From e0d513be3014cc4c94b3c10a730f5cc58b076dc4 Mon Sep 17 00:00:00 2001 From: Max Date: Fri, 16 Aug 2024 02:16:11 +0200 Subject: [PATCH] cluster/services/dns: never reload coredns --- cluster/services/dns/coredns.nix | 11 +++++++---- 1 file changed, 7 insertions(+), 4 deletions(-) diff --git a/cluster/services/dns/coredns.nix b/cluster/services/dns/coredns.nix index 1b3e439..23448f1 100644 --- a/cluster/services/dns/coredns.nix +++ b/cluster/services/dns/coredns.nix @@ -35,10 +35,13 @@ in ]; before = [ "acme-securedns.${domain}.service" ]; wants = [ "acme-finished-securedns.${domain}.target" ]; - serviceConfig.LoadCredential = [ - "dot-cert.pem:${dot.directory}/fullchain.pem" - "dot-key.pem:${dot.directory}/key.pem" - ]; + serviceConfig = { + LoadCredential = [ + "dot-cert.pem:${dot.directory}/fullchain.pem" + "dot-key.pem:${dot.directory}/key.pem" + ]; + ExecReload = lib.mkForce []; + }; }; security.acme.certs."securedns.${domain}" = {