diff options
author | Gregor Kleen <gkleen@yggdrasil.li> | 2022-02-26 16:15:54 +0100 |
---|---|---|
committer | Gregor Kleen <gkleen@yggdrasil.li> | 2022-02-26 16:15:54 +0100 |
commit | 05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1 (patch) | |
tree | 6e50c519aba901546e041f6d605f5fd99aa98c35 /hosts/surtr/matrix/default.nix | |
parent | d8d4c7c9f19002c7ce98e2d216125f687bfc3772 (diff) | |
download | nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar.gz nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar.bz2 nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.tar.xz nixos-05809c0a2ef4dc4f94d59163cbbd52fd1de7a7a1.zip |
surtr: matrix: zerossl-cert for coturn
Diffstat (limited to 'hosts/surtr/matrix/default.nix')
-rw-r--r-- | hosts/surtr/matrix/default.nix | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/hosts/surtr/matrix/default.nix b/hosts/surtr/matrix/default.nix index 1e923410..ce8a0831 100644 --- a/hosts/surtr/matrix/default.nix +++ b/hosts/surtr/matrix/default.nix | |||
@@ -31,7 +31,7 @@ | |||
31 | tls_private_key_path = "/run/credentials/matrix-synapse.service/synapse.li.key.pem"; | 31 | tls_private_key_path = "/run/credentials/matrix-synapse.service/synapse.li.key.pem"; |
32 | tls_dh_params_path = config.security.dhparams.params.matrix-synapse.path; | 32 | tls_dh_params_path = config.security.dhparams.params.matrix-synapse.path; |
33 | 33 | ||
34 | turn_uris = ["turn:turn.synapse.li?transport=udp" "turn:turn.synapse.li?transport=tcp"]; | 34 | turn_uris = ["turns:turn.synapse.li?transport=udp" "turns:turn.synapse.li?transport=tcp"]; |
35 | turn_user_lifetime = "1h"; | 35 | turn_user_lifetime = "1h"; |
36 | 36 | ||
37 | extraConfigFiles = [ | 37 | extraConfigFiles = [ |
@@ -155,6 +155,7 @@ | |||
155 | "turn.synapse.li" = { | 155 | "turn.synapse.li" = { |
156 | zone = "synapse.li"; | 156 | zone = "synapse.li"; |
157 | certCfg = { | 157 | certCfg = { |
158 | server = "https://acme.zerossl.com/v2/DV90"; | ||
158 | postRun = '' | 159 | postRun = '' |
159 | ${pkgs.systemd}/bin/systemctl try-restart coturn.service | 160 | ${pkgs.systemd}/bin/systemctl try-restart coturn.service |
160 | ''; | 161 | ''; |