1 { config, lib, name, ... }:
7 base = mkOption { description = "Base of the LDAP tree"; type = str; };
8 host = mkOption { description = "Host to access LDAP"; type = str; };
9 root_dn = mkOption { description = "DN of the root user"; type = str; };
10 root_pw = mkOption { description = "Hashed password of the root user"; type = str; };
11 replication_dn = mkOption { description = "DN of the user allowed to replicate the LDAP directory"; type = str; };
12 replication_pw = mkOption { description = "Password of the user allowed to replicate the LDAP directory"; type = str; };
14 mkLdapOptions = name: more: mkOption {
15 description = "${name} LDAP configuration";
17 options = ldapOptions // {
18 dn = mkOption { description = "DN of the ${name} user"; type = str; };
19 password = mkOption { description = "password of the ${name} user"; type = str; };
20 filter = mkOption { description = "Filter for ${name} users"; type = str; default = ""; };
25 host = mkOption { description = "Host to access Mysql"; type = str; };
26 remoteHost = mkOption { description = "Host to access Mysql from outside"; type = str; };
27 port = mkOption { description = "Port to access Mysql"; type = str; };
28 socket = mkOption { description = "Socket to access Mysql"; type = path; };
29 systemUsers = mkOption {
30 description = "Attrs of user-passwords allowed to access mysql";
34 description = "PAM configuration for mysql";
37 dn = mkOption { description = "DN to connect as to check users"; type = str; };
38 password = mkOption { description = "DN password to connect as to check users"; type = str; };
39 filter = mkOption { description = "filter to match users"; type = str; };
44 mkMysqlOptions = name: more: mkOption {
45 description = "${name} mysql configuration";
47 options = mysqlOptions // {
48 database = mkOption { description = "${name} database"; type = str; };
49 user = mkOption { description = "${name} user"; type = str; };
50 password = mkOption { description = "mysql password of the ${name} user"; type = str; };
55 host = mkOption { description = "Host to access Postgresql"; type = str; };
56 port = mkOption { description = "Port to access Postgresql"; type = str; };
57 socket = mkOption { description = "Socket to access Postgresql"; type = path; };
59 description = "PAM configuration for psql";
62 dn = mkOption { description = "DN to connect as to check users"; type = str; };
63 password = mkOption { description = "DN password to connect as to check users"; type = str; };
64 filter = mkOption { description = "filter to match users"; type = str; };
69 mkPsqlOptions = name: mkOption {
70 description = "${name} psql configuration";
72 options = psqlOptions // {
73 database = mkOption { description = "${name} database"; type = str; };
74 schema = mkOption { description = "${name} schema"; type = nullOr str; default = null; };
75 user = mkOption { description = "${name} user"; type = str; };
76 password = mkOption { description = "psql password of the ${name} user"; type = str; };
81 host = mkOption { description = "Host to access Redis"; type = str; };
82 port = mkOption { description = "Port to access Redis"; type = str; };
83 socket = mkOption { description = "Socket to access Redis"; type = path; };
85 description = "Attrs of db number. Each number should be unique to avoid collision!";
88 spiped_key = mkOption {
91 Key to use with spiped to make a secure channel to replication
95 description = "Predixy configuration. Unused yet";
98 read = mkOption { type = str; description = "Read password"; };
103 mkRedisOptions = name: mkOption {
104 description = "${name} redis configuration";
106 options = redisOptions // {
107 db = mkOption { description = "${name} database"; type = str; };
112 host = mkOption { description = "Host to access SMTP"; type = str; };
113 port = mkOption { description = "Port to access SMTP"; type = str; };
115 mkSmtpOptions = name: mkOption {
116 description = "${name} smtp configuration";
118 options = smtpOptions // {
119 email = mkOption { description = "${name} email"; type = str; };
120 password = mkOption { description = "SMTP password of the ${name} user"; type = str; };
124 hostEnv = submodule {
127 description = "Host FQDN";
134 Sublist of users from realUsers. Function that takes pkgs as
135 argument and gives an array as a result
140 description = "List of e-mails that the server can be a sender of";
145 LDAP credentials for the host
149 password = mkOption { type = str; description = "Password for the LDAP connection"; };
150 dn = mkOption { type = str; description = "DN for the LDAP connection"; };
155 description = "subdomain and priority for MX server";
156 default = { enable = false; };
159 enable = mkEnableOption "Enable MX";
160 subdomain = mkOption { type = nullOr str; description = "Subdomain name (mx-*)"; };
161 priority = mkOption { type = nullOr str; description = "Priority"; };
167 attrs of ip4/ip6 grouped by section
169 type = attrsOf (submodule {
174 ip4 address of the host
181 ip6 addresses of the host
194 Attrs of servers information in the cluster (not necessarily handled by nixops)
197 type = attrsOf hostEnv;
199 hetznerCloud = mkOption {
201 Hetzner Cloud credential information
205 authToken = mkOption {
216 Hetzner credential information
220 user = mkOption { type = str; description = "User"; };
221 pass = mkOption { type = str; description = "Password"; };
227 sshd service credential information
233 LDAP credentials for cn=ssh,ou=services,dc=immae,dc=eu dn
237 password = mkOption { description = "Password"; type = str; };
246 non-standard reserved ports. Must be unique!
