mirror of
https://github.com/moons-14/dotfiles.git
synced 2026-10-06 05:48:12 +09:00
Add central Nix builder and binary cache
This commit is contained in:
@@ -0,0 +1,3 @@
|
||||
{
|
||||
description = "Harmonia binary cache backed by the local Nix store";
|
||||
}
|
||||
@@ -0,0 +1,19 @@
|
||||
let
|
||||
signingKeyPath = "/run/secrets/harmonia/signing-key";
|
||||
in
|
||||
{
|
||||
services.harmonia.cache = {
|
||||
enable = true;
|
||||
signKeyPaths = [ signingKeyPath ];
|
||||
|
||||
settings = {
|
||||
bind = "0.0.0.0:5000";
|
||||
priority = 30;
|
||||
};
|
||||
};
|
||||
|
||||
# Keep activation usable while the host-specific SOPS secret is bootstrapped.
|
||||
# Once the secret exists, starting the socket also starts Harmonia on demand.
|
||||
systemd.sockets.harmonia.unitConfig.ConditionPathExists = signingKeyPath;
|
||||
systemd.services.harmonia.unitConfig.ConditionPathExists = signingKeyPath;
|
||||
}
|
||||
Reference in New Issue
Block a user