.com/docs/caddyfile/directives/tls#alpn nvm you have to manually set ALPN it seems07:30:07
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)* https://caddyserver.com/docs/caddyfile/directives/tls#alpn nvm you have to manually set ALPN it seems (small edit here to clarify: i thought you could use ALPN for a faster switch to http3 but thats not possible it seems)08:01:37
@kraftnix:kraftnix.devkraftnix

specifically for .local i would not recommend using that domain name/tld since it conflicts with mDNS and you get differing and strange behaviours across different platforms and it can be hard to debug issues.

as k900 mentioned, id use a tld under arpa or your own custom ending can work too, if you are already using resolved, you can indicate all domains under .mywhatevertld to go to a specific dns server using Domains=~mywhatevertld in the networkd unit

08:25:47
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe).local was an example, but thx for the info08:29:18
@emilazy:matrix.orgemily use .internal 08:36:47
@emilazy:matrix.orgemilyit is reserved by ICANN unlike every other such name08:37:00
@emilazy:matrix.orgemily (.home.arpa is probably fine too since it's RFC-reserved, though it's uglier) 08:38:18
@emilazy:matrix.orgemily * (.home.arpa is probably fine too since it's RFC-reserved, though it's uglier) 08:38:36
@nrbray:matrix.orgNigelSorry, trying to follow and learn, is WG wireguard?12:28:42
@magic_rb:matrix.redalder.orgmagic_rbYe12:29:46
@frederic:scs.ems.hostFrédéric Christ (back on 02.01.) changed their display name from Frédéric Christ to Frédéric Christ (back on 02.01.).15:15:40
@gradientvera:matrix.orgVera Gradientfor some reason podman isn't setting its own route_localnet to 1 anymore for me, has anyone ran into this? for now I've fixed it by setting it manually on my sysctl config but I'm certain this should be set automatically in the first place16:52:32
22 Dec 2025
@autiboy:matrix.mautiweb.netAutiboyWhat version of nixos?01:59:31
@woobilicious:matrix.orgwoobiliciousAnyone here run a custom sinkhole (i.e. pi-hole) setup for bind9 or similar? Not a fan of pi-hole since it's just a fork of dnsmasq, with all its limitations, and I wanted to setup encrypted dns stuff06:19:55
@magic_rb:matrix.redalder.orgmagic_rbI do bind9 on top of dnscrypt-proxy209:06:01
@cinerealkiara:matrix.org@cinerealkiara:matrix.org left the room.11:08:09
@acidbong:envs.netAcid Bongwhen NetworkManager uses Resolved or Dnsmasq as a backend, do they run continuously or only update resolv.conf when called?16:05:10
@k900:0upti.meK900They are resolvers16:05:59
@k900:0upti.meK900They don't manage resolv.conf because resolv.conf is not sufficient to express the logic they implement16:06:10

Show newer messages


Back to Room ListRoom Version: 6