nixos-combined-flake/modules/nixos/server/binary-cache/default.nix

32 lines
706 B
Nix

{
lib,
config,
...
}: let
cfg = config.services.nix-serve;
in
with lib; {
config = mkIf cfg.enable {
users = {
groups.nix-serve = {};
users.nix-serve = {
group = nix-serve;
isSystemUser = true;
};
};
services = {
nix-serve = {
secretKeyFile = "/var/cache-priv-key.pem";
};
nginx = {
virtualHosts = {
# ... existing hosts config etc. ...
"binarycache.odie.intranet" = {
locations."/".proxyPass = "http://${config.services.nix-serve.bindAddress}:${toString config.services.nix-serve.port}";
};
};
};
};
};
}