xlab-gateway: route DNS via local mosdns at 10.0.0.1
Adds services.resolved with primary DNS 10.0.0.1 (network-local mosdns)
and Cloudflare as fallback. Removes the hardcoded DNS=166.111.8.28/29
on the wan99.0 link — those Tsinghua resolvers are subject to GFW
poisoning, and per-link DNS overrode the global resolved policy.

When 10.0.0.1 is reachable, this host inherits CN-aware split routing
and the network analytics-blocking policy. When 10.0.0.1 is down,
resolved transparently falls back to Cloudflare so internet keeps
working; queries return to 10.0.0.1 once it responds again.
1 parent dd38237 commit 587be467b3963fe242fe59c03ea9b7414e659883
@ldx ldx authored 2 days ago
Dixiao-L committed 2 days ago
Showing 1 changed file
View
hosts/xlab-gateway/networking.nix