mirror of
https://github.com/nmasur/dotfiles
synced 2024-11-27 00:45:37 +00:00
d021baa1bb
required because they don't share all attributes
38 lines
982 B
Nix
38 lines
982 B
Nix
{ config, pkgs, lib, ... }: {
|
|
|
|
options = {
|
|
caddy.enable = lib.mkEnableOption "Caddy reverse proxy.";
|
|
caddy.routes = lib.mkOption {
|
|
type = lib.types.listOf lib.types.attrs;
|
|
description = "Caddy JSON routes for http servers";
|
|
default = [ ];
|
|
};
|
|
caddy.blocks = lib.mkOption {
|
|
type = lib.types.listOf lib.types.attrs;
|
|
description = "Caddy JSON error blocks for http servers";
|
|
default = [ ];
|
|
};
|
|
};
|
|
|
|
config = lib.mkIf (config.caddy.enable && config.caddy.routes != [ ]) {
|
|
|
|
services.caddy = {
|
|
enable = true;
|
|
adapter = "''"; # Required to enable JSON
|
|
configFile = pkgs.writeText "Caddyfile" (builtins.toJSON {
|
|
apps.http.servers.main = {
|
|
listen = [ ":443" ];
|
|
routes = config.caddy.routes;
|
|
errors.routes = config.caddy.blocks;
|
|
};
|
|
});
|
|
|
|
};
|
|
|
|
networking.firewall.allowedTCPPorts = [ 80 443 ];
|
|
networking.firewall.allowedUDPPorts = [ 443 ];
|
|
|
|
};
|
|
|
|
}
|