diff --git a/modules/homelab/services/nginx-proxy/default.nix b/modules/homelab/services/.unused/nginx-proxy/default.nix similarity index 68% rename from modules/homelab/services/nginx-proxy/default.nix rename to modules/homelab/services/.unused/nginx-proxy/default.nix index 5f248a2..c08f4d1 100644 --- a/modules/homelab/services/nginx-proxy/default.nix +++ b/modules/homelab/services/.unused/nginx-proxy/default.nix @@ -1,5 +1,31 @@ { pkgs, config, lib, ... }: +/* +no longer in use, replaced by caddy if +wanting to use again here is the boilerplate +for whatt o put in for each service + + # internal reverse proxy entry + services.nginx.virtualHosts."${cfg.url}" = { + forceSSL = true; + sslCertificate = sec."ssl_blakedheld_crt".path; + sslCertificateKey = sec."ssl_blakedheld_key".path; + locations."/" = { + proxyPass = "http://127.0.0.1:${toString cfg.port}"; + }; + }; + + # external reverse proxy entry + services.nginx.virtualHosts."${service}.blakedheld.xyz" = { + forceSSL = true; + sslCertificate = sec."ssl_blakedheld_crt".path; + sslCertificateKey = sec."ssl_blakedheld_key".path; + locations."/" = { + proxyPass = "http://127.0.0.1:${toString cfg.port}"; + }; + }; +*/ + let cfg = config.modules.homelab.nginx-proxy; sec = config.sops.secrets; diff --git a/modules/homelab/services/default_temp.nix b/modules/homelab/services/default_temp.nix index d37a329..05d74d4 100644 --- a/modules/homelab/services/default_temp.nix +++ b/modules/homelab/services/default_temp.nix @@ -76,28 +76,7 @@ in # # open firewall # networking.firewall.allowedTCPPorts = [ cfg.port ]; - # internal reverse proxy entry - services.nginx.virtualHosts."${cfg.url}" = { - forceSSL = true; - sslCertificate = sec."ssl_blakedheld_crt".path; - sslCertificateKey = sec."ssl_blakedheld_key".path; - locations."/" = { - proxyPass = "http://127.0.0.1:${toString cfg.port}"; - }; - }; -# uncomment for service hosted publicly -#--------------------------------------------------------------------------- -# # external reverse proxy entry -# services.nginx.virtualHosts."${service}.blakedheld.xyz" = { -# forceSSL = true; -# sslCertificate = sec."ssl_blakedheld_crt".path; -# sslCertificateKey = sec."ssl_blakedheld_key".path; -# locations."/" = { -# proxyPass = "http://127.0.0.1:${toString cfg.port}"; -# }; -# }; -# # # add to glance public service # modules.services.glance.links. = [{ # title = service; diff --git a/modules/homelab/services/glance/default.nix b/modules/homelab/services/glance/default.nix index 905b49f..1127123 100644 --- a/modules/homelab/services/glance/default.nix +++ b/modules/homelab/services/glance/default.nix @@ -251,7 +251,7 @@ in # add to caddy for reverse proxy services.caddy.virtualHosts."${cfg.url}" = { - serverAliases = [ "${homelab.public_domain}" ]; +# serverAliases = [ "${homelab.public_domain}" ]; extraConfig = '' tls ${sec."ssl_blakedheld_crt".path} ${sec."ssl_blakedheld_key".path} reverse_proxy http://127.0.0.1:${toString cfg.port}