spec(library): enable acme

This commit is contained in:
514fpv 2024-01-15 17:13:03 +08:00
parent fec411f0da
commit eeb210af1b
Signed by: koishi
SSH key fingerprint: SHA256:2jRvFSzG5UeUlQ3WxZ2sbUOfo5wNKzv1fZsk/FexKjQ
2 changed files with 8 additions and 14 deletions

View file

@ -1,18 +1,11 @@
{
security.acme = {
acceptTerms = true;
defaults.email = "koishi@514fpv.one";
defaults.group = "nginx";
certs = let
cloudflare = {
dnsProvider = "cloudflare";
credentialsFile = "/nix/persist/secret/cloudflare";
};
in {
"514fpv.io" = cloudflare;
".514fpv.io" = cloudflare // { domain = "*.514fpv.io"; };
security.acme.certs = let
cloudflare = {
dnsProvider = "cloudflare";
credentialsFile = "/nix/persist/secret/cloudflare";
};
in {
"514fpv.io" = cloudflare;
".514fpv.io" = cloudflare // { domain = "*.514fpv.io"; };
};
environment.persistence."/nix/persist/fhs".directories = [ "/var/lib/acme" ];
}