fix(vpn): generate certificate & configure nginx for tailnet

This commit is contained in:
Felix Schröter 2024-01-21 21:41:21 +01:00
parent d0bccd67bd
commit 41a222bc8f
Signed by: felschr
GPG key ID: 671E39E6744C807D

View file

@ -34,5 +34,12 @@ in {
# some options cannot be set immediately
${cfg.package}/bin/tailscale up ${lib.escapeShellArgs cfg.extraUpFlags}
${cfg.package}/bin/tailscale cert ${tailnetHost}
'';
services.nginx.virtualHosts.${tailnetHost} = {
sslCertificate = "/var/lib/tailscale/certs/${tailnetHost}.key";
sslCertificateKey = "/var/lib/tailscale/certs/${tailnetHost}.crt";
};
}