diff options
-rw-r--r-- | hosts/surtr/dns/zones/org.rheperire.soa | 4 | ||||
-rw-r--r-- | hosts/surtr/tls.nix | 1 |
2 files changed, 3 insertions, 2 deletions
diff --git a/hosts/surtr/dns/zones/org.rheperire.soa b/hosts/surtr/dns/zones/org.rheperire.soa index 173bb815..52bf9ad7 100644 --- a/hosts/surtr/dns/zones/org.rheperire.soa +++ b/hosts/surtr/dns/zones/org.rheperire.soa | |||
@@ -1,7 +1,7 @@ | |||
1 | $ORIGIN rheperire.org. | 1 | $ORIGIN rheperire.org. |
2 | $TTL 3600 | 2 | $TTL 3600 |
3 | @ IN SOA ns.yggdrasil.li. root.yggdrasil.li. ( | 3 | @ IN SOA ns.yggdrasil.li. root.yggdrasil.li. ( |
4 | 2021053001 ; serial | 4 | 2021053003 ; serial |
5 | 10800 ; refresh | 5 | 10800 ; refresh |
6 | 3600 ; retry | 6 | 3600 ; retry |
7 | 604800 ; expire | 7 | 604800 ; expire |
@@ -22,4 +22,4 @@ $TTL 3600 | |||
22 | * IN MX 0 ymir.yggdrasil.li. | 22 | * IN MX 0 ymir.yggdrasil.li. |
23 | * IN TXT "v=spf1 redirect=yggdrasil.li" | 23 | * IN TXT "v=spf1 redirect=yggdrasil.li" |
24 | 24 | ||
25 | _acme-challenge 300 IN TXT "" | 25 | _acme-challenge 60 IN TXT "v=spf1 redirect=yggdrasil.li" |
diff --git a/hosts/surtr/tls.nix b/hosts/surtr/tls.nix index 099d1ee9..73aaba07 100644 --- a/hosts/surtr/tls.nix +++ b/hosts/surtr/tls.nix | |||
@@ -4,6 +4,7 @@ let | |||
4 | 4 | ||
5 | knotDNSCredentials = zone: pkgs.writeText "lego-credentials" '' | 5 | knotDNSCredentials = zone: pkgs.writeText "lego-credentials" '' |
6 | EXEC_PATH=${knotDNSExec zone}/bin/update-dns.sh | 6 | EXEC_PATH=${knotDNSExec zone}/bin/update-dns.sh |
7 | EXEC_PROPAGATION_TIMEOUT=600 | ||
7 | ''; | 8 | ''; |
8 | knotDNSExec = zone: pkgs.writeScriptBin "update-dns.sh" '' | 9 | knotDNSExec = zone: pkgs.writeScriptBin "update-dns.sh" '' |
9 | #!${pkgs.zsh}/bin/zsh -xe | 10 | #!${pkgs.zsh}/bin/zsh -xe |