Set ACME client defaults in server.nix

This commit is contained in:
Jordan Holt 2024-05-17 23:01:07 +01:00
parent b16a42732a
commit 92c3bd3a13
Signed by: jordan
GPG Key ID: B8CFFF61F1CCF520
3 changed files with 8 additions and 13 deletions

View File

@ -30,12 +30,6 @@
services.openssh.settings.PermitRootLogin = lib.mkForce "prohibit-password";
security.acme.defaults = {
email = "hostmaster@vimium.com";
group = "nginx";
webroot = "/var/lib/acme/acme-challenge";
};
modules = {
services = {
borgmatic = {

View File

@ -10,7 +10,14 @@
fonts.fontconfig.enable = false;
security = {
acme.acceptTerms = true;
acme = {
acceptTerms = true;
defaults = {
email = "hostmaster@vimium.com";
group = "nginx";
webroot = "/var/lib/acme/acme-challenge";
};
};
auditd.enable = true;
audit = {
enable = true;

View File

@ -40,12 +40,6 @@
services.openssh.settings.PermitRootLogin = lib.mkForce "prohibit-password";
security.acme.defaults = {
email = "hostmaster@vimium.com";
group = "nginx";
webroot = "/var/lib/acme/acme-challenge";
};
modules = {
services = {
borgmatic = {