summaryrefslogtreecommitdiff
path: root/ymir.nix
diff options
context:
space:
mode:
Diffstat (limited to 'ymir.nix')
-rw-r--r--ymir.nix5
1 files changed, 3 insertions, 2 deletions
diff --git a/ymir.nix b/ymir.nix
index ee540b59..cf8f43a6 100644
--- a/ymir.nix
+++ b/ymir.nix
@@ -813,14 +813,15 @@ in rec {
813 systemd.services."acme-yggdrasil.li" = { 813 systemd.services."acme-yggdrasil.li" = {
814 requires = [ "nginx.service" ]; 814 requires = [ "nginx.service" ];
815 serviceConfig = { 815 serviceConfig = {
816 ReadWritePaths = [ "/srv/www/acme" "/tmp/webdav" ]; 816 ReadWritePaths = [ "/srv/www/acme" ];
817 RuntimeDirectory = [ "nginx/webdav" ];
818 RuntimeDirectoryMode = "0700";
817 }; 819 };
818 }; 820 };
819 systemd.tmpfiles.rules 821 systemd.tmpfiles.rules
820 = let mkAcmeDir = domain: "d /srv/www/acme 0775 root ssl 10d -"; 822 = let mkAcmeDir = domain: "d /srv/www/acme 0775 root ssl 10d -";
821 in map mkAcmeDir myDomains ++ [ 823 in map mkAcmeDir myDomains ++ [
822 "L /etc/nixos - - - - /root/nixos" 824 "L /etc/nixos - - - - /root/nixos"
823 "d /tmp/webdav 0700 nginx nginx 1h"
824 ]; 825 ];
825 826
826 services.uucp = { 827 services.uucp = {