summary refs log tree commit diff
diff options
authorRory& <>2024-07-03 21:44:54 +0200
committerRory& <>2024-07-04 14:45:02 +0200
commita1152f6ea2b316960aa6a7dc471ba3a034bb417b (patch)
parentServer cleanup (diff)
Server nginx cleanup
22 files changed, 19 insertions, 374 deletions
diff --git a/host/Rory-nginx/services/containers/conduwuit-throwaway/container.nix b/host/Rory-nginx/services/containers/conduwuit-throwaway/container.nix
deleted file mode 100755
index b8781e7..0000000
--- a/host/Rory-nginx/services/containers/conduwuit-throwaway/container.nix
+++ /dev/null
@@ -1,26 +0,0 @@
-{ pkgs, lib, conduit, ... }:
-  privateNetwork = true;
-  autoStart = true;
-  specialArgs = {
-    inherit conduit;
-  };  
-  config = { lib, pkgs, conduit, ... }: {
-    imports = [ ./root.nix ];
-    environment.etc."resolv.conf".text = ''
-      nameserver
-      nameserver
-      nameserver
-      nameserver
-      '';
-    networking.firewall = {
-      enable = true;
-      allowedTCPPorts = [ 80 5432 ];
-    };
-  };  
-  hostAddress = "";
-  localAddress = "";
-  hostAddress6 = "fc00::5";
-  localAddress6 = "fc00::6";
\ No newline at end of file
diff --git a/host/Rory-nginx/services/containers/conduwuit-throwaway/root.nix b/host/Rory-nginx/services/containers/conduwuit-throwaway/root.nix
deleted file mode 100755
index c248559..0000000
--- a/host/Rory-nginx/services/containers/conduwuit-throwaway/root.nix
+++ /dev/null
@@ -1,30 +0,0 @@
-{ config, pkgs, lib, conduit, ... }:
-  imports =
-    [
-      ./services/nginx.nix
-      ./services/conduit.nix
-      ./services/pantalaimon.nix
-    ];
-  environment.systemPackages = with pkgs; [
-    wget
-    neofetch
-    lnav
-    zsh
-    git
-    lsd
-    htop
-    btop
-    duf
-    kitty.terminfo
-    neovim
-    tmux
-    jq
-    yq
-    pv
-    dig
-    cloud-utils
-  ];
\ No newline at end of file
diff --git a/host/Rory-nginx/services/containers/conduwuit-throwaway/services/conduit.nix b/host/Rory-nginx/services/containers/conduwuit-throwaway/services/conduit.nix
deleted file mode 100755
index b5296e4..0000000
--- a/host/Rory-nginx/services/containers/conduwuit-throwaway/services/conduit.nix
+++ /dev/null
@@ -1,22 +0,0 @@
-{ config, pkgs, lib, conduit, ... }:
-  services.matrix-conduit = {
-    package = conduit.packages.${pkgs.system}.default;
-    enable = true;
- = {
-      address = "";
-      server_name = "";
-      database_backend = "rocksdb";
-      enable_lightning_bolt = true;
-      max_concurrent_requests = 1000;
-      allow_check_for_updates = false;
-      allow_registration = true;
-      yes_i_am_very_very_sure_i_want_an_open_registration_server_prone_to_abuse = true;
-      allow_guest_registration = true;
-      disable_federation = false;
-      enable_federation = true;
-    };
-  };
diff --git a/host/Rory-nginx/services/containers/conduwuit-throwaway/services/nginx.nix b/host/Rory-nginx/services/containers/conduwuit-throwaway/services/nginx.nix
deleted file mode 100755
index a33c784..0000000
--- a/host/Rory-nginx/services/containers/conduwuit-throwaway/services/nginx.nix
+++ /dev/null
@@ -1,100 +0,0 @@
-{ config, pkgs, lib, ... }:
-  services = {
-    nginx = {
-      enable = true;
-      package = pkgs.nginxQuic;
-      recommendedProxySettings = true;
-      recommendedTlsSettings = true;
-      recommendedZstdSettings = true;
-      recommendedGzipSettings = true;
-      recommendedBrotliSettings = true;
-      recommendedOptimisation = true;
-      appendConfig = ''
-        worker_processes 16;
-        '';
-       eventsConfig = ''
-        #use kqueue;
-        worker_connections 512;
-        '';
-      appendHttpConfig = ''
-        #sendfile on;
-        disable_symlinks off;
-      '';
-      additionalModules = with pkgs.nginxModules; [
-        moreheaders
-      ];
-      virtualHosts = {
-        "" = {
-          locations."/" = {
-            proxyPass = ""; 
-            extraConfig = ''
-              if ($request_method = 'OPTIONS') {
-                more_set_headers 'Access-Control-Allow-Origin: *';
-                more_set_headers 'Access-Control-Allow-Methods: *';
-                #
-                # Custom headers and headers various browsers *should* be OK with but aren't
-                #
