summaryrefslogtreecommitdiffstats
path: root/lass
diff options
context:
space:
mode:
authorlassulus <git@lassul.us>2023-03-14 06:34:12 +0100
committerlassulus <git@lassul.us>2023-03-14 06:34:12 +0100
commitb2eb88a67e771a93efead57ec13cb9c00e118d62 (patch)
tree36c7977844170cab527b9cf509f251788bfe05f6 /lass
parent8e4d0b73e889cc1d08d176eba7f5afeb7cbfaf74 (diff)
l orange.r: add git/cgit
Diffstat (limited to 'lass')
-rw-r--r--lass/1systems/orange/config.nix3
-rw-r--r--lass/2configs/services/git/default.nix11
-rw-r--r--lass/2configs/services/git/proxy.nix13
3 files changed, 27 insertions, 0 deletions
diff --git a/lass/1systems/orange/config.nix b/lass/1systems/orange/config.nix
index 5e975dba8..47867c31f 100644
--- a/lass/1systems/orange/config.nix
+++ b/lass/1systems/orange/config.nix
@@ -6,10 +6,13 @@ with import <stockholm/lib>;
<stockholm/lass/2configs>
<stockholm/lass/2configs/retiolum.nix>
<stockholm/lass/2configs/mumble-reminder.nix>
+ <stockholm/lass/2configs/services/git>
];
krebs.build.host = config.krebs.hosts.orange;
+ services.nginx.enable = true;
+ networking.firewall.allowedTCPPorts = [ 80 443 ];
security.acme = {
acceptTerms = true;
defaults.email = "acme@lassul.us";
diff --git a/lass/2configs/services/git/default.nix b/lass/2configs/services/git/default.nix
new file mode 100644
index 000000000..096f73c03
--- /dev/null
+++ b/lass/2configs/services/git/default.nix
@@ -0,0 +1,11 @@
+{ config, lib, pkgs, ... }:
+{
+ imports = [
+ ../../git.nix
+ ];
+ services.nginx.virtualHosts."cgit.lassul.us" = {
+ enableACME = true;
+ addSSL = true;
+ locations = config.services.nginx.virtualHosts.cgit.locations;
+ };
+}
diff --git a/lass/2configs/services/git/proxy.nix b/lass/2configs/services/git/proxy.nix
new file mode 100644
index 000000000..cb05c3f6c
--- /dev/null
+++ b/lass/2configs/services/git/proxy.nix
@@ -0,0 +1,13 @@
+{ config, pkgs, ... }:
+{
+ services.nginx.virtualHosts."cgit.lassul.us" = {
+ forceSSL = true;
+ enableACME = true;
+ acmeFallbackHost = "orange.r";
+ locations."/" = {
+ proxyPass = "http://orange.r";
+ proxyWebsockets = true;
+ recommendedProxySettings = true;
+ };
+ };
+}