fix certs

This commit is contained in:
Stuce 2025-11-13 17:11:01 +01:00
parent 16910ee379
commit f7ab003036
2 changed files with 7 additions and 3 deletions

View file

@ -18,6 +18,7 @@
nix.settings.experimental-features = [ "nix-command" "flakes" ];
# Use the GRUB 2 boot loader.
networking.usePredictableInterfaceNames = true;
nix.settings.trusted-users = [ "stuce" ];
users.users.stuce = {
isNormalUser = true;
home = "/home/stuce";

View file

@ -34,9 +34,12 @@ in {
};
virtualHosts."eink.${host}" = {
forceSSL = true;
sslCertificateKey = "/etc/nginx/certs/ca.key";
sslCertificate = "/etc/nginx/certs/ca.crt";
extraConfig = "ssl_client_certificate /etc/nginx/certs/client.crt;";
# sslCertificateKey = "/etc/nginx/certs/ca.key";
# sslCertificate = "/etc/nginx/certs/ca.crt";
extraConfig = '''
ssl_client_certificate /etc/nginx/certs/client.crt;
ssl_verify_client on;
''';
locations."/" = {
# TODO fastcgi to the script
extraConfig = "return 200 'handshake worked !!!';";