rice/hosts/ami/acme.nix
buffet b48b5a6867
All checks were successful
/ check (pull_request) Successful in 2m17s
fix: make sure the cert is valid on *all* domains
2024-05-25 21:15:23 +02:00

18 lines
405 B
Nix

{config, ...}: {
age.secrets.hetzner-dns.file = ../../secrets/hetzner-dns.age;
security.acme = {
acceptTerms = true;
defaults.email = "acme@buffet.sh";
certs."buffet.sh" = {
group = "nginx";
dnsProvider = "hetzner";
credentialsFile = config.age.secrets.hetzner-dns.path;
extraDomainNames = [
"*.buffet.sh"
"buffets.kitchen"
];
};
};
}