add frontend redirect hosts

This commit is contained in:
Yisroel Baum 2026-08-17 23:52:24 +03:00
parent 2f8d666060
commit 4cdbebe7f9
Signed by: yisroelbaum
GPG key ID: 0FA60884F75520A9
2 changed files with 55 additions and 40 deletions

View file

@ -417,7 +417,10 @@ Example host configuration:
config.sops.secrets."borg-private-key".path; config.sops.secrets."borg-private-key".path;
}; };
frontend.hostName = "rabbigerzi.com"; frontend = {
hostName = "rabbigerzi.com";
redirectHostNames = [ "www.rabbigerzi.com" ];
};
backend = { backend = {
hostName = "api.rabbigerzi.com"; hostName = "api.rabbigerzi.com";

View file

@ -120,6 +120,12 @@ in
description = "Frontend nginx virtual host name."; description = "Frontend nginx virtual host name.";
}; };
redirectHostNames = lib.mkOption {
type = lib.types.listOf lib.types.str;
default = [ ];
description = "Frontend host names that redirect to the canonical host.";
};
publicUrl = lib.mkOption { publicUrl = lib.mkOption {
type = lib.types.str; type = lib.types.str;
default = "https://${cfg.frontend.hostName}"; default = "https://${cfg.frontend.hostName}";
@ -403,49 +409,55 @@ in
recommendedProxySettings = lib.mkDefault true; recommendedProxySettings = lib.mkDefault true;
recommendedTlsSettings = lib.mkDefault true; recommendedTlsSettings = lib.mkDefault true;
virtualHosts = { virtualHosts =
${cfg.frontend.hostName} = lib.mkMerge [ lib.genAttrs cfg.frontend.redirectHostNames (redirectHostName: {
cfg.frontend.nginx enableACME = true;
{ forceSSL = true;
root = "${frontendPackage}"; globalRedirect = cfg.frontend.hostName;
locations."/" = { })
tryFiles = "$uri $uri/ /index.html"; // {
}; ${cfg.frontend.hostName} = lib.mkMerge [
} cfg.frontend.nginx
]; {
root = "${frontendPackage}";
${cfg.backend.hostName} = lib.mkMerge [ locations."/" = {
cfg.backend.nginx tryFiles = "$uri $uri/ /index.html";
{
root = "${appDir}/public";
extraConfig = ''
client_max_body_size ${uploadLimits.nginxClientMaxBodySize};
'';
locations = {
"/" = {
index = "index.php";
tryFiles = "$uri $uri/ /index.php?$query_string";
}; };
}
];
"/storage/" = { ${cfg.backend.hostName} = lib.mkMerge [
alias = "${storagePath}/app/public/"; cfg.backend.nginx
extraConfig = '' {
expires 30d; root = "${appDir}/public";
access_log off; extraConfig = ''
''; client_max_body_size ${uploadLimits.nginxClientMaxBodySize};
}; '';
locations = {
"/" = {
index = "index.php";
tryFiles = "$uri $uri/ /index.php?$query_string";
};
"~ \\.php$" = { "/storage/" = {
extraConfig = '' alias = "${storagePath}/app/public/";
include ${pkgs.nginx}/conf/fastcgi_params; extraConfig = ''
fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name; expires 30d;
fastcgi_pass unix:${config.services.phpfpm.pools.${poolName}.socket}; access_log off;
''; '';
};
"~ \\.php$" = {
extraConfig = ''
include ${pkgs.nginx}/conf/fastcgi_params;
fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
fastcgi_pass unix:${config.services.phpfpm.pools.${poolName}.socket};
'';
};
}; };
}; }
} ];
]; };
};
}; };
}; };
} }