diff options
author | Gregor Kleen <gkleen@yggdrasil.li> | 2023-01-31 13:31:37 +0100 |
---|---|---|
committer | Gregor Kleen <gkleen@yggdrasil.li> | 2023-01-31 13:31:37 +0100 |
commit | 60adb4c9388816d8b8eb17b2e844de8d1e0dc081 (patch) | |
tree | 2d40a05364ea1d3edd0b9cd7748a0683fa20a477 /hosts/surtr/matrix | |
parent | 41be54745e76d6b14221157d1e4474e980e2e70a (diff) | |
download | nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar.gz nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar.bz2 nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.tar.xz nixos-60adb4c9388816d8b8eb17b2e844de8d1e0dc081.zip |
Revert "Revert "...""
This reverts commit 1e82933a01dcc3810d635567dbef0de286c1e8f2.
Diffstat (limited to 'hosts/surtr/matrix')
-rw-r--r-- | hosts/surtr/matrix/default.nix | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/hosts/surtr/matrix/default.nix b/hosts/surtr/matrix/default.nix index e4f23703..1772199b 100644 --- a/hosts/surtr/matrix/default.nix +++ b/hosts/surtr/matrix/default.nix | |||
@@ -151,6 +151,8 @@ with lib; | |||
151 | sslCertificate = "/run/credentials/nginx.service/synapse.li.pem"; | 151 | sslCertificate = "/run/credentials/nginx.service/synapse.li.pem"; |
152 | sslCertificateKey = "/run/credentials/nginx.service/synapse.li.key.pem"; | 152 | sslCertificateKey = "/run/credentials/nginx.service/synapse.li.key.pem"; |
153 | sslTrustedCertificate = "/run/credentials/nginx.service/synapse.li.chain.pem"; | 153 | sslTrustedCertificate = "/run/credentials/nginx.service/synapse.li.chain.pem"; |
154 | kTLS = true; | ||
155 | http3 = true; | ||
154 | listen = [ | 156 | listen = [ |
155 | { addr = "0.0.0.0"; port = 80; ssl = false; } | 157 | { addr = "0.0.0.0"; port = 80; ssl = false; } |
156 | { addr = "[::0]"; port = 80; ssl = false; } | 158 | { addr = "[::0]"; port = 80; ssl = false; } |
@@ -201,6 +203,8 @@ with lib; | |||
201 | 203 | ||
202 | virtualHosts."element.synapse.li" = { | 204 | virtualHosts."element.synapse.li" = { |
203 | forceSSL = true; | 205 | forceSSL = true; |
206 | kTLS = true; | ||
207 | http3 = true; | ||
204 | sslCertificate = "/run/credentials/nginx.service/element.synapse.li.pem"; | 208 | sslCertificate = "/run/credentials/nginx.service/element.synapse.li.pem"; |
205 | sslCertificateKey = "/run/credentials/nginx.service/element.synapse.li.key.pem"; | 209 | sslCertificateKey = "/run/credentials/nginx.service/element.synapse.li.key.pem"; |
206 | sslTrustedCertificate = "/run/credentials/nginx.service/element.synapse.li.chain.pem"; | 210 | sslTrustedCertificate = "/run/credentials/nginx.service/element.synapse.li.chain.pem"; |