Compare commits
No commits in common. "f3d506f4ccdb5bb8403a69444900ad5719c83817" and "5767763227edbc7112070755e8d0592d953516bb" have entirely different histories.
f3d506f4cc
...
5767763227
2 changed files with 2 additions and 34 deletions
|
@ -19,7 +19,6 @@ in {
|
||||||
config = mkIf cfg.enable {
|
config = mkIf cfg.enable {
|
||||||
modules.system.services = {
|
modules.system.services = {
|
||||||
database.postgresql.enable = true;
|
database.postgresql.enable = true;
|
||||||
nginx.enable = true;
|
|
||||||
};
|
};
|
||||||
|
|
||||||
networking.firewall.allowedTCPPorts = [
|
networking.firewall.allowedTCPPorts = [
|
||||||
|
@ -52,6 +51,8 @@ in {
|
||||||
security.acme = let
|
security.acme = let
|
||||||
email = "charlie@charlieroot.dev";
|
email = "charlie@charlieroot.dev";
|
||||||
in {
|
in {
|
||||||
|
acceptTerms = true;
|
||||||
|
defaults.email = email;
|
||||||
# testing server, do not use in production, but DO use it for setting things up.
|
# testing server, do not use in production, but DO use it for setting things up.
|
||||||
# it has much higher rate limits.
|
# it has much higher rate limits.
|
||||||
# defaults.server = "https://acme-staging-v02.api.letsencrypt.org/directory";
|
# defaults.server = "https://acme-staging-v02.api.letsencrypt.org/directory";
|
||||||
|
|
|
@ -1,33 +0,0 @@
|
||||||
{
|
|
||||||
config,
|
|
||||||
lib,
|
|
||||||
pkgs,
|
|
||||||
...
|
|
||||||
}: let
|
|
||||||
inherit (lib.modules) mkIf mkDefault;
|
|
||||||
inherit (lib.options) mkEnableOption;
|
|
||||||
cfg = config.modules.system.services.nginx;
|
|
||||||
in {
|
|
||||||
options.modules.system.services.nginx.enable = mkEnableOption "nginx";
|
|
||||||
config = mkIf cfg.enable {
|
|
||||||
security = {
|
|
||||||
acme = {
|
|
||||||
acceptTerms = true;
|
|
||||||
defaults.email = "charlie@charlieroot.dev";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
services.ngingx = {
|
|
||||||
package = pkgs.nginxQuic;
|
|
||||||
statusPage = true;
|
|
||||||
|
|
||||||
recommendedTlsSettings = true;
|
|
||||||
recommendedBrotliSettings = true;
|
|
||||||
recommendedOptimisation = true;
|
|
||||||
recommendedGzipSettings = true;
|
|
||||||
recommendedProxySettings = true;
|
|
||||||
recommendedZstdSettings = true;
|
|
||||||
|
|
||||||
clientMaxBodySize = mkDefault "512m";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
Loading…
Add table
Add a link
Reference in a new issue