From c0d83d93a0a17194afeeeae12e98818f3911f71d Mon Sep 17 00:00:00 2001 From: Alan Pearce Date: Wed, 27 Nov 2024 11:49:24 +0100 Subject: Partially revert "Remove acme-dns" This reverts commit 73f3ca04c8609e76867ea7a0118b211d19ae69a6. --- secrets/acme.age | Bin 0 -> 708 bytes secrets/secrets.nix | 2 ++ system/linde.nix | 3 ++- system/nanopi.nix | 1 + 4 files changed, 5 insertions(+), 1 deletion(-) create mode 100644 secrets/acme.age diff --git a/secrets/acme.age b/secrets/acme.age new file mode 100644 index 00000000..efd8bf3a Binary files /dev/null and b/secrets/acme.age differ diff --git a/secrets/secrets.nix b/secrets/secrets.nix index 1d2ea414..75c174d1 100644 --- a/secrets/secrets.nix +++ b/secrets/secrets.nix @@ -11,6 +11,8 @@ let }; secrets = with machines; { + acme = [ linde nanopi ]; + binarycache = [ linde ]; paperless = [ linde ]; powerdns = [ linde ]; diff --git a/system/linde.nix b/system/linde.nix index 8e6635b6..6e5e54ed 100644 --- a/system/linde.nix +++ b/system/linde.nix @@ -39,6 +39,7 @@ in mode = "400"; symlink = false; }; + acme.file = ../secrets/acme.age; binarycache.file = ../secrets/binarycache.age; dex.file = ../secrets/dex.age; powerdns.file = ../secrets/powerdns.age; @@ -614,7 +615,7 @@ in email = "alan@alanpearce.eu"; dnsProvider = "pdns"; dnsResolver = "1.1.1.1:53"; - credentialsFile = config.age.secrets.powerdns.path; + credentialsFile = config.age.secrets.acme.path; reloadServices = [ "caddy" ]; validMinDays = 32; }; diff --git a/system/nanopi.nix b/system/nanopi.nix index c3f36134..3a95ebfc 100755 --- a/system/nanopi.nix +++ b/system/nanopi.nix @@ -18,6 +18,7 @@ in age.secrets = { dyndns.file = ../secrets/dyndns.age; + acme.file = ../secrets/acme.age; syncthing.file = ../secrets/syncthing.age; }; -- cgit 1.4.1