set the mollysocket user to fix permissions
This commit is contained in:
parent
4f37f97cc2
commit
0fd416429e
|
@ -1,6 +1,11 @@
|
||||||
{config, ...}: {
|
{config, ...}: let
|
||||||
|
mollySocketUser = "mollysocket";
|
||||||
|
in {
|
||||||
sops.secrets."mollysocket-vapid-key".mode = "0440";
|
sops.secrets."mollysocket-vapid-key".mode = "0440";
|
||||||
sops.secrets."mollysocket-vapid-key".owner = config.users.users.root.name;
|
sops.secrets."mollysocket-vapid-key" = {
|
||||||
|
owner = mollySocketUser;
|
||||||
|
group = mollySocketUser;
|
||||||
|
};
|
||||||
|
|
||||||
services.mollysocket = {
|
services.mollysocket = {
|
||||||
enable = true;
|
enable = true;
|
||||||
|
@ -12,6 +17,10 @@
|
||||||
webserver = true;
|
webserver = true;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
systemd.services.mollysocket.serviceConfig = {
|
||||||
|
User = mollySocketUser;
|
||||||
|
Group = mollySocketUser;
|
||||||
|
};
|
||||||
services.nginx = {
|
services.nginx = {
|
||||||
virtualHosts = {
|
virtualHosts = {
|
||||||
"molly.gladtherescake.eu" = {
|
"molly.gladtherescake.eu" = {
|
||||||
|
|
Loading…
Reference in a new issue