hainich/nginx: disable interest cohort globally
This commit is contained in:
parent
0c55ccb47b
commit
25568db129
1 changed files with 25 additions and 20 deletions
|
@ -25,7 +25,11 @@
|
||||||
};
|
};
|
||||||
|
|
||||||
networking.firewall.allowedTCPPorts = [ 1935 ];
|
networking.firewall.allowedTCPPorts = [ 1935 ];
|
||||||
services.nginx.appendConfig = ''
|
services.nginx = {
|
||||||
|
appendHttpConfig = ''
|
||||||
|
add_header Permissions-Policy "interest-cohort=()";
|
||||||
|
'';
|
||||||
|
appendConfig = ''
|
||||||
rtmp {
|
rtmp {
|
||||||
server {
|
server {
|
||||||
listen 1935;
|
listen 1935;
|
||||||
|
@ -41,11 +45,12 @@
|
||||||
record_path /data/ingest;
|
record_path /data/ingest;
|
||||||
record_unique on;
|
record_unique on;
|
||||||
|
|
||||||
# include /var/secrets/ingest.conf;
|
# include /var/secrets/ingest.conf;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
'';
|
'';
|
||||||
|
};
|
||||||
|
|
||||||
systemd.services.nginx.serviceConfig.ReadWriteDirectories = "/data/ingest /var/secrets";
|
systemd.services.nginx.serviceConfig.ReadWriteDirectories = "/data/ingest /var/secrets";
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue