diff --git a/hosts/quasar/default.nix b/hosts/quasar/default.nix index c4d5809..777afc0 100644 --- a/hosts/quasar/default.nix +++ b/hosts/quasar/default.nix @@ -25,7 +25,11 @@ environment.systemPackages = [ pkgs.htop ]; age.secrets = { - matrix-synapse-secrets.file = ./secrets/matrix-synapse-secrets.age; + matrix-synapse-secrets = { + file = ./secrets/matrix-synapse-secrets.yaml; + mode = "400"; + owner = "matrix-synapse"; + }; }; services.postgresql.enable = true; @@ -33,7 +37,23 @@ services.caddy = { enable = true; virtualHosts = { + "quasar.leaf.ninja".extraConfig = '' + respond "quasar is online" + header Strict-Transport-Security: "max-age=63072000; includeSubDomains" + ''; "consortium.chat".extraConfig = '' + respond /.well-known/matrix/server <