diff options
author | lassulus <git@lassul.us> | 2023-01-26 16:15:35 +0100 |
---|---|---|
committer | lassulus <git@lassul.us> | 2023-01-26 16:15:35 +0100 |
commit | ab06eab6af32e794882687a25746a35a66ef481d (patch) | |
tree | a9bfa91b7ee54da6832c49cd396cee310c71c77f /lass/1systems/ubik/config.nix | |
parent | 2b01c332826d2d59b7fdbf4a7924e827338920f9 (diff) |
l ubik.r: init on neoprism.r
Diffstat (limited to 'lass/1systems/ubik/config.nix')
-rw-r--r-- | lass/1systems/ubik/config.nix | 33 |
1 files changed, 33 insertions, 0 deletions
diff --git a/lass/1systems/ubik/config.nix b/lass/1systems/ubik/config.nix new file mode 100644 index 000000000..1d1d32f3f --- /dev/null +++ b/lass/1systems/ubik/config.nix @@ -0,0 +1,33 @@ +with import <stockholm/lib>; +{ config, lib, pkgs, ... }: +{ + imports = [ + <stockholm/lass> + <stockholm/lass/2configs> + <stockholm/lass/2configs/retiolum.nix> + ]; + + krebs.build.host = config.krebs.hosts.ubik; + + lass.sync-containers3.inContainer = { + enable = true; + pubkey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIPBFGMjH0+Dco6DVFZbByENMci8CFTLXCL7j53yctPnM"; + }; + + networking.firewall.allowedTCPPorts = [ 80 ]; + services.nextcloud = { + enable = true; + hostName = "c.apanowicz.de"; + package = pkgs.nextcloud25; + config.adminpassFile = "/run/nextcloud.pw"; + https = true; + }; + systemd.services.nextcloud-setup.serviceConfig.ExecStartPre = [ + "+${pkgs.writeDash "copy-pw" '' + ${pkgs.rsync}/bin/rsync \ + --chown nextcloud:nextcloud \ + --chmod 0700 \ + /var/src/secrets/nextcloud.pw /run/nextcloud.pw + ''}" + ]; +} |