Compare commits

..

2 Commits

1 changed files with 2 additions and 16 deletions

View File

@ -37,18 +37,6 @@ in
] ++ (map (org: "gitea-web-secret-provider@${org}") organizations);
};
systemd.tmpfiles.settings."10-gitea-web-secret-provider" =
builtins.listToAttrs (map (org: {
name = "/var/lib/gitea-web/web/${org}";
value = {
d = {
user = "gitea-web";
group = "nginx";
mode = "750";
};
};
}) organizations);
systemd.slices.system-giteaweb = {
description = "Gitea web directories";
};
@ -80,10 +68,7 @@ in
User = "gitea-web";
Group = "gitea-web";
StateDirectory = toString [
"gitea-web/keys/%i"
"gitea-web/authorized_keys.d"
];
StateDirectory = "gitea-web";
LoadCredential = [
"token:${config.sops.secrets."gitea/web-secret-provider/token".path}"
];
@ -118,6 +103,7 @@ in
services.openssh.authorizedKeysFiles = map (org: "/var/lib/gitea-web/authorized_keys.d/${org}") organizations;
users.users.nginx.extraGroups = [ "gitea-web" ];
services.nginx.virtualHosts."pages.pvv.ntnu.no" = {
kTLS = true;
forceSSL = true;