summaryrefslogtreecommitdiff
path: root/hosts/surtr/matrix/default.nix
diff options
context:
space:
mode:
authorGregor Kleen <gkleen@yggdrasil.li>2022-02-26 16:15:54 +0100
committerGregor Kleen <gkleen@yggdrasil.li>2022-02-26 16:15:54 +0100
commit05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1 (patch)
tree6e50c519aba901546e041f6d605f5fd99aa98c35 /hosts/surtr/matrix/default.nix
parentd8d4c7c9f19002c7ce98e2d216125f687bfc3772 (diff)
downloadnixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar
nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar.gz
nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar.bz2
nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar.xz
nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.zip
surtr: matrix: zerossl-cert for coturn
Diffstat (limited to 'hosts/surtr/matrix/default.nix')
-rw-r--r--hosts/surtr/matrix/default.nix3
1 files changed, 2 insertions, 1 deletions
diff --git a/hosts/surtr/matrix/default.nix b/hosts/surtr/matrix/default.nix
index 1e923410..ce8a0831 100644
--- a/hosts/surtr/matrix/default.nix
+++ b/hosts/surtr/matrix/default.nix
@@ -31,7 +31,7 @@
31 tls_private_key_path = "/run/credentials/matrix-synapse.service/synapse.li.key.pem"; 31 tls_private_key_path = "/run/credentials/matrix-synapse.service/synapse.li.key.pem";
32 tls_dh_params_path = config.security.dhparams.params.matrix-synapse.path; 32 tls_dh_params_path = config.security.dhparams.params.matrix-synapse.path;
33 33
34 turn_uris = ["turn:turn.synapse.li?transport=udp" "turn:turn.synapse.li?transport=tcp"]; 34 turn_uris = ["turns:turn.synapse.li?transport=udp" "turns:turn.synapse.li?transport=tcp"];
35 turn_user_lifetime = "1h"; 35 turn_user_lifetime = "1h";
36 36
37 extraConfigFiles = [ 37 extraConfigFiles = [
@@ -155,6 +155,7 @@
155 "turn.synapse.li" = { 155 "turn.synapse.li" = {
156 zone = "synapse.li"; 156 zone = "synapse.li";
157 certCfg = { 157 certCfg = {
158 server = "https://acme.zerossl.com/v2/DV90";
158 postRun = '' 159 postRun = ''
159 ${pkgs.systemd}/bin/systemctl try-restart coturn.service 160 ${pkgs.systemd}/bin/systemctl try-restart coturn.service
160 ''; 161 '';