fix allow extern ssl connections
This commit is contained in:
parent
86bbed9f4e
commit
57f02e2dbe
2 changed files with 9 additions and 1 deletions
|
|
@ -65,6 +65,7 @@ rec {
|
||||||
reverse_proxy = {
|
reverse_proxy = {
|
||||||
port = 6167;
|
port = 6167;
|
||||||
ssl = true;
|
ssl = true;
|
||||||
|
allowExternConnections = true;
|
||||||
endpoints = ["/_matrix"];
|
endpoints = ["/_matrix"];
|
||||||
};
|
};
|
||||||
domainOverride = "v2202603344638441294.bestsrv.de";
|
domainOverride = "v2202603344638441294.bestsrv.de";
|
||||||
|
|
|
||||||
|
|
@ -28,6 +28,13 @@ let
|
||||||
listen = [ {addr = "0.0.0.0"; port = 80;} {addr = "0.0.0.0"; port = 443; ssl=true;} ];
|
listen = [ {addr = "0.0.0.0"; port = 80;} {addr = "0.0.0.0"; port = 443; ssl=true;} ];
|
||||||
}
|
}
|
||||||
else {};
|
else {};
|
||||||
|
externConnections = if service.reverse_proxy ? allowExternConnections && service.reverse_proxy.allowExternConnections
|
||||||
|
then {
|
||||||
|
extraConfig = ''
|
||||||
|
allow all;
|
||||||
|
'';
|
||||||
|
}
|
||||||
|
else {};
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
serverName = "${domain}";
|
serverName = "${domain}";
|
||||||
|
|
@ -37,7 +44,7 @@ let
|
||||||
allow ${network.network.subnet};
|
allow ${network.network.subnet};
|
||||||
deny all;
|
deny all;
|
||||||
'';
|
'';
|
||||||
} // serverAlias // sslConfig // myExtraConfig;
|
} // serverAlias // sslConfig // externConnections // myExtraConfig;
|
||||||
rproxyServices = builtins.mapAttrs (virtualHostFn) network.reverse_proxy;
|
rproxyServices = builtins.mapAttrs (virtualHostFn) network.reverse_proxy;
|
||||||
serviceNamesMessage = builtins.toString (builtins.attrNames network.reverse_proxy);
|
serviceNamesMessage = builtins.toString (builtins.attrNames network.reverse_proxy);
|
||||||
fallback = {
|
fallback = {
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue