radarr: use vhost

This commit is contained in:
Giulio De Pasquale 2023-06-05 00:46:39 +02:00
parent acb47f5a73
commit da1b08c44a

View File

@ -2,36 +2,25 @@
let
domain = "htrad.giugl.io";
auth_block = (import ./openid.nix { inherit lib; }).openresty_oidc_block;
utilities = import ./utilities.nix { inherit lib config; };
inherit (utilities) architectInterfaceAddress;
in
{
services = {
radarr = {
enable = true;
group = "media";
};
services.radarr = {
enable = true;
group = "media";
};
nginx.virtualHosts.${domain} = {
forceSSL = true;
enableACME = true;
locations."/" = {
proxyPass = "http://127.0.0.1:7878";
extraConfig = auth_block {
access_role = "radarr";
};
};
architect.vhost.${domain} = with config.architect.networks; {
dnsInterfaces = [ "lan" "wireguard" "tailscale" ];
locations."/" = {
port = 7878;
deny = [ lan.devices.router.address ];
allow = [
lan.net
wireguard.net
tailscale.net
];
};
};
networking.extraHosts = ''
${architectInterfaceAddress "lan"} ${domain}
${architectInterfaceAddress "wireguard"} ${domain}
${architectInterfaceAddress "tailscale"} ${domain}
'';
users.groups.media.members = [ "radarr" ];
}