Compare commits

..

No commits in common. "6c4a46e2890adbc5d9a0f8cffce7275e91e2a136" and "e5725761ef8d173f2dd4c390ae75732a00157105" have entirely different histories.

4 changed files with 8 additions and 15 deletions

View file

@ -1,14 +1,14 @@
{config, ...}: {
age.secrets.hetzner-dns.file = ../../secrets/hetzner-dns.age;
_: {
security.acme = {
acceptTerms = true;
defaults.email = "acme@buffet.sh";
certs."buffet.sh" = {
domain = "*.buffet.sh";
group = "nginx";
dnsProvider = "hetzner";
credentialsFile = config.age.secrets.hetzner-dns.path;
extraDomainNames = [
"404.buffet.sh"
"bitwarden.buffet.sh"
"rap.buffet.sh"
"buffets.kitchen"
];
};
};
}

View file

@ -10,7 +10,7 @@
recommendedTlsSettings = true;
virtualHosts."buffet.sh" = {
useACMEHost = "buffet.sh";
enableACME = true;
forceSSL = true;
root = "${website}";
};

View file

@ -3,7 +3,6 @@ let
in {
"secrets/bitwarden.age".publicKeys = [buffet];
"secrets/borgpassword.age".publicKeys = [buffet];
"secrets/hetzner-dns.age".publicKeys = [buffet];
"secrets/kitchen-runner-token.age".publicKeys = [buffet];
"secrets/msmtppassword.age".publicKeys = [buffet];
}

View file

@ -1,6 +0,0 @@
age-encryption.org/v1
-> ssh-ed25519 zRvPWg 3ihM8FBFjebzTErFkqn6Byfw2D/W45gkwVczLm0I7Tg
uV3GJXI9zKT1q4/Z3hF1eE8wN5fnDFMyJOH/3bcq+Vk
--- jcd587gk1OjweyDm7teUUt+6u3A7JXIX0aBEjBJPOBg
÷Úc;y§_taîŽíiÀ*­˜ÕþÁdKù^à÷xÚH+:=1ŒÙo)”
…¦C„wât&d©uÎ^ŽÔniÅÎzF@