cluster/services/search: use cluster secrets
This commit is contained in:
parent
482a594aa1
commit
04031ef198
3 changed files with 3 additions and 3 deletions
|
@ -4,6 +4,7 @@
|
||||||
services.search = {
|
services.search = {
|
||||||
nodes.host = [ "VEGAS" ];
|
nodes.host = [ "VEGAS" ];
|
||||||
nixos.host = ./host.nix;
|
nixos.host = ./host.nix;
|
||||||
|
secrets.default.nodes = config.services.search.nodes.host;
|
||||||
};
|
};
|
||||||
|
|
||||||
monitoring.blackbox.targets.search = {
|
monitoring.blackbox.targets.search = {
|
||||||
|
|
|
@ -1,16 +1,15 @@
|
||||||
{ config, depot, lib, ... }:
|
{ cluster, config, depot, lib, ... }:
|
||||||
let
|
let
|
||||||
inherit (config) links;
|
inherit (config) links;
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
links.searxng.protocol = "http";
|
links.searxng.protocol = "http";
|
||||||
|
|
||||||
age.secrets.searxng-secrets.file = ../../../secrets/searxng-secrets.age;
|
|
||||||
services.searx = {
|
services.searx = {
|
||||||
enable = true;
|
enable = true;
|
||||||
runInUwsgi = true;
|
runInUwsgi = true;
|
||||||
package = depot.packages.searxng;
|
package = depot.packages.searxng;
|
||||||
environmentFile = config.age.secrets.searxng-secrets.path;
|
environmentFile = cluster.config.services.search.secrets.default.path;
|
||||||
settings = {
|
settings = {
|
||||||
server = {
|
server = {
|
||||||
secret_key = "@SEARXNG_SECRET@";
|
secret_key = "@SEARXNG_SECRET@";
|
||||||
|
|
Loading…
Reference in a new issue