fakeroute: add service
This commit is contained in:
parent
d753527bd4
commit
7eb9a03221
@ -354,6 +354,7 @@
|
|||||||
./services/networking/dnsmasq.nix
|
./services/networking/dnsmasq.nix
|
||||||
./services/networking/ejabberd.nix
|
./services/networking/ejabberd.nix
|
||||||
./services/networking/fan.nix
|
./services/networking/fan.nix
|
||||||
|
./services/networking/fakeroute.nix
|
||||||
./services/networking/ferm.nix
|
./services/networking/ferm.nix
|
||||||
./services/networking/firefox/sync-server.nix
|
./services/networking/firefox/sync-server.nix
|
||||||
./services/networking/firewall.nix
|
./services/networking/firewall.nix
|
||||||
|
63
nixos/modules/services/networking/fakeroute.nix
Normal file
63
nixos/modules/services/networking/fakeroute.nix
Normal file
@ -0,0 +1,63 @@
|
|||||||
|
{ config, lib, pkgs, ... }:
|
||||||
|
|
||||||
|
with lib;
|
||||||
|
|
||||||
|
let
|
||||||
|
cfg = config.services.fakeroute;
|
||||||
|
routeConf = pkgs.writeText "route.conf" (concatStringsSep "\n" cfg.route);
|
||||||
|
|
||||||
|
in
|
||||||
|
|
||||||
|
{
|
||||||
|
|
||||||
|
###### interface
|
||||||
|
|
||||||
|
options = {
|
||||||
|
|
||||||
|
services.fakeroute = {
|
||||||
|
|
||||||
|
enable = mkOption {
|
||||||
|
type = types.bool;
|
||||||
|
default = false;
|
||||||
|
description = ''
|
||||||
|
Whether to enable the fakeroute service.
|
||||||
|
'';
|
||||||
|
};
|
||||||
|
|
||||||
|
route = mkOption {
|
||||||
|
type = types.listOf types.str;
|
||||||
|
default = [];
|
||||||
|
example = [
|
||||||
|
"216.102.187.130"
|
||||||
|
"4.0.1.122"
|
||||||
|
"198.116.142.34"
|
||||||
|
"63.199.8.242"
|
||||||
|
];
|
||||||
|
description = ''
|
||||||
|
Fake route that will appear after the real
|
||||||
|
one to any host running a traceroute.
|
||||||
|
'';
|
||||||
|
};
|
||||||
|
|
||||||
|
};
|
||||||
|
|
||||||
|
};
|
||||||
|
|
||||||
|
|
||||||
|
###### implementation
|
||||||
|
|
||||||
|
config = mkIf cfg.enable {
|
||||||
|
systemd.services.fakeroute = {
|
||||||
|
description = "Fakeroute Daemon";
|
||||||
|
after = [ "network.target" ];
|
||||||
|
wantedBy = [ "multi-user.target" ];
|
||||||
|
serviceConfig = {
|
||||||
|
Type = "forking";
|
||||||
|
User = "root";
|
||||||
|
ExecStart = "${pkgs.fakeroute}/bin/fakeroute -f ${routeConf}";
|
||||||
|
};
|
||||||
|
};
|
||||||
|
|
||||||
|
};
|
||||||
|
|
||||||
|
}
|
Loading…
x
Reference in New Issue
Block a user