From de442ba8ada44d26db9203f96560f077cc10ab17 Mon Sep 17 00:00:00 2001 From: lassulus Date: Fri, 17 Dec 2021 18:54:10 +0100 Subject: ma binary-cache server: use key without secret.service --- makefu/2configs/binary-cache/server.nix | 15 +-------------- 1 file changed, 1 insertion(+), 14 deletions(-) diff --git a/makefu/2configs/binary-cache/server.nix b/makefu/2configs/binary-cache/server.nix index 2e05fd52e..c1ae16e29 100644 --- a/makefu/2configs/binary-cache/server.nix +++ b/makefu/2configs/binary-cache/server.nix @@ -6,22 +6,9 @@ services.nix-serve = { enable = true; port = 5001; - secretKeyFile = config.krebs.secret.files.nix-serve-key.path; + secretKeyFile = toString + "/nix-serve.key"; }; - systemd.services.nix-serve = { - after = [ - config.krebs.secret.files.nix-serve-key.service - ]; - partOf = [ - config.krebs.secret.files.nix-serve-key.service - ]; - }; - krebs.secret.files.nix-serve-key = { - path = "/run/secret/nix-serve.key"; - owner.name = "nix-serve"; - source-path = toString + "/nix-serve.key"; - }; services.nginx = { enable = true; virtualHosts."cache.euer.krebsco.de" = { -- cgit v1.2.3