summaryrefslogtreecommitdiffstats
path: root/tv/2configs/binary-cache/default.nix
diff options
context:
space:
mode:
authortv <tv@krebsco.de>2022-09-15 20:51:27 +0200
committertv <tv@krebsco.de>2022-09-15 21:36:15 +0200
commit3e6f01c3003558a7db1094742fc2cbedf985cd23 (patch)
treeaab42f3551266d1120055b2dd0377b762401e12c /tv/2configs/binary-cache/default.nix
parent707c6b640dca086634581220614c6094ebbcccbf (diff)
tv binary-cache: drop krebs.secert
Diffstat (limited to 'tv/2configs/binary-cache/default.nix')
-rw-r--r--tv/2configs/binary-cache/default.nix17
1 files changed, 1 insertions, 16 deletions
diff --git a/tv/2configs/binary-cache/default.nix b/tv/2configs/binary-cache/default.nix
index e5342cd5..6ef7a385 100644
--- a/tv/2configs/binary-cache/default.nix
+++ b/tv/2configs/binary-cache/default.nix
@@ -11,22 +11,7 @@
services.nix-serve = {
enable = true;
- secretKeyFile = config.krebs.secret.files.binary-cache-seckey.path;
- };
-
- systemd.services.nix-serve = {
- after = [
- config.krebs.secret.files.binary-cache-seckey.service
- ];
- partOf = [
- config.krebs.secret.files.binary-cache-seckey.service
- ];
- };
-
- krebs.secret.files.binary-cache-seckey = {
- path = "/run/secret/nix-serve.key";
- owner.name = "nix-serve";
- source-path = toString <secrets> + "/nix-serve.key";
+ secretKeyFile = toString <secrets> + "/nix-serve.key";
};
services.nginx = {