251 noDupl = x: builtins.length (builtins.attrValues x) == builtins.length (unique (builtins.attrValues x));
253 x: if isAttrs x && noDupl x then x else throw "Non unique values for ports";
257 httpd service credential information
263 LDAP credentials for cn=httpd,ou=services,dc=immae,dc=eu dn
267 password = mkOption { description = "Password"; type = str; };
275 type = submodule { options = smtpOptions; };
276 description = "SMTP configuration";
280 LDAP server configuration
283 options = ldapOptions;
286 databases = mkOption {
287 description = "Databases configuration";
291 type = submodule { options = mysqlOptions; };
292 description = "Mysql configuration";
295 type = submodule { options = redisOptions; };
296 description = "Redis configuration";
298 postgresql = mkOption {
299 type = submodule { options = psqlOptions; };
300 description = "Postgresql configuration";
306 description = "Jabber configuration";
309 postfix_user_filter = mkOption { type = str; description = "Postfix filter to get xmpp users"; };
310 ldap = mkLdapOptions "Jabber" {};
311 postgresql = mkPsqlOptions "Jabber";
315 realUsers = mkOption {
317 Attrset of function taking pkgs as argument.
318 Real users settings, should provide a subattr of users.users.<name>
319 with at least: name, (hashed)Password, shell
321 type = attrsOf unspecified;
324 description = "System and regular users uid/gid";
325 type = attrsOf (submodule {
328 description = "user uid";
332 description = "user gid";
339 description = "DNS configuration";
343 description = "SOA information";
347 description = "Serial number. Should be incremented at each change and unique";
351 description = "Refresh time";
355 description = "Retry time";
359 description = "Expire time";
363 description = "Default TTL time";
367 description = "hostmaster e-mail";
371 description = "Primary NS";
378 description = "Attrs of NS servers group";
381 "ns1.foo.com" = [ "198.51.100.10" "2001:db8:abcd::1" ];
382 "ns2.foo.com" = [ "198.51.100.15" "2001:db8:1234::1" ];
385 type = attrsOf (attrsOf (listOf str));
387 slaveZones = mkOption {
388 description = "List of slave zones";
389 type = listOf (submodule {
391 name = mkOption { type = str; description = "zone name"; };
393 description = "NS master groups of this zone";
399 masterZones = mkOption {
400 description = "List of master zones";
401 type = listOf (submodule {
403 name = mkOption { type = str; description = "zone name"; };
405 description = "NS slave groups of this zone";
409 description = "groups names that should have their NS entries listed here";
413 description = "Extra zone configuration for bind";
419 entries = mkOption { type = lines; description = "Regular entries of the NS zone"; };
420 withEmail = mkOption {
421 description = "List of domains that should have mail entries (MX, dkim, SPF, ...)";
423 type = listOf (submodule {
425 domain = mkOption { type = str; description = "Which subdomain is concerned"; };
426 send = mkOption { type = bool; description = "Whether there can be e-mails originating from the subdomain"; };
427 receive = mkOption { type = bool; description = "Whether there can be e-mails arriving to the subdomain"; };
439 Remote backup with duplicity
443 password = mkOption { type = str; description = "Password for encrypting files"; };
444 remote = mkOption { type = str; description = "Remote url access"; };
445 accessKeyId = mkOption { type = str; description = "Remote access-key"; };
446 secretAccessKey = mkOption { type = str; description = "Remote access secret"; };
450 rsync_backup = mkOption {
452 Rsync backup configuration from controlled host
457 description = "SSH key information";
460 public = mkOption { type = str; description = "Public part of the key"; };
461 private = mkOption { type = lines; description = "Private part of the key"; };
465 profiles = mkOption {
466 description = "Attrs of profiles to backup";
467 type = attrsOf (submodule {
469 keep = mkOption { type = int; description = "Number of backups to keep"; };
470 check_command = mkOption { type = str; description = "command to check if backup needs to be done"; default = "backup"; };
