refactor: move repeated nginx snippets into one file #26

Merged
chef merged 2 commits from chef/refactor into main 2024-06-05 09:40:43 +00:00 AGit
17 changed files with 23 additions and 40 deletions

View file

@ -1,4 +1,4 @@
_: {
{
services.xserver = {
enable = true;
displayManager.gdm = {

View file

@ -1,4 +1,4 @@
_: {
{
programs.gnupg.agent = {
enable = true;
enableSSHSupport = true;

View file

@ -1,4 +1,4 @@
_: {
{
security.rtkit.enable = true;
services.pipewire = {

View file

@ -1,4 +1,4 @@
_: {
{
services.syncthing = {
enable = true;
user = "buffet";

View file

@ -1,4 +1,4 @@
_: {
{
services = {
tlp = {
enable = true;

View file

@ -1,12 +1,5 @@
{website, ...}: {
services.nginx = {
enable = true;
recommendedGzipSettings = true;
recommendedOptimisation = true;
recommendedProxySettings = true;
recommendedTlsSettings = true;
virtualHosts."404.buffet.sh" = {
default = true;
useACMEHost = "buffet.sh";

View file

@ -15,13 +15,6 @@ in {
};
nginx = {
enable = true;
recommendedGzipSettings = true;
recommendedOptimisation = true;
recommendedProxySettings = true;
recommendedTlsSettings = true;
virtualHosts."bitwarden.buffet.sh" = {
useACMEHost = "buffet.sh";
forceSSL = true;

View file

@ -15,8 +15,9 @@
./borg.nix
./disk-config.nix
./forgejo.nix
./murmur.nix
./msmtp.nix
./murmur.nix
./nginx.nix
./upgrade.nix
./website.nix

View file

@ -1,4 +1,4 @@
_: {
{
disko.devices = {
disk.main = {
device = "/dev/sda";

View file

@ -73,13 +73,6 @@ in {
};
nginx = {
enable = true;
recommendedGzipSettings = true;
recommendedOptimisation = true;
recommendedProxySettings = true;
recommendedTlsSettings = true;
virtualHosts."buffets.kitchen" = {
useACMEHost = "buffet.sh";
forceSSL = true;

View file

@ -1,4 +1,4 @@
_: {
{
services.murmur = {
enable = true;
openFirewall = true;

10
hosts/ami/nginx.nix Normal file
View file

@ -0,0 +1,10 @@
{
services.nginx = {
enable = true;
recommendedGzipSettings = true;
recommendedOptimisation = true;
recommendedProxySettings = true;
recommendedTlsSettings = true;
};
}

View file

@ -1,4 +1,4 @@
_: {
{
system.autoUpgrade = {
enable = true;
flake = "https://buffets.kitchen/kitchen/rice/archive/main.tar.gz#ami";

View file

@ -2,13 +2,6 @@
networking.firewall.allowedTCPPorts = [80 443];
services.nginx = {
enable = true;
recommendedGzipSettings = true;
recommendedOptimisation = true;
recommendedProxySettings = true;
recommendedTlsSettings = true;
virtualHosts."buffet.sh" = {
useACMEHost = "buffet.sh";
forceSSL = true;

View file

@ -1,4 +1,4 @@
_: {
{
home-manager.users.buffet = {
programs.fzf = {
enable = true;

View file

@ -1,4 +1,4 @@
_: {
{
home-manager.users.buffet = {
programs.git = {
enable = true;

View file

@ -1,4 +1,4 @@
_: {
{
home-manager.users.buffet = {
programs.gpg.enable = true;
};