about summary refs log tree commit diff
path: root/ops/modules/www/self-cache.tvl.fyi.nix
blob: e0f87651dccaf6fc1a6f565bc958caf178944c0f (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
# per-host addresses for publicly reachable caches, for use with builderball
# TODO(tazjin): merge with the public cache module; but needs ACME fixes
{ config, lib, ... }:

{
  imports = [
    ./base.nix
  ];

  config = lib.mkIf config.services.depot.harmonia.enable {
    services.nginx.virtualHosts."${config.networking.hostName}.cache.tvl.fyi" = {
      enableACME = true;
      forceSSL = true;

      extraConfig = ''
        location = /cache-key.pub {
          alias /run/agenix/nix-cache-pub;
        }

        location / {
          proxy_pass http://${config.services.depot.harmonia.settings.bind};
        }
      '';
    };
  };
}