471 login = mkOption { type = str; description = "Login to connect to host"; };
472 port = mkOption { type = str; default = "22"; description = "Port to connect to host"; };
473 host = mkOption { type = str; description = "Host to connect to"; };
474 host_key = mkOption { type = str; description = "Host key"; };
475 host_key_type = mkOption { type = str; description = "Host key type"; };
477 description = "Parts to backup for this host";
478 type = attrsOf (submodule {
480 remote_folder = mkOption { type = path; description = "Remote folder to backup";};
481 exclude_from = mkOption {
484 description = "List of folders/files to exclude from the backup";
486 files_from = mkOption {
489 description = "List of folders/files to backup in the base folder";
494 description = "Extra arguments to pass to rsync";
505 monitoring = mkOption {
506 description = "Monitoring configuration";
509 status_url = mkOption { type = str; description = "URL to push status to"; };
510 status_token = mkOption { type = str; description = "Token for the status url"; };
511 http_user_password = mkOption { type = str; description = "HTTP credentials to check services behind wall"; };
512 email = mkOption { type = str; description = "Admin E-mail"; };
513 ssh_public_key = mkOption { type = str; description = "SSH public key"; };
514 ssh_secret_key = mkOption { type = str; description = "SSH secret key"; };
515 imap_login = mkOption { type = str; description = "IMAP login"; };
516 imap_password = mkOption { type = str; description = "IMAP password"; };
517 eriomem_keys = mkOption { type = listOf (listOf str); description = "Eriomem keys"; default = []; };
519 description = "OVH credentials for sms script";
522 endpoint = mkOption { type = str; default = "ovh-eu"; description = "OVH endpoint"; };
523 application_key = mkOption { type = str; description = "Application key"; };
524 application_secret = mkOption { type = str; description = "Application secret"; };
525 consumer_key = mkOption { type = str; description = "Consumer key"; };
526 account = mkOption { type = str; description = "Account"; };
530 nrdp_tokens = mkOption { type = listOf str; description = "Tokens allowed to push status update"; };
531 slack_url = mkOption { type = str; description = "Slack webhook url to push status update"; };
532 slack_channel = mkOption { type = str; description = "Slack channel to push status update"; };
533 contacts = mkOption { type = attrsOf unspecified; description = "Contact dicts to fill naemon objects"; };
534 email_check = mkOption {
535 description = "Emails services to check";
536 type = attrsOf (submodule {
538 local = mkOption { type = bool; default = false; description = "Use local configuration"; };
539 port = mkOption { type = nullOr str; default = null; description = "Port to connect to ssh"; };
540 login = mkOption { type = nullOr str; default = null; description = "Login to connect to ssh"; };
541 targets = mkOption { type = listOf str; description = "Hosts to send E-mails to"; };
542 mail_address = mkOption { type = nullOr str; default = null; description = "E-mail recipient part to send e-mail to"; };
543 mail_domain = mkOption { type = nullOr str; default = null; description = "E-mail domain part to send e-mail to"; };
551 description = "MPD configuration";
554 folder = mkOption { type = str; description = "Folder to serve from the MPD instance"; };
555 password = mkOption { type = str; description = "Password to connect to the MPD instance"; };
556 host = mkOption { type = str; description = "Host to connect to the MPD instance"; };
557 port = mkOption { type = str; description = "Port to connect to the MPD instance"; };
562 description = "FTP configuration";
565 ldap = mkLdapOptions "FTP" {};
570 description = "VPN configuration";
571 type = attrsOf (submodule {
573 prefix = mkOption { type = str; description = "ipv6 prefix for the vpn subnet"; };
574 privateKey = mkOption { type = str; description = "Private key for the host"; };
575 publicKey = mkOption { type = str; description = "Public key for the host"; };
580 description = "Mail configuration";
584 description = "DMARC configuration";
587 ignore_hosts = mkOption {
