Splits //ops/nixos into: * //ops/nixos.nix - utility functions for building systems * //ops/machines - shared machine definitions (read by readTree) * //ops/modules - shared NixOS modules (skipped by readTree) This simplifies working with the configuration fixpoint in whitby, and is overall a bit more in line with how NixOS systems in user folders currently work. Change-Id: I1322ec5cc76c0207c099c05d44828a3df0b3ffc1 Reviewed-on: https://cl.tvl.fyi/c/depot/+/2931 Tested-by: BuildkiteCI Reviewed-by: sterni <sternenseemann@systemli.org> Reviewed-by: glittershark <grfn@gws.fyi>
		
			
				
	
	
		
			26 lines
		
	
	
	
		
			501 B
		
	
	
	
		
			Nix
		
	
	
	
	
	
			
		
		
	
	
			26 lines
		
	
	
	
		
			501 B
		
	
	
	
		
			Nix
		
	
	
	
	
	
| { config, ... }:
 | |
| 
 | |
| {
 | |
|   imports = [
 | |
|     ./base.nix
 | |
|   ];
 | |
| 
 | |
|   config = {
 | |
|     services.nginx.virtualHosts."cache.tvl.su" = {
 | |
|       serverName = "cache.tvl.su";
 | |
|       serverAliases = [ "cache.tvl.fyi" ];
 | |
|       enableACME = true;
 | |
|       forceSSL = true;
 | |
| 
 | |
|       extraConfig = ''
 | |
|         location = /cache-key.pub {
 | |
|           alias /etc/secrets/nix-cache-key.pub;
 | |
|         }
 | |
| 
 | |
|         location / {
 | |
|           proxy_pass http://localhost:${toString config.services.nix-serve.port};
 | |
|         }
 | |
|       '';
 | |
|     };
 | |
|   };
 | |
| }
 |