summaryrefslogtreecommitdiff
path: root/hosts/surtr/matrix
diff options
context:
space:
mode:
authorGregor Kleen <gkleen@yggdrasil.li>2023-01-31 13:31:37 +0100
committerGregor Kleen <gkleen@yggdrasil.li>2023-01-31 13:31:37 +0100
commit60adb4c9388816d8b8eb17b2e844de8d1e0dc081 (patch)
tree2d40a05364ea1d3edd0b9cd7748a0683fa20a477 /hosts/surtr/matrix
parent41be54745e76d6b14221157d1e4474e980e2e70a (diff)
downloadnixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar
nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar.gz
nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar.bz2
nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar.xz
nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.zip
Revert "Revert "...""
This reverts commit 1e82933a01dcc3810d635567dbef0de286c1e8f2.
Diffstat (limited to 'hosts/surtr/matrix')
-rw-r--r--hosts/surtr/matrix/default.nix4
1 files changed, 4 insertions, 0 deletions
diff --git a/hosts/surtr/matrix/default.nix b/hosts/surtr/matrix/default.nix
index e4f23703..1772199b 100644
--- a/hosts/surtr/matrix/default.nix
+++ b/hosts/surtr/matrix/default.nix
@@ -151,6 +151,8 @@ with lib;
151 sslCertificate = "/run/credentials/nginx.service/synapse.li.pem"; 151 sslCertificate = "/run/credentials/nginx.service/synapse.li.pem";
152 sslCertificateKey = "/run/credentials/nginx.service/synapse.li.key.pem"; 152 sslCertificateKey = "/run/credentials/nginx.service/synapse.li.key.pem";
153 sslTrustedCertificate = "/run/credentials/nginx.service/synapse.li.chain.pem"; 153 sslTrustedCertificate = "/run/credentials/nginx.service/synapse.li.chain.pem";
154 kTLS = true;
155 http3 = true;
154 listen = [ 156 listen = [
155 { addr = "0.0.0.0"; port = 80; ssl = false; } 157 { addr = "0.0.0.0"; port = 80; ssl = false; }
156 { addr = "[::0]"; port = 80; ssl = false; } 158 { addr = "[::0]"; port = 80; ssl = false; }
@@ -201,6 +203,8 @@ with lib;
201 203
202 virtualHosts."element.synapse.li" = { 204 virtualHosts."element.synapse.li" = {
203 forceSSL = true; 205 forceSSL = true;
206 kTLS = true;
207 http3 = true;
204 sslCertificate = "/run/credentials/nginx.service/element.synapse.li.pem"; 208 sslCertificate = "/run/credentials/nginx.service/element.synapse.li.pem";
205 sslCertificateKey = "/run/credentials/nginx.service/element.synapse.li.key.pem"; 209 sslCertificateKey = "/run/credentials/nginx.service/element.synapse.li.key.pem";
206 sslTrustedCertificate = "/run/credentials/nginx.service/element.synapse.li.chain.pem"; 210 sslTrustedCertificate = "/run/credentials/nginx.service/element.synapse.li.chain.pem";