waffentrager: add acme mount from valkyrie
This commit is contained in:
parent
597131aba4
commit
3b285229d7
|
@ -4,7 +4,9 @@
|
||||||
[
|
[
|
||||||
./elements.nix
|
./elements.nix
|
||||||
./postgresql.nix
|
./postgresql.nix
|
||||||
|
./mount-acme.nix
|
||||||
];
|
];
|
||||||
waffentragerService.elements.enable = true;
|
waffentragerService.elements.enable = true;
|
||||||
waffentragerService.postgresql.enable = true;
|
waffentragerService.postgresql.enable = true;
|
||||||
|
waffentragerService.mount-acme.enable = true;
|
||||||
}
|
}
|
|
@ -0,0 +1,19 @@
|
||||||
|
{ materusArg, config, lib, pkgs, ... }:
|
||||||
|
{
|
||||||
|
options.waffentragerService.mount-acme.enable = materusArg.pkgs.lib.mkBoolOpt false "Enable mount-acme";
|
||||||
|
|
||||||
|
config =
|
||||||
|
let
|
||||||
|
cfg = config.waffentragerService.mount-acme;
|
||||||
|
in
|
||||||
|
lib.mkIf cfg.enable {
|
||||||
|
environment.systemPackages = with pkgs; [ sshfs ];
|
||||||
|
systemd.mounts = [{
|
||||||
|
description = "Mount remote acme dir from valkyrie";
|
||||||
|
what = "acme@valkyrie:/var/lib/acme";
|
||||||
|
where = "/var/lib/mnt_acme";
|
||||||
|
type = "fuse.sshfs";
|
||||||
|
options = "reconnect,gid=${builtins.toString config.ids.uids.nginx},_netdev,rw,nosuid,allow_other,default_permissions,follow_symlinks,idmap=user,compression=yes,identityfile=/materus/root/ssh_host_ed25519_key";
|
||||||
|
}];
|
||||||
|
};
|
||||||
|
}
|
Loading…
Reference in New Issue