try to get adguard login working
This commit is contained in:
@@ -27,7 +27,7 @@ in {
|
||||
networking.firewall.allowedUDPPorts = [ 53 ];
|
||||
|
||||
security.acme.certs."${cfg.fqdn}".server =
|
||||
"https://127.0.0.1:8443/acme/acme/directory";
|
||||
"https://127.0.0.1:8443/acme/kop-acme/directory";
|
||||
# nginx reverse proxy
|
||||
services.nginx.virtualHosts.${cfg.fqdn} = {
|
||||
forceSSL = cfg.useHttps;
|
||||
@@ -47,7 +47,7 @@ in {
|
||||
services.adguardhome = {
|
||||
enable = true;
|
||||
settings = {
|
||||
schema_version = 20;
|
||||
schema_version = 28;
|
||||
users = [{
|
||||
name = "admin";
|
||||
password =
|
||||
@@ -59,6 +59,7 @@ in {
|
||||
protection_enabled = true;
|
||||
filtering_enabled = true;
|
||||
upstream_dns = [
|
||||
"https://dns10.quad9.net/dns-query"
|
||||
"https://doh.tiar.app/dns-query"
|
||||
"tls://getdnsapi.net"
|
||||
"https://dns.adguard-dns.com/dns-query"
|
||||
@@ -156,7 +157,6 @@ in {
|
||||
}
|
||||
];
|
||||
dhcp = { enabled = false; };
|
||||
dhcpv6 = { enabled = false; };
|
||||
tls = { enabled = false; };
|
||||
};
|
||||
};
|
||||
|
||||
@@ -55,7 +55,7 @@ in
|
||||
after = [ "step-ca.service" ];
|
||||
};
|
||||
|
||||
security.acme.certs."${fqdn}".server = "https://127.0.0.1:8443/acme/acme/directory";
|
||||
security.acme.certs."${fqdn}".server = "https://127.0.0.1:8443/acme/kop-acme/directory";
|
||||
# nginx reverse proxy
|
||||
services.nginx.virtualHosts.${fqdn} = {
|
||||
forceSSL = useHttps;
|
||||
|
||||
@@ -49,7 +49,7 @@ in
|
||||
nginx.enable = false;
|
||||
};
|
||||
|
||||
security.acme.certs."${fqdn}".server = "https://127.0.0.1:8443/acme/acme/directory";
|
||||
security.acme.certs."${fqdn}".server = "https://127.0.0.1:8443/acme/kop-acme/directory";
|
||||
services.nginx.virtualHosts."${fqdn}" = {
|
||||
forceSSL = useHttps;
|
||||
enableACME = useHttps;
|
||||
|
||||
@@ -94,7 +94,7 @@ in lib.mkIf cfg.enable {
|
||||
# '';
|
||||
# };
|
||||
security.acme.certs."${fqdn}" = lib.mkIf useStepCa {
|
||||
server = "https://127.0.0.1:8443/acme/acme/directory";
|
||||
server = "https://127.0.0.1:8443/acme/kop-acme/directory";
|
||||
};
|
||||
services.nginx.virtualHosts."${fqdn}" = {
|
||||
forceSSL = useHttps;
|
||||
|
||||
@@ -6,7 +6,7 @@ let
|
||||
in
|
||||
{
|
||||
imports = [ ./postgres.nix ];
|
||||
security.acme.certs."${fqdn}".server = "https://127.0.0.1:8443/acme/acme/directory";
|
||||
security.acme.certs."${fqdn}".server = "https://127.0.0.1:8443/acme/kop-acme/directory";
|
||||
services.nginx = {
|
||||
enable = true;
|
||||
|
||||
|
||||
@@ -72,7 +72,7 @@ in
|
||||
provisioners = [
|
||||
{
|
||||
type = "ACME";
|
||||
name = "acme";
|
||||
name = "kop-acme";
|
||||
forceCN = true;
|
||||
}
|
||||
];
|
||||
|
||||
Reference in New Issue
Block a user