From 6f0d8a6af9126b8993c9687ec415a657aec9434d Mon Sep 17 00:00:00 2001 From: schweby Date: Mon, 17 Jan 2022 22:37:43 +0100 Subject: [PATCH] hotfix: disable mumble website disable the mumble website because of cert permission issues causes by ad9c1f44812af3ee8b875f5d15b130b5529629f1 nginx doesn't start because it can read the cert of the website --- services/murmur.nix | 20 ++++++++++---------- 1 file changed, 10 insertions(+), 10 deletions(-) diff --git a/services/murmur.nix b/services/murmur.nix index b0ba07e..e73fcdc 100644 --- a/services/murmur.nix +++ b/services/murmur.nix @@ -28,16 +28,16 @@ in networking.firewall.allowedTCPPorts = [ config.services.murmur.port ]; networking.firewall.allowedUDPPorts = [ config.services.murmur.port ]; - services.nginx.virtualHosts = - let vhost = { - forceSSL = true; - enableACME = true; - root = mumblesite.outPath; - }; - in { - "mumble.infra4future.de" = vhost; - "mumble.hacc.space" = vhost; - }; +# services.nginx.virtualHosts = +# let vhost = { +# forceSSL = true; +# enableACME = true; +# root = mumblesite.outPath; +# }; +# in { +# "mumble.infra4future.de" = vhost; +# "mumble.hacc.space" = vhost; +# }; # set ACLs so that the murmur user can read the certificates security.acme.certs."mumble.hacc.space".postRun = "${pkgs.acl}/bin/setfacl -Rm u:murmur:rX /var/lib/acme/mumble.hacc.space";