-                more_set_headers 'Access-Control-Allow-Headers: *';
-                #
-                # Tell client that this pre-flight info is valid for 20 days
-                #
-                more_set_headers 'Access-Control-Max-Age: 1728000';
-                more_set_headers 'Content-Type: text/plain; charset=utf-8';
-                more_set_headers 'Content-Length: 0';
-                return 204;
-              }
-            '';
-          };
-          locations."= /.well-known/matrix/server".extraConfig = ''
-            more_set_headers 'Content-Type application/json';
-            more_set_headers 'Access-Control-Allow-Origin *';
-            return 200 '${builtins.toJSON {
-              "m.server" = "";
-            }}';
-          ''; 
-          locations."= /.well-known/matrix/client".extraConfig = ''
-            more_set_headers 'Content-Type application/json';
-            more_set_headers 'Access-Control-Allow-Origin *';
-            return 200 '${builtins.toJSON {
-              "m.homeserver".base_url = "";
-            }
-            }';
-          ''; 
-          locations."= /.well-known/matrix/support".extraConfig = ''
-            more_set_headers 'Content-Type application/json';
-            more_set_headers 'Access-Control-Allow-Origin *';
-            return 200 '${builtins.toJSON {
-              admins = [
-                  {
-                    matrix_id = "";
-                    role = "admin";
-                  }
-                  {
-                    matrix_id = "";
-                    role = "admin";
-                  }
-                  {
-                    matrix_id = "";
-                    role = "admin";
-                  }
-                  {
-                    matrix_id = "";
-                    role = "admin";
-                  }
-                ];
-              }
-            }';
-          '';
-        };
-      };
-    };
-  };
- = {
-    LimitNOFILE=5000000;
-  };
-  security.acme.acceptTerms = true;
- = "";
diff --git a/host/Rory-nginx/services/containers/conduwuit-throwaway/services/pantalaimon.nix b/host/Rory-nginx/services/containers/conduwuit-throwaway/services/pantalaimon.nix
deleted file mode 100755
index b5f7f77..0000000
--- a/host/Rory-nginx/services/containers/conduwuit-throwaway/services/pantalaimon.nix
+++ /dev/null
@@ -1,16 +0,0 @@
-{ config, pkgs, lib, ... }:
-  services.pantalaimon-headless = {
-    instances."localhost" = {
-      homeserver = "http://localhost:6167";
-      ssl = false;
-      extraSettings = {
-        "DropOldKeys" = true;
-        "UseKeyring" = false;
-      };
-    };
-  };
diff --git a/host/Rory-nginx/services/matrix/draupnir.nix b/host/Rory-nginx/services/matrix/draupnir.nix
index 12d258a..65c5a21 100755
--- a/host/Rory-nginx/services/matrix/draupnir.nix
+++ b/host/Rory-nginx/services/matrix/draupnir.nix
@@ -41,7 +41,6 @@
-            "ioawejfioanwfoiawnfionf23iofn23ion312ion231ion12oi4n23io4n23io4"
           minutesBeforeTrusting = 0;
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index a859950..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  root = "/data/nginx/html_boorunav";
-  enableACME = true;
-  addSSL = true;
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index e28c2e0..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  root = "/data/nginx/html_catgirlsaresexy";
-  enableACME = true;
-  addSSL = true;
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/nginx.nix b/host/Rory-nginx/services/nginx/nginx.nix
index 79a968a..0e993a1 100755
--- a/host/Rory-nginx/services/nginx/nginx.nix
+++ b/host/Rory-nginx/services/nginx/nginx.nix
@@ -1,6 +1,6 @@
 { config, pkgs, lib, ... }:
-  serveDir = config : {
+  serveDir = config: {
     enableACME = if config ? ssl then config.ssl else true;
     addSSL = if config ? ssl then config.ssl else true;
     root = if config ? path then config.path else builtins.throw "path is required";
@@ -40,28 +40,30 @@ in {
       virtualHosts = {
-        "" = import ./;
-        "" = import ./;
-        "" = import ./;
+        "" = serveDir { path = "/data/nginx/html_boorunav"; };
+        "" = serveDir { path = "/data/nginx/html_catgirlsaresexy"; };
+        "" = serveDir { path = "/data/nginx/html_sugarcanemc"; };
+        "" = serveDir { path = "/data/nginx/html_siliconheaven"; };