590 Hosts to ignore when checking for dmarc
597 description = "DKIM configuration";
598 type = attrsOf (submodule {
604 "p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3w1a2aMxWw9+hdcmbqX4UevcVqr204y0K73Wdc7MPZiOOlUJQYsMNSYR1Y/SC7jmPKeitpcJCpQgn/cveJZbuikjjPLsDReHyFEYmC278ZLRTELHx6f1IXM8WE08JIRT69CfZiMi1rVcOh9qRT4F93PyjCauU8Y5hJjtg9ThsWwIDAQAB" )
606 description = "Public entry to put in DNS TXT field";
608 private = mkOption { type = str; description = "Private key"; };
613 description = "Postfix configuration";
616 additional_mailbox_domains = mkOption {
618 List of domains that are used as mailbox final destination, in addition to those defined in the DNS records
622 mysql = mkMysqlOptions "Postfix" {
623 password_encrypt = mkOption { type = str; description = "Key to encrypt relay password in database"; };
625 backup_domains = mkOption {
627 Domains that are accepted for relay as backup domain
629 type = attrsOf (submodule {
631 domains = mkOption { type = listOf str; description = "Domains list"; };
632 relay_restrictions = mkOption {
635 Restrictions for relaying the e-mails from the domains
638 recipient_maps = mkOption {
640 Recipient map to accept relay for.
641 Must be specified for domain, the rules apply to everyone!
643 type = listOf (submodule {
646 type = enum [ "hash" ];
647 description = "Map type";
651 description = "Map content";
663 description = "Dovecot configuration";
666 ldap = mkLdapOptions "Dovecot" {
667 pass_attrs = mkOption { type = str; description = "Password attribute in LDAP"; };
668 user_attrs = mkOption { type = str; description = "User attribute mapping in LDAP"; };
669 iterate_attrs = mkOption { type = str; description = "User attribute mapping for listing in LDAP"; };
670 iterate_filter = mkOption { type = str; description = "User attribute filter for listing in LDAP"; };
671 postfix_mailbox_filter = mkOption { type = str; description = "Postfix filter to get mailboxes"; };
677 description = "rspamd configuration";
680 redis = mkRedisOptions "Redis";
681 read_password_hashed = mkOption { type = str; description = "Hashed read password for rspamd"; };
682 write_password_hashed = mkOption { type = str; description = "Hashed write password for rspamd"; };
683 read_password = mkOption {
685 description = "Read password for rspamd. Unused";
688 write_password = mkOption {
690 description = "Write password for rspamd. Unused";
697 description = "Mail script recipients";
698 type = attrsOf (submodule {
700 external = mkEnableOption "Create a script_<name>@mail.immae.eu external address";
703 git source to fetch the script from.
704 It must have a default.nix file as its root accepting a scriptEnv parameter
708 url = mkOption { type = str; description = "git url to fetch"; };
709 rev = mkOption { type = str; description = "git reference to fetch"; };
714 description = "Variables to pass to the script";
721 description = "Sympa configuration";
724 listmasters = mkOption {
726 description = "Listmasters";
728 postgresql = mkPsqlOptions "Sympa";
729 data_sources = mkOption {
732 description = "Data sources to make available to sympa";
737 description = "Scenari to make available to sympa";
745 buildbot = mkOption {
746 description = "Buildbot configuration";
750 description = "Buildbot user";
754 description = "user uid";
758 description = "user gid";
765 description = "Ldap configuration for buildbot";
768 password = mkOption { type = str; description = "Buildbot password"; };
772 projects = mkOption {
773 description = "Projects to make a buildbot for";
774 type = attrsOf (submodule {
776 name = mkOption { type = str; description = "Project name"; };
777 packages = mkOption {
779 example = literalExample ''
780 pkgs: [ pkgs.bash pkgs.git pkgs.gzip pkgs.openssh ];
784 Builds packages list to make available to buildbot project.
785 Takes pkgs as argument.
788 pythonPackages = mkOption {
790 example = literalExample ''
791 p: pkgs: [ pkgs.python3Packages.pip ];
795 Builds python packages list to make available to buildbot project.
796 Takes buildbot python module as first argument and pkgs as second argument in order to augment the python modules list.
