From 7429b3994d62241f778be52e1c4d96afe4f22606 Mon Sep 17 00:00:00 2001 From: John Bargman Date: Sun, 22 Feb 2026 01:22:34 +0000 Subject: yes; perfect --- services/acme_server.nix | 2 +- services/website.nix | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/services/acme_server.nix b/services/acme_server.nix index 5204da1..064ddc1 100644 --- a/services/acme_server.nix +++ b/services/acme_server.nix @@ -7,7 +7,7 @@ in /* trigger the actual certificate generation for additional hostname */ security.acme.certs."${fqdn}" = { - # extraDomainNames = [ "mail.crashoverburn.com"]; + extraDomainNames = [ "*.crashoverburn.com" "*.social.crashoverburn.com" ]; }; secrix.system.secrets.dns01.encrypted.file = ../secrets/gandi_dns01_token; diff --git a/services/website.nix b/services/website.nix index b15ffa2..7edda43 100644 --- a/services/website.nix +++ b/services/website.nix @@ -4,7 +4,7 @@ let in { users.users.nginx.extraGroups = [ "acme" ]; - security.acme.certs."${fqdn}" = + /* security.acme.certs."${fqdn}" = { extraDomainNames = map (x: "${x}.${fqdn}") [ @@ -16,7 +16,7 @@ in "pics.social" ]; # webroot = "/var/lib/acme/acme-challenge/"; - }; + };*/ services.nginx = { enable = true; virtualHosts = { -- cgit v1.2.3