recommendedGzipSettings = true;
recommendedProxySettings = true;
virtualHosts."status.immae.eu" = {
+ acmeRoot = config.security.acme.certs."${name}".webroot;
useACMEHost = name;
forceSSL = true;
locations."/".proxyPass = "http://unix:/run/naemon-status/socket.sock:/";
};
};
- security.acme2.certs."${name}".extraDomains."status.immae.eu" = null;
+ security.acme.certs."${name}" = {
+ extraDomains."status.immae.eu" = null;
+ user = config.services.nginx.user;
+ group = config.services.nginx.group;
+ };
myServices.certificates.enable = true;
networking.firewall.allowedTCPPorts = [ 80 443 ];