rice/hosts/ami/acme.nix
buffet d6eb3aa28b
All checks were successful
/ check (pull_request) Successful in 2m23s
feat: use hetzner dns to get wildcard cert from lets encrypt
2024-05-22 08:38:12 +02:00

14 lines
350 B
Nix

{config, ...}: {
age.secrets.hetzner-dns.file = ../../secrets/hetzner-dns.age;
security.acme = {
acceptTerms = true;
defaults.email = "acme@buffet.sh";
certs."buffet.sh" = {
domain = "*.buffet.sh";
group = "nginx";
dnsProvider = "hetzner";
credentialsFile = config.age.secrets.hetzner-dns.path;
};
};
}