Reformat using nixpkgs-fmt
This commit is contained in:
parent
368ed0797d
commit
5a734099bf
36 changed files with 209 additions and 168 deletions
|
@ -7,7 +7,8 @@ let
|
|||
"media.local"
|
||||
];
|
||||
backups = "/mnt/storage/backup";
|
||||
in {
|
||||
in
|
||||
{
|
||||
imports = [
|
||||
../../modules/profiles/base
|
||||
];
|
||||
|
@ -107,13 +108,22 @@ in {
|
|||
allowPing = true;
|
||||
allowedTCPPorts = [
|
||||
22 # SSH
|
||||
80 443 # HTTP(S)
|
||||
111 2049 # NFS
|
||||
137 138 139 445 # SMB
|
||||
80
|
||||
443 # HTTP(S)
|
||||
111
|
||||
2049 # NFS
|
||||
137
|
||||
138
|
||||
139
|
||||
445 # SMB
|
||||
];
|
||||
allowedUDPPorts = [
|
||||
137 138 139 445 # SMB
|
||||
111 2049 # NFS
|
||||
137
|
||||
138
|
||||
139
|
||||
445 # SMB
|
||||
111
|
||||
2049 # NFS
|
||||
51234 # Wireguard
|
||||
];
|
||||
};
|
||||
|
@ -121,16 +131,16 @@ in {
|
|||
security.acme = {
|
||||
email = "d553a78d-0349-48db-9c20-5b27af3a1dfc@dadada.li";
|
||||
acceptTerms = true;
|
||||
# certs."webchat.dadada.li" = {
|
||||
# credentialsFile = "/var/lib/lego/acme-joker.env";
|
||||
# dnsProvider = "joker";
|
||||
# postRun = "systemctl reload nginx.service";
|
||||
# };
|
||||
# certs."weechat.dadada.li" = {
|
||||
# credentialsFile = "/var/lib/lego/acme-joker.env";
|
||||
# dnsProvider = "joker";
|
||||
# postRun = "systemctl reload nginx.service";
|
||||
# };
|
||||
# certs."webchat.dadada.li" = {
|
||||
# credentialsFile = "/var/lib/lego/acme-joker.env";
|
||||
# dnsProvider = "joker";
|
||||
# postRun = "systemctl reload nginx.service";
|
||||
# };
|
||||
# certs."weechat.dadada.li" = {
|
||||
# credentialsFile = "/var/lib/lego/acme-joker.env";
|
||||
# dnsProvider = "joker";
|
||||
# postRun = "systemctl reload nginx.service";
|
||||
# };
|
||||
};
|
||||
|
||||
users.users."mist" = {
|
||||
|
|
|
@ -2,7 +2,8 @@
|
|||
let
|
||||
hostName = "surgat";
|
||||
this = import ../.. { inherit pkgs; };
|
||||
in {
|
||||
in
|
||||
{
|
||||
imports = [ this.profiles.base ];
|
||||
|
||||
networking.hostName = hostName;
|
||||
|
@ -43,7 +44,8 @@ in {
|
|||
allowPing = true;
|
||||
allowedTCPPorts = [
|
||||
22 # SSH
|
||||
80 443 # HTTPS
|
||||
80
|
||||
443 # HTTPS
|
||||
];
|
||||
allowedUDPPorts = [
|
||||
51234 # Wireguard
|
||||
|
@ -60,10 +62,10 @@ in {
|
|||
boot.loader.grub.version = 2;
|
||||
boot.loader.grub.device = "/dev/sda";
|
||||
|
||||
networking.interfaces."ens3".ipv6.addresses = [ {
|
||||
networking.interfaces."ens3".ipv6.addresses = [{
|
||||
address = "2a01:4f8:c17:1d70::";
|
||||
prefixLength = 64;
|
||||
} ];
|
||||
}];
|
||||
|
||||
networking.defaultGateway6 = {
|
||||
address = "fe80::1";
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue