lidarr: move to architect options

This commit is contained in:
Giulio De Pasquale 2024-03-14 11:06:51 +00:00
parent c0ceb7729a
commit 0fb14ce253

View File

@ -1,11 +1,7 @@
{ config, lib, ... }: { config, ... }:
let let
domain = "htlid.giugl.io"; domain = "htlid.giugl.io";
auth_block = (import ./openid.nix { inherit lib; }).openresty_oidc_block;
utilities = import ./utilities.nix { inherit lib config; };
inherit (utilities) architectInterfaceAddress;
in in
{ {
services = { services = {
@ -13,23 +9,17 @@ in
enable = true; enable = true;
group = "media"; group = "media";
}; };
};
nginx.virtualHosts.${domain} = { architect.vhost.${domain} = {
forceSSL = true; dnsInterfaces = [ "lan" "tailscale" ];
enableACME = true;
locations."/" = { locations."/" = {
proxyPass = "http://127.0.0.1:8686"; port = 8686;
extraConfig = auth_block { allowLan = true;
access_role = "lidarr"; allowWAN = false;
allow = [ config.architect.networks."tailscale".net ];
}; };
}; };
};
};
networking.extraHosts = ''
${architectInterfaceAddress "lan"} ${domain}
${architectInterfaceAddress "tailscale"} ${domain}
'';
users.groups.media.members = [ "lidarr" ]; users.groups.media.members = [ "lidarr" ];
} }