Compare commits
2 commits
7cba141859
...
e9efefd7d2
Author | SHA1 | Date | |
---|---|---|---|
e9efefd7d2 | |||
7c247098cb |
7 changed files with 23 additions and 8 deletions
8
flake.lock
generated
8
flake.lock
generated
|
@ -282,11 +282,11 @@
|
||||||
"quickshell": "quickshell"
|
"quickshell": "quickshell"
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1738782767,
|
"lastModified": 1738528812,
|
||||||
"narHash": "sha256-768XlaosBb5MX4QhfaOkWbNISoFDA+YUj/C96c6KlQ8=",
|
"narHash": "sha256-NgGylCEFg500fF8bDZfKhS+wSGT4wkHIg567XAwrFZ0=",
|
||||||
"ref": "refs/heads/main",
|
"ref": "refs/heads/main",
|
||||||
"rev": "51f3bdd7cb2330c4863ad81896ca20ce09e5cf01",
|
"rev": "f269a01ec07c12a19482caacbf67223a4eab22d3",
|
||||||
"revCount": 105,
|
"revCount": 104,
|
||||||
"type": "git",
|
"type": "git",
|
||||||
"url": "https://git.ccnlc.eu/nydragon/nysh.git"
|
"url": "https://git.ccnlc.eu/nydragon/nysh.git"
|
||||||
},
|
},
|
||||||
|
|
|
@ -13,8 +13,7 @@ in
|
||||||
imports = [
|
imports = [
|
||||||
(modulesPath + "/profiles/qemu-guest.nix")
|
(modulesPath + "/profiles/qemu-guest.nix")
|
||||||
./disk-config.nix
|
./disk-config.nix
|
||||||
./forgejo.nix
|
./forgejo
|
||||||
./forgejo-runner.nix
|
|
||||||
./headscale
|
./headscale
|
||||||
./fail2ban.nix
|
./fail2ban.nix
|
||||||
];
|
];
|
||||||
|
|
|
@ -4,6 +4,10 @@ let
|
||||||
sshPort = 2222;
|
sshPort = 2222;
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
|
imports = [
|
||||||
|
./runner.nix
|
||||||
|
];
|
||||||
|
|
||||||
systemd.tmpfiles.rules =
|
systemd.tmpfiles.rules =
|
||||||
let
|
let
|
||||||
# Disallow crawlers from indexing this site.
|
# Disallow crawlers from indexing this site.
|
|
@ -2,6 +2,7 @@
|
||||||
pkgs,
|
pkgs,
|
||||||
options,
|
options,
|
||||||
lib,
|
lib,
|
||||||
|
self,
|
||||||
...
|
...
|
||||||
}:
|
}:
|
||||||
let
|
let
|
||||||
|
@ -13,6 +14,8 @@ let
|
||||||
action = "accept";
|
action = "accept";
|
||||||
inherit src dst users;
|
inherit src dst users;
|
||||||
};
|
};
|
||||||
|
|
||||||
|
shanMeta = self.nixosConfigurations.shan.config.modules.meta;
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
services.headscale.settings.policy.path = pkgs.writeTextFile {
|
services.headscale.settings.policy.path = pkgs.writeTextFile {
|
||||||
|
@ -39,7 +42,7 @@ in
|
||||||
[
|
[
|
||||||
"tag:guest"
|
"tag:guest"
|
||||||
]
|
]
|
||||||
[ "100.64.0.4:443" ]
|
[ "${shanMeta.tailscale.ip}:443" ]
|
||||||
)
|
)
|
||||||
];
|
];
|
||||||
|
|
||||||
|
|
|
@ -28,6 +28,9 @@
|
||||||
};
|
};
|
||||||
|
|
||||||
modules = {
|
modules = {
|
||||||
|
meta = {
|
||||||
|
tailscale.ip = "100.64.0.4";
|
||||||
|
};
|
||||||
system.networking.bluetooth.enable = true;
|
system.networking.bluetooth.enable = true;
|
||||||
container = {
|
container = {
|
||||||
kitchenowl = {
|
kitchenowl = {
|
||||||
|
|
|
@ -1,7 +1,7 @@
|
||||||
{ lib, ... }:
|
{ lib, ... }:
|
||||||
let
|
let
|
||||||
inherit (lib) mkOption stringLength;
|
inherit (lib) mkOption stringLength;
|
||||||
inherit (lib.types) str strMatching;
|
inherit (lib.types) str strMatching nullOr;
|
||||||
|
|
||||||
validateUserName =
|
validateUserName =
|
||||||
x:
|
x:
|
||||||
|
@ -24,5 +24,11 @@ in
|
||||||
# Should handle multiple users one day? maybe...
|
# Should handle multiple users one day? maybe...
|
||||||
description = "This system's primary user.";
|
description = "This system's primary user.";
|
||||||
};
|
};
|
||||||
|
tailscale = {
|
||||||
|
ip = mkOption {
|
||||||
|
default = null;
|
||||||
|
type = nullOr str;
|
||||||
|
};
|
||||||
|
};
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
Loading…
Add table
Reference in a new issue