nixos-config/machines/valkyrie/blocky/default.nix

60 lines
1.4 KiB
Nix
Raw Normal View History

{
services = {
blocky = {
enable = true;
settings = {
ports = {
dns = 53;
http = 4000;
};
upstreams = {
groups = {
default = [ "127.0.0.1:5455" ];
"100.64.0.0/10" = [ "127.0.0.1:5454" ];
2024-05-08 18:11:17 +02:00
"fd7a:115c:a1e0::/96" = [ "127.0.0.1:5454" ];
2024-06-04 11:01:45 +02:00
"fd7a:115c:a1e0:ab12::/64" = [ "127.0.0.1:5454" ];
};
};
blocking = {
2024-03-16 22:46:09 +01:00
blackLists = {
ads = [
"https://big.oisd.nl/domainswild"
2024-07-03 14:27:25 +02:00
"https://adguardteam.github.io/HostlistsRegistry/assets/filter_2.txt" # AdAway
"https://adguardteam.github.io/HostlistsRegistry/assets/filter_8.txt" # browser-based crypto miners
"https://raw.githubusercontent.com/StevenBlack/hosts/master/alternates/fakenews/hosts"
2024-07-05 19:29:38 +02:00
./extra-deny.txt
];
};
clientGroupsBlock = {
default = [ "ads" ];
};
};
2024-06-04 10:42:06 +02:00
caching = {
maxTime = -1;
};
customDNS = {
mapping = {
2024-03-22 09:56:16 +01:00
# Horus
"vaultserver.horus.nu" = "192.168.4.32";
"downloads.horus.nu" = "192.168.4.129";
};
};
prometheus = {
enable = true;
};
queryLog = {
type = "csv";
target = "/var/lib/blocky/querylog";
logRetentionDays = 7;
};
};
};
};
}