dnscrypt-proxy service: use mkEnableOption

This commit is contained in:
Joachim Fasting 2015-03-23 20:44:55 +01:00
parent 2e8bc2bd5c
commit 8131065b63

View File

@ -17,17 +17,13 @@ in
{ {
options = { options = {
services.dnscrypt-proxy = { services.dnscrypt-proxy = {
enable = mkOption { enable = mkEnableOption ''
default = false;
type = types.bool;
description = ''
Enable dnscrypt-proxy. The proxy relays regular DNS queries to a Enable dnscrypt-proxy. The proxy relays regular DNS queries to a
DNSCrypt enabled upstream resolver. The traffic between the DNSCrypt enabled upstream resolver. The traffic between the
client and the upstream resolver is encrypted and authenticated, client and the upstream resolver is encrypted and authenticated,
which may mitigate the risk of MITM attacks and third-party which may mitigate the risk of MITM attacks and third-party
snooping (assuming the upstream is trustworthy). snooping (assuming the upstream is trustworthy).
''; '';
};
localAddress = mkOption { localAddress = mkOption {
default = "127.0.0.1"; default = "127.0.0.1";
type = types.string; type = types.string;