60 lines
1.1 KiB
Nix
60 lines
1.1 KiB
Nix
/*
|
|
|
|
Name: https://en.wikipedia.org/wiki/KITT
|
|
Why: Kitt used to have this role before (as well as email and dns)
|
|
Type: VM
|
|
Hardware: -
|
|
From: 2023
|
|
Role: LDAP Server
|
|
Notes:
|
|
|
|
*/
|
|
|
|
{ pkgs, lib, nodes, ... }:
|
|
let
|
|
# name of the server, sets teh hostname and record for it
|
|
name = "kitt";
|
|
ip_pub = "193.1.99.74";
|
|
ip_priv = "172.20.20.5";
|
|
hostname = "${name}.skynet.ie";
|
|
#hostname = ip_pub;
|
|
|
|
in {
|
|
imports = [
|
|
# required imports
|
|
../applications/firewall.nix
|
|
../applications/dns.nix
|
|
|
|
# whats running on teh server
|
|
../applications/ldap.nix
|
|
];
|
|
|
|
deployment = {
|
|
targetHost = hostname;
|
|
targetPort = 22;
|
|
targetUser = "root";
|
|
};
|
|
|
|
# add this server to dns
|
|
skynet_dns.records = {
|
|
external = [
|
|
"${name} A ${ip_pub}"
|
|
];
|
|
reverse = [
|
|
"${builtins.substring 9 