diff --git a/modules/kubernetes/wireguard/extra/clients.conf b/modules/kubernetes/wireguard/extra/clients.conf index 0081738d..3fd014dd 100644 --- a/modules/kubernetes/wireguard/extra/clients.conf +++ b/modules/kubernetes/wireguard/extra/clients.conf @@ -1,20 +1,4 @@ -#[Peer] -# friendly_name = ellieIphone -#PublicKey = vqM6xQm6pcKu4LTPconOPE4jgqyq4Z3JRcSj6PYYyh8= -#AllowedIPs = 10.3.3.12/32 - -#[Peer] -# friendly_name = Elena -#PublicKey = D1b0LRZZixhv9nL7racEVuRRYWcscNGbT8y5gFxY8F0= -#AllowedIPs = 10.3.3.12/32 - [Peer] # friendly_name = anca PublicKey = fr4DB6FHhxYyzrtnoNbhdT8Fqwvsz7QkhTnZpSQmBCY= -AllowedIPs = 10.3.3.13/32 - -[Peer] -# friendly_name = atanunq -PublicKey = WsvC6GO634AOcoA1jqtxF3pz5cmxmkz7RGkX140PBTI= -AllowedIPs = 10.3.3.15/32 - +AllowedIPs = 10.3.3.13/32 \ No newline at end of file diff --git a/modules/kubernetes/wireguard/main.tf b/modules/kubernetes/wireguard/main.tf index c5c514a1..eecf6204 100644 --- a/modules/kubernetes/wireguard/main.tf +++ b/modules/kubernetes/wireguard/main.tf @@ -85,6 +85,15 @@ resource "kubernetes_deployment" "wireguard" { } } spec { + init_container { + name = "sysctl-setup" + image = "busybox" + command = ["/bin/sh", "-c", "echo 1 > /proc/sys/net/ipv4/ip_forward"] + + security_context { + privileged = true + } + } container { image = "sclevine/wg:latest" name = "wireguard" diff --git a/terraform.tfstate b/terraform.tfstate index c55ae393..4003f3d6 100644 Binary files a/terraform.tfstate and b/terraform.tfstate differ diff --git a/terraform.tfvars b/terraform.tfvars index 8dfb8166..e22cb0e3 100644 Binary files a/terraform.tfvars and b/terraform.tfvars differ