]> git.immae.eu Git - perso/Immae/Config/Nix.git/blobdiff - modules/private/websites/syden/peertube.nix
Write peertube flake
[perso/Immae/Config/Nix.git] / modules / private / websites / syden / peertube.nix
index 2ad72175130e9e0322f75ce002d6e0e1c30b77ed..5970cca5891e80a0021eaf079e1c994a98825673 100644 (file)
@@ -12,6 +12,7 @@ in
   config = lib.mkIf scfg.enable {
     services.duplyBackup.profiles.syden_peertube = {
       rootDir = dataDir;
+      remotes = ["eriomem" "ovh"];
     };
     users.users.peertube = {
       uid = config.ids.uids.peertube;
@@ -23,7 +24,7 @@ in
     users.groups.peertube.gid = config.ids.gids.peertube;
 
     secrets.keys = [{
-      dest = "webapps/syden-peertube";
+      dest = "websites/syden/peertube";
       user = "peertube";
       group = "peertube";
       permissions = "0640";
@@ -33,7 +34,7 @@ in
           port: ${toString env.listenPort}
         webserver:
           https: true
-          hostname: 'syden.immae.eu'
+          hostname: 'record-links.immae.eu'
           port: 443
         database:
           hostname: '${env.postgresql.socket}'
@@ -69,7 +70,7 @@ in
 
     services.filesWatcher.syden_peertube = {
       restart = true;
-      paths = [ "/var/secrets/webapps/syden-peertube" ];
+      paths = [ config.secrets.fullPaths."websites/syden/peertube" ];
     };
 
     systemd.services.syden_peertube = {
@@ -86,7 +87,7 @@ in
 
       script = ''
         install -m 0750 -d ${dataDir}/config
-        ln -sf /var/secrets/webapps/syden-peertube ${dataDir}/config/production.yaml
+        ln -sf ${config.secrets.fullPaths."websites/syden/peertube"} ${dataDir}/config/production.yaml
         ln -sf ${package}/config/default.yaml ${dataDir}/config/default.yaml
         exec npm run start
       '';
@@ -109,11 +110,12 @@ in
     };
 
     services.websites.env.production.vhostConfs.syden_peertube = {
-      certName    = "eldiron";
-      addToCerts  = true;
-      hosts       = [ "syden.immae.eu" ];
-      root        = null;
-      extraConfig = [ ''
+      certName     = "syden";
+      addToCerts   = true;
+      certMainHost = "record-links.immae.eu";
+      hosts        = [ "record-links.immae.eu" ];
+      root         = null;
+      extraConfig  = [ ''
           RewriteEngine On
 
           RewriteCond %{REQUEST_URI}  ^/socket.io            [NC]