2024-12-01 00:56:29 -05:00
|
|
|
{
|
|
|
|
config,
|
|
|
|
lib,
|
|
|
|
pkgs,
|
2025-02-14 01:01:52 -05:00
|
|
|
outputs,
|
2024-12-01 00:56:29 -05:00
|
|
|
...
|
|
|
|
}:
|
|
|
|
|
|
|
|
{
|
|
|
|
security.acme = {
|
|
|
|
acceptTerms = true;
|
|
|
|
defaults.email = "aliceghuston@gmail.com";
|
|
|
|
certs."nayeonie.com" = {
|
2025-02-27 00:05:20 -05:00
|
|
|
dnsProvider = "dnsimple";
|
|
|
|
environmentFile = config.sops.secrets."acme/dnsimple".path;
|
2024-12-01 00:56:29 -05:00
|
|
|
dnsPropagationCheck = false;
|
|
|
|
group = "haproxy";
|
|
|
|
extraDomainNames = [
|
2024-12-05 00:03:59 -05:00
|
|
|
"*.nayeonie.com"
|
2024-12-01 00:56:29 -05:00
|
|
|
# "alicehuston.xyz"
|
|
|
|
# "*.alicehuston.xyz"
|
|
|
|
];
|
|
|
|
};
|
|
|
|
};
|
|
|
|
|
2025-02-14 01:01:52 -05:00
|
|
|
systemd.services."acme-nayeonie.com.service".path = lib.mkForce (
|
|
|
|
with pkgs;
|
|
|
|
[
|
|
|
|
coreutils
|
|
|
|
diffutils
|
|
|
|
openssl
|
|
|
|
]
|
|
|
|
++ [
|
|
|
|
outputs.packages.x86_64-linux.lego-latest
|
|
|
|
]
|
|
|
|
);
|
|
|
|
|
2024-12-01 00:56:29 -05:00
|
|
|
sops.secrets = {
|
2025-02-27 00:05:20 -05:00
|
|
|
"acme/dnsimple" = {
|
2024-12-01 00:56:29 -05:00
|
|
|
owner = "root";
|
|
|
|
};
|
|
|
|
};
|
|
|
|
}
|