Provide GPG key using web key directory
This commit is contained in:
parent
5ba4163f95
commit
bb7d2e2b83
@ -1,6 +1,12 @@
|
|||||||
{ ... }:
|
{ ... }:
|
||||||
|
|
||||||
{
|
let
|
||||||
|
website = fetchGit {
|
||||||
|
url = "https://git.clerie.de/clerie/clerie.de.git";
|
||||||
|
ref = "main";
|
||||||
|
rev = "23e7b06dc15a8dcc320b2db9508e2192d33236cb";
|
||||||
|
};
|
||||||
|
in {
|
||||||
services.nginx.virtualHosts = {
|
services.nginx.virtualHosts = {
|
||||||
"www.clerie.de" = {
|
"www.clerie.de" = {
|
||||||
enableACME = true;
|
enableACME = true;
|
||||||
@ -13,10 +19,20 @@
|
|||||||
"clerie.de" = {
|
"clerie.de" = {
|
||||||
enableACME = true;
|
enableACME = true;
|
||||||
forceSSL = true;
|
forceSSL = true;
|
||||||
root = fetchGit {
|
root = website;
|
||||||
url = "https://git.clerie.de/clerie/clerie.de.git";
|
locations."~ ^/.well-known/openpgpkey/hu/[a-z0-9]+/?$" = {
|
||||||
ref = "main";
|
extraConfig = ''
|
||||||
rev = "7fbb8042100fde4a8524eec656519eb8b48ae68a";
|
default_type application/octet-stream;
|
||||||
|
add_header Access-Control-Allow-Origin * always;
|
||||||
|
try_files /gpg/clerie@clerie.de =404;
|
||||||
|
'';
|
||||||
|
};
|
||||||
|
locations."= /.well-known/openpgpkey/policy" = {
|
||||||
|
extraConfig = ''
|
||||||
|
default_type application/octet-stream;
|
||||||
|
add_header Access-Control-Allow-Origin * always;
|
||||||
|
'';
|
||||||
|
return = "200 ''";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
Loading…
Reference in New Issue
Block a user