Update default.nix

This commit is contained in:
Zachary Myers 2024-07-26 12:29:55 -04:00 committed by GitHub
parent ca4b330ef1
commit 491a3be157
No known key found for this signature in database
GPG key ID: B5690EEEBB952194

View file

@ -13,10 +13,19 @@ in {
}; };
config = mkIf cfg.enable { config = mkIf cfg.enable {
security.dhparams = {
enable = true;
params.nginx = {};
};
services.nginx = { services.nginx = {
enable = true; enable = true;
package = pkgs.nginxStable.override {openssl = pkgs.libressl;}; package = pkgs.nginxStable.override {openssl = pkgs.libressl;};
recommendedProxySettings = true; recommendedProxySettings = true;
recommendedGzipSettings = true;
recommendedOptimisation = true;
recommendedTlsSettings = true;
sslDhparam = config.security.dhparams.params.nginx.path;
virtualHosts = { virtualHosts = {
"node.nyc.zackmyers.io" = { "node.nyc.zackmyers.io" = {
forceSSL = true; forceSSL = true;