+        "" = serveDir { path = "/data/nginx/html_lfs"; };
+        "" = serveDir { path = "/data/nginx/html_git"; };
+        "" = serveDir { path = "/data/nginx/html_files"; };
+        "" = serveDir { path = "/data/nginx/html_spigotav"; };
+        "" = serveDir { path = "/data/nginx/html_terrarchive"; };
+        "" = serveDir { path = "/data/nginx/html_vives"; };
+        "" = serveDir { path = "/data/nginx/html_git"; };
         "" = import ./;
         "" = import ./;
-        "" = import ./;
         "" = import ./;
-        "" = import ./;
-        "" = import ./;
-        "" = import ./;
-        "" = import ./;
-        "" = import ./;
         "" = import ./;
         #"" = import ./;
-        "" = import ./;
-        "" = import ./;
+        "" = serveDir { path = "/data/nginx/html_lfs"; };
+        "" = import ./;
         "" = import ./;
-        #"" = import ./;
-        "" = import ./;
-        "" = import ./;
-        "" = import ./;
         #"" = import ./;
@@ -71,7 +73,6 @@ in {
         "" = import ./;
         "" = import ./;
         "" = import ./;
-        "" = import ./;
         "" = import ./;
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index b50823b..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,14 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  locations = {
-    "/" = {
-      proxyPass = "";
-      proxyWebsockets = true;
-      extraConfig =
-        "proxy_ssl_server_name on;" +
-        "proxy_pass_header Authorization;"
-        ;
-    };
-  };
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 812e946..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,13 +0,0 @@
-  root = "/data/nginx/html_git";
-  enableACME = true;
-  addSSL = true;
-  extraConfig = ''
-    autoindex on;
-    more_set_headers 'Access-Control-Allow-Origin: *';
-    more_set_headers 'Access-Control-Allow-Methods: GET, POST, OPTIONS';
-    more_set_headers 'Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range';
-    more_set_headers 'Access-Control-Expose-Headers: Content-Length,Content-Range';
-    more_set_headers 'Access-Control-Allow-Credentials: true';
-  '';
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index f944eea..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  root = "/data/nginx/html_lfs";
-  enableACME = true;
-  addSSL = true;
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 4d02dbe..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,15 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  http3 = true;
-  http3_hq = true;
-  kTLS = true;
-  extraConfig = ''
-    brotli off;
-    '';
-  locations = {
-    "/" = {
-      proxyPass = "";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 772cde1..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  root = "/data/nginx/html_sugarcanemc";
-  enableACME = true;
-  addSSL = true;
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 45de296..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_files";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 3006b57..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,9 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_git";
-  locations = {
-    "/" = {
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index a4184ac..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_sugarcanemc";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 8e7b51f..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_lfs";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 57af15e..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_siliconheaven";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index ef98887..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_spigotav";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 58b7c14..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_terrarchive";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file
diff --git a/host/Rory-nginx/services/nginx/ b/host/Rory-nginx/services/nginx/
deleted file mode 100755
index 3fc280c..0000000
--- a/host/Rory-nginx/services/nginx/
+++ /dev/null
@@ -1,10 +0,0 @@
-  enableACME = true;
-  addSSL = true;
-  root = "/data/nginx/html_vives";
-  locations = {
-    "/" = {
-      index = "index.html";
-    };
-  };
\ No newline at end of file