799 pythonPathHome = mkOption { type = bool; description = "Whether to add project’s python home to python path"; };
802 description = "Secrets for the project to dump as files";
804 environment = mkOption {
807 Environment variables for the project.
808 BUILDBOT_ is prefixed to the variable names
811 activationScript = mkOption {
814 Activation script to run during deployment
817 builderPaths = mkOption {
818 type = attrsOf unspecified;
821 Attrs of functions to make accessible specifically per builder.
822 Takes pkgs as argument and should return a single path containing binaries.
823 This path will be accessible as BUILDBOT_PATH_<attrskey>
826 webhookTokens = mkOption {
827 type = nullOr (listOf str);
830 List of tokens allowed to push to project’s change_hook/base endpoint
840 description = "Tools configurations";
843 contact = mkOption { type = str; description = "Contact e-mail address"; };
845 description = "Davical configuration";
848 postgresql = mkPsqlOptions "Davical";
849 ldap = mkLdapOptions "Davical" {};
853 diaspora = mkOption {
854 description = "Diaspora configuration";
857 postgresql = mkPsqlOptions "Diaspora";
858 redis = mkRedisOptions "Diaspora";
859 ldap = mkLdapOptions "Diaspora" {};
860 secret_token = mkOption { type = str; description = "Secret token"; };
864 dmarc_reports = mkOption {
865 description = "DMARC reports configuration";
868 mysql = mkMysqlOptions "DMARC" {};
869 anonymous_key = mkOption { type = str; description = "Anonymous hashing key"; };
873 etherpad-lite = mkOption {
874 description = "Etherpad configuration";
877 postgresql = mkPsqlOptions "Etherpad";
878 ldap = mkLdapOptions "Etherpad" {
879 group_filter = mkOption { type = str; description = "Filter for groups"; };
881 adminPassword = mkOption { type = str; description = "Admin password for mypads / admin"; };
882 session_key = mkOption { type = str; description = "Session key"; };
883 api_key = mkOption { type = str; description = "API key"; };
884 redirects = mkOption { type = str; description = "Redirects for apache"; };
888 gitolite = mkOption {
889 description = "Gitolite configuration";
892 ldap = mkLdapOptions "Gitolite" {};
896 kanboard = mkOption {
897 description = "Kanboard configuration";
900 postgresql = mkPsqlOptions "Kanboard";
901 ldap = mkLdapOptions "Kanboard" {
902 admin_dn = mkOption { type = str; description = "Admin DN"; };
907 mantisbt = mkOption {
908 description = "Mantisbt configuration";
911 postgresql = mkPsqlOptions "Mantisbt";
912 ldap = mkLdapOptions "Mantisbt" {};
913 master_salt = mkOption { type = str; description = "Master salt for password hash"; };
917 mastodon = mkOption {
918 description = "Mastodon configuration";
921 postgresql = mkPsqlOptions "Mastodon";
922 redis = mkRedisOptions "Mastodon";
923 ldap = mkLdapOptions "Mastodon" {};
924 paperclip_secret = mkOption { type = str; description = "Paperclip secret"; };
925 otp_secret = mkOption { type = str; description = "OTP secret"; };
926 secret_key_base = mkOption { type = str; description = "Secret key base"; };
928 description = "vapid key";
931 private = mkOption { type = str; description = "Private key"; };
932 public = mkOption { type = str; description = "Public key"; };
939 mediagoblin = mkOption {
940 description = "Mediagoblin configuration";
943 postgresql = mkPsqlOptions "Mediagoblin";
944 redis = mkRedisOptions "Mediagoblin";
945 ldap = mkLdapOptions "Mediagoblin" {};
949 nextcloud = mkOption {
950 description = "Nextcloud configuration";
953 postgresql = mkPsqlOptions "Peertube";
954 redis = mkRedisOptions "Peertube";
955 password_salt = mkOption { type = str; description = "Password salt"; };
956 instance_id = mkOption { type = str; description = "Instance ID"; };
957 secret = mkOption { type = str; description = "App secret"; };
961 peertube = mkOption {
962 description = "Peertube configuration";
