acme: Switch to a wildcard certificate

This commit is contained in:
Tristan Daniël Maat 2024-04-16 01:08:13 +02:00
parent 8f178f776e
commit e16f3be326
Signed by: tlater
GPG key ID: 49670FD774E43268
11 changed files with 24 additions and 11 deletions
configuration

View file

@ -49,6 +49,13 @@
security.acme = {
defaults.email = "tm@tlater.net";
acceptTerms = true;
certs."tlater.net" = {
extraDomainNames = ["*.tlater.net"];
dnsProvider = "hetzner";
group = "nginx";
credentialFiles."HETZNER_API_KEY_FILE" = config.sops.secrets."hetzner-api".path;
};
};
services.backups.acme = {