diff options
| author | Caroline Larimore <caroline@larimo.re> | 2024-07-22 00:47:26 -0700 |
|---|---|---|
| committer | Caroline Larimore <caroline@larimo.re> | 2024-07-22 00:48:53 -0700 |
| commit | b2bd904bb65ee9cd6593ffed39969690ae73e7e1 (patch) | |
| tree | 0ec9ed83c0a4b4ca7c3bf060447a94d9e850dd2a /roles/web/stargazers/default.nix | |
| parent | b8a30fec397415088b68d7a249547fd3dab99f27 (diff) | |
Setup SSL
Diffstat (limited to 'roles/web/stargazers/default.nix')
| -rw-r--r-- | roles/web/stargazers/default.nix | 9 |
1 files changed, 7 insertions, 2 deletions
diff --git a/roles/web/stargazers/default.nix b/roles/web/stargazers/default.nix index b7cca11..644f91f 100644 --- a/roles/web/stargazers/default.nix +++ b/roles/web/stargazers/default.nix @@ -7,12 +7,17 @@ let cfg = config.roles.web.stargazers; in { }; config = mkIf cfg.enable { - networking.firewall.allowedTCPPorts = [ 80 ]; + networking.firewall.allowedTCPPorts = [ 80 443 ]; services.nginx = { enable = true; virtualHosts = { - "stargazers.xn--6frz82g".root = "/srv/web/stargazers"; + "stargazers.xn--6frz82g" = { + addSSL = true; + enableACME = true; + + root = "/srv/web/stargazers"; + }; }; }; }; |