965 listenPort = mkOption { type = port; description = "Port to listen to"; };
966 postgresql = mkPsqlOptions "Peertube";
967 redis = mkRedisOptions "Peertube";
968 ldap = mkLdapOptions "Peertube" {};
972 syden_peertube = mkOption {
973 description = "Peertube Syden configuration";
976 listenPort = mkOption { type = port; description = "Port to listen to"; };
977 postgresql = mkPsqlOptions "Peertube";
978 redis = mkRedisOptions "Peertube";
982 phpldapadmin = mkOption {
983 description = "phpLdapAdmin configuration";
986 ldap = mkLdapOptions "phpldapadmin" {};
991 description = "Rompr configuration";
995 description = "MPD configuration";
998 host = mkOption { type = str; description = "Host for MPD"; };
999 port = mkOption { type = port; description = "Port to access MPD host"; };
1006 roundcubemail = mkOption {
1007 description = "Roundcubemail configuration";
1010 postgresql = mkPsqlOptions "TT-RSS";
1011 secret = mkOption { type = str; description = "Secret"; };
1015 shaarli = mkOption {
1016 description = "Shaarli configuration";
1019 ldap = mkLdapOptions "Shaarli" {};
1023 status_engine = mkOption {
1024 description = "Status Engine configuration";
1027 mysql = mkMysqlOptions "StatusEngine" {};
1028 ldap = mkLdapOptions "StatusEngine" {};
1033 description = "Taskwarrior configuration";
1036 ldap = mkLdapOptions "Taskwarrior" {};
1037 taskwarrior-web = mkOption {
1038 description = "taskwarrior-web profiles";
1039 type = attrsOf (submodule {
1043 description = "List of ldap uids having access to this profile";
1045 org = mkOption { type = str; description = "Taskd organisation"; };
1046 key = mkOption { type = str; description = "Taskd key"; };
1047 date = mkOption { type = str; description = "Preferred date format"; };
1055 description = "TT-RSS configuration";
1058 postgresql = mkPsqlOptions "TT-RSS";
1059 ldap = mkLdapOptions "TT-RSS" {};
1063 wallabag = mkOption {
1064 description = "Wallabag configuration";
1067 postgresql = mkPsqlOptions "Wallabag";
1068 ldap = mkLdapOptions "Wallabag" {
1069 admin_filter = mkOption { type = str; description = "Admin users filter"; };
1071 redis = mkRedisOptions "Wallabag";
1072 secret = mkOption { type = str; description = "App secret"; };
1076 webhooks = mkOption {
1078 description = "Mapping 'name'.php => script for webhooks";
1080 commento = mkOption {
1081 description = "Commento configuration";
1084 listenPort = mkOption { type = port; description = "Port to listen to"; };
1085 postgresql = mkPsqlOptions "Commento";
1086 smtp = mkSmtpOptions "Commento";
1091 description = "Ympd configuration";
1094 listenPort = mkOption { type = port; description = "Port to listen to"; };
1096 description = "MPD configuration";
1099 password = mkOption { type = str; description = "Password to access MPD host"; };
1100 host = mkOption { type = str; description = "Host for MPD"; };
1101 port = mkOption { type = port; description = "Port to access MPD host"; };
1109 description = "Yourls configuration";
1112 mysql = mkMysqlOptions "Yourls" {};
1113 ldap = mkLdapOptions "Yourls" {};
1114 cookieKey = mkOption { type = str; description = "Cookie key"; };
1121 websites = mkOption {
1122 description = "Websites configurations";
1126 description = "Immae configuration by environment";
1130 description = "Temp configuration";
1133 ldap = mkLdapOptions "Immae temp" {
1134 filter = mkOption { type = str; description = "Filter for user access"; };
1142 isabelle = mkOption {
1143 description = "Isabelle configurations by environment";
1146 atenSubmodule = mkOption {
1147 description = "environment configuration";
1150 environment = mkOption { type = str; description = "Symfony environment"; };
1151 secret = mkOption { type = str; description = "Symfony App secret"; };
1152 postgresql = mkPsqlOptions "Aten";
1159 aten_production = atenSubmodule;
