-{ pkgs, lib, config, hosts, ... }:
+{ pkgs, lib, config, inputs, hosts, hostName, ... }:
let
domain = "autogeree.net";
domainID = lib.replaceStrings ["."] ["_"] domain;
validMinDays = 10;
};
systemd.services."acme-${domain}" = {
- serviceConfig.LoadCredentialEncrypted = "${domain}.tsig:" + ./. + "/${domain}.tsig.cred";
+ serviceConfig.LoadCredentialEncrypted =
+ [ "${domain}.tsig:${inputs.self}/hosts/${hostName}/acme/${domain}.tsig.cred" ];
environment = {
RFC2136_TSIG_SECRET = "%d/${domain}.tsig";
RFC2136_NAMESERVER = "ns.${domain}:53";