services/syncplay: Moved to sync.kittywit.ch

This commit is contained in:
kat witch 2021-04-04 22:20:08 +01:00
parent cba7f77f98
commit 2b258b083f
No known key found for this signature in database
GPG key ID: 1B477797DCA5EC72

View file

@ -3,14 +3,26 @@
{
users.users.syncplay = { isSystemUser = true; };
users.groups."sync-cert".members = [ "nginx" "syncplay" ];
security.acme = { certs."sync.kittywit.ch" = { group = "sync-cert"; }; };
services.nginx.virtualHosts."sync.kittywit.ch" = {
enableACME = true;
forceSSL = true;
};
deploy.tf.dns.records.kittywitch_sync = {
tld = "kittywit.ch.";
domain = "sync";
cname.target = "athame.kittywit.ch.";
};
services.syncplay = {
enable = true;
user = "syncplay";
group = "kittywit-ch";
group = "sync-cert";
certDir = "/var/lib/acme/sync.kittywit.ch/";
};
security.acme.certs."sync.kittywit.ch".postRun = ''
cp key.pem privkey.pem
'';
security.acme.certs."sync.kittywit.ch".postRun = "cp key.pem privkey.pem\nchown acme:voice-cert privkey.pem";
}