1160 aten_integration = atenSubmodule;
1161 iridologie = mkOption {
1162 description = "environment configuration";
1165 environment = mkOption { type = str; description = "SPIP environment"; };
1166 mysql = mkMysqlOptions "Iridologie" {};
1167 ldap = mkLdapOptions "Iridologie" {};
1175 description = "Chloe configurations by environment";
1178 chloeSubmodule = mkOption {
1179 description = "environment configuration";
1182 environment = mkOption { type = str; description = "SPIP environment"; };
1183 mysql = mkMysqlOptions "Chloe" {};
1184 ldap = mkLdapOptions "Chloe" {};
1191 production = chloeSubmodule;
1192 integration = chloeSubmodule;
1196 connexionswing = mkOption {
1197 description = "Connexionswing configurations by environment";
1200 csSubmodule = mkOption {
1201 description = "environment configuration";
1204 environment = mkOption { type = str; description = "Symfony environment"; };
1205 mysql = mkMysqlOptions "Connexionswing" {};
1206 secret = mkOption { type = str; description = "Symfony App secret"; };
1207 email = mkOption { type = str; description = "Symfony email notification"; };
1214 production = csSubmodule;
1215 integration = csSubmodule;
1220 description = "Naturaloutil configuration";
1223 mysql = mkMysqlOptions "Naturaloutil" {};
1224 server_admin = mkOption { type = str; description = "Server admin e-mail"; };
1228 telio_tortay = mkOption {
1229 description = "Telio Tortay configuration";
1232 server_admin = mkOption { type = str; description = "Server admin e-mail"; };
1236 ludivine = mkOption {
1237 description = "Ludivinecassal configurations by environment";
1240 lcSubmodule = mkOption {
1241 description = "environment configuration";
1244 environment = mkOption { type = str; description = "Symfony environment"; };
1245 mysql = mkMysqlOptions "LudivineCassal" {};
1246 ldap = mkLdapOptions "LudivineCassal" {};
1247 secret = mkOption { type = str; description = "Symfony App secret"; };
1254 production = lcSubmodule;
1255 integration = lcSubmodule;
1260 description = "Emilia configuration";
1263 postgresql = mkPsqlOptions "Emilia";
1267 florian = mkOption {
1268 description = "Florian configuration";
1271 server_admin = mkOption { type = str; description = "Server admin e-mail"; };
1275 nassime = mkOption {
1276 description = "Nassime configuration";
1279 server_admin = mkOption { type = str; description = "Server admin e-mail"; };
1283 piedsjaloux = mkOption {
1284 description = "Piedsjaloux configurations by environment";
1287 pjSubmodule = mkOption {
1288 description = "environment configuration";
1291 environment = mkOption { type = str; description = "Symfony environment"; };
1292 mysql = mkMysqlOptions "Piedsjaloux" {};
1293 secret = mkOption { type = str; description = "Symfony App secret"; };
1300 production = pjSubmodule;
1301 integration = pjSubmodule;
1306 description = "Europe Richie configurations by environment";
1309 mysql = mkMysqlOptions "Richie" {};
1310 smtp_mailer = mkOption {
1311 description = "SMTP mailer configuration";
1314 user = mkOption { type = str; description = "Username"; };
1315 password = mkOption { type = str; description = "Password"; };
1322 tellesflorian = mkOption {
1323 description = "Tellesflorian configurations by environment";
1326 tfSubmodule = mkOption {
1327 description = "environment configuration";
1330 environment = mkOption { type = str; description = "Symfony environment"; };
1331 mysql = mkMysqlOptions "Tellesflorian" {};
1332 secret = mkOption { type = str; description = "Symfony App secret"; };
1333 invite_passwords = mkOption { type = str; description = "Password basic auth"; };
1340 integration = tfSubmodule;
1348 privateFiles = mkOption {
1351 Path to secret files to make available during build
1355 options.hostEnv = mkOption {
1358 default = config.myEnv.servers."${name}";
1359 description = "Host environment";