1
0
Fork 0

migrate blarm to x86, enable firewall

This commit is contained in:
Philipp 2025-05-08 09:59:28 +02:00
parent dc33352e5f
commit 7d8e0da9ec
Signed by: Philipp
GPG key ID: 9EBD8439AFBAB750
3 changed files with 86 additions and 8 deletions

View file

@ -15,6 +15,10 @@ in
};
config = mkIf cfg.enable {
networking.firewall.allowedTCPPorts = [
3000
];
sops.secrets.invidious-db = {
format = "dotenv";
sopsFile = ../../../../../secrets/invidious-db.env;
@ -46,12 +50,12 @@ in
virtualisation.oci-containers.containers = {
invidious = {
image = "quay.io/invidious/invidious:latest-arm64";
image = "quay.io/invidious/invidious:latest";
hostname = "invidious";
volumes = [ "/run/secrets/invidious-config:/invidious/config/config.yml" ];
ports = [
"192.168.1.202:3000:3000"
"[fd00:192:168:1::202]:3000:3000"
"192.168.10.3:3000:3000"
"[fd00:192:168:10::3]:3000:3000"
];
dependsOn = [ "invidious-db" ];
};