diff options
author | Gregor Kleen <gkleen@yggdrasil.li> | 2022-02-01 13:00:41 +0100 |
---|---|---|
committer | Gregor Kleen <gkleen@yggdrasil.li> | 2022-02-01 13:00:41 +0100 |
commit | f44f4bc6cf220980bceda35a6b7a78b7340868ea (patch) | |
tree | 22b649d28261fc0c8ee58a2076e07abd924dc721 | |
parent | cf89b3c9a4f57210acecb23d06cd33f827503cfe (diff) | |
download | nixos-f44f4bc6cf220980bceda35a6b7a78b7340868ea.tar nixos-f44f4bc6cf220980bceda35a6b7a78b7340868ea.tar.gz nixos-f44f4bc6cf220980bceda35a6b7a78b7340868ea.tar.bz2 nixos-f44f4bc6cf220980bceda35a6b7a78b7340868ea.tar.xz nixos-f44f4bc6cf220980bceda35a6b7a78b7340868ea.zip |
...
-rw-r--r-- | hosts/surtr/http.nix | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/hosts/surtr/http.nix b/hosts/surtr/http.nix index cfd99b53..fb22492f 100644 --- a/hosts/surtr/http.nix +++ b/hosts/surtr/http.nix | |||
@@ -32,6 +32,7 @@ | |||
32 | forceSSL = true; | 32 | forceSSL = true; |
33 | sslCertificate = "/run/credentials/nginx.service/webdav.141.li.pem"; | 33 | sslCertificate = "/run/credentials/nginx.service/webdav.141.li.pem"; |
34 | sslCertificateKey = "/run/credentials/nginx.service/webdav.141.li.key.pem"; | 34 | sslCertificateKey = "/run/credentials/nginx.service/webdav.141.li.key.pem"; |
35 | sslTrustedCertificate = "/run/credentials/nginx.service/webdav.141.li.chain.pem"; | ||
35 | locations."/".extraConfig = '' | 36 | locations."/".extraConfig = '' |
36 | root /srv/files/$remote_user; | 37 | root /srv/files/$remote_user; |
37 | 38 | ||
@@ -69,6 +70,7 @@ | |||
69 | LoadCredential = [ | 70 | LoadCredential = [ |
70 | "webdav.141.li.key.pem:${config.security.acme.certs."webdav.141.li".directory}/key.pem" | 71 | "webdav.141.li.key.pem:${config.security.acme.certs."webdav.141.li".directory}/key.pem" |
71 | "webdav.141.li.pem:${config.security.acme.certs."webdav.141.li".directory}/fullchain.pem" | 72 | "webdav.141.li.pem:${config.security.acme.certs."webdav.141.li".directory}/fullchain.pem" |
73 | "webdav.141.li.chain.pem:${config.security.acme.certs."webdav.141.li".directory}/chain.pem" | ||
72 | ]; | 74 | ]; |
73 | RuntimeDirectory = lib.mkForce [ "nginx" "nginx-client-bodies" ]; | 75 | RuntimeDirectory = lib.mkForce [ "nginx" "nginx-client-bodies" ]; |
74 | RuntimeDirectoryMode = "0750"; | 76 | RuntimeDirectoryMode = "0750"; |