haccfiles/hosts
stuebinm 2e1c865ebf Patch mattermost module to allow secrets outside the nix store
This adds a custom mattermost module (`services.mattermost-patched`) which is
identical to the one in nixpkgs except that it also has an option `secretConfig`,
which should point to a file containing all secret parts of the mattermost config
(e.g. mailserver password), and which is merged with the config genereated from
the module at startup time.

This allows us to have a (almost) immutable config without having secrets in the
nix store.

Before deploying this, add a secrets file at /var/lib/mattermost/screts.json
(on the host — there is a bind mount in place so we won't have to enter the
container each time to change something).
2021-03-24 22:25:55 +01:00
..
hainich Patch mattermost module to allow secrets outside the nix store 2021-03-24 22:25:55 +01:00
nixda remove hexchen from the project 2021-01-25 11:37:34 +00:00