summaryrefslogtreecommitdiff
path: root/modules/nixos/server/services/cloudflared.nix
diff options
context:
space:
mode:
Diffstat (limited to 'modules/nixos/server/services/cloudflared.nix')
-rw-r--r--modules/nixos/server/services/cloudflared.nix41
1 files changed, 0 insertions, 41 deletions
diff --git a/modules/nixos/server/services/cloudflared.nix b/modules/nixos/server/services/cloudflared.nix
deleted file mode 100644
index 803e7da..0000000
--- a/modules/nixos/server/services/cloudflared.nix
+++ /dev/null
@@ -1,41 +0,0 @@
-{
- config,
- lib,
- self,
- ...
-}: let
- cfg = config.server.services.cloudflared;
- inherit (lib) mkEnableOption mkIf;
-in {
- options.server.services.cloudflared = {
- enable = mkEnableOption "cloudflared";
- };
-
- config = mkIf cfg.enable {
- age.secrets.cloudflaredCreds = {
- file = "${self}/secrets/hosts/${config.networking.hostName}/cloudflaredCreds.age";
- mode = "400";
- owner = "cloudflared";
- group = "cloudflared";
- };
-
- services.cloudflared = {
- enable = true;
- tunnels = {
- "${config.networking.hostName}-nginx" = {
- default = "http_status:404";
-
- ingress = let
- inherit (config.services) nginx;
- in
- lib.genAttrs
- (builtins.attrNames nginx.virtualHosts)
- (_: {service = "http://localhost:${builtins.toString nginx.defaultHTTPListenPort}";});
-
- originRequest.noTLSVerify = true;
- credentialsFile = config.age.secrets.cloudflaredCreds.path;
- };
- };
- };
- };
-}