From 4851bbf9d96119f82c403722c137afde9e56f11c Mon Sep 17 00:00:00 2001 From: Linnnus Date: Mon, 18 Sep 2023 17:23:37 +0200 Subject: Add DDNS to ahmed --- .gitignore | 3 +++ hosts/ahmed/cloudflare-ddns/default.nix | 23 +++++++++++++++++++++++ hosts/ahmed/configuration.nix | 1 + 3 files changed, 27 insertions(+) create mode 100644 hosts/ahmed/cloudflare-ddns/default.nix diff --git a/.gitignore b/.gitignore index adbc2b5..8c60df4 100644 --- a/.gitignore +++ b/.gitignore @@ -1,3 +1,6 @@ # Generated symlink result */result + +# Secret files +*.env diff --git a/hosts/ahmed/cloudflare-ddns/default.nix b/hosts/ahmed/cloudflare-ddns/default.nix new file mode 100644 index 0000000..77c799c --- /dev/null +++ b/hosts/ahmed/cloudflare-ddns/default.nix @@ -0,0 +1,23 @@ +# This module sets up cloudflare-dyndns for . + +{ lib, ... }: + +let + +in +{ + my.secrets.cloudflare-ddns = { + source = ./secrets.env; + dest = "/run/keys/cloudflare-ddns.env"; + }; + + services.cloudflare-dyndns = { + enable = true; + apiTokenFile = "/run/keys/cloudflare-ddns.env"; + proxied = true; + domains = [ "linus.onl" ]; + }; + + # Override the systemd service generated by `services.cloudflare-dyndns` to wait for key to be decrypted. + systemd.services.cloudflare-dyndns.after = [ "cloudflare-ddns-key.service" ]; +} diff --git a/hosts/ahmed/configuration.nix b/hosts/ahmed/configuration.nix index 2e6a9a7..f0ed279 100644 --- a/hosts/ahmed/configuration.nix +++ b/hosts/ahmed/configuration.nix @@ -9,6 +9,7 @@ ./hardware-configuration.nix ./ssh.nix ./disable-screen.nix + ./cloudflare-ddns ]; # Create the main user. -- cgit v1.2.3