ACME: Difference between revisions

m add citation for nginx acmeroot setting advice
HTTP challenge: remove redundant quoting
 
Line 57: Line 57:
     defaults.webroot = "/var/lib/acme/acme-challenge/";
     defaults.webroot = "/var/lib/acme/acme-challenge/";
     # We are using nginx as webserver, therefore set correct key permissions
     # We are using nginx as webserver, therefore set correct key permissions
     certs."${domainName}".group = config.services.nginx.group;
     certs.${domainName}.group = config.services.nginx.group;
   };
   };


Line 66: Line 66:
   services.nginx = {
   services.nginx = {
     enable = true;
     enable = true;
     virtualHosts."${domainName}" = {
     virtualHosts.${domainName} = {
       forceSSL = true;
       forceSSL = true;
       useACMEHost = "${domainName}";
       useACMEHost = domainName;
       locations."/.well-known/".root = "/var/lib/acme/acme-challenge/";
       locations."/.well-known/".root = "/var/lib/acme/acme-challenge/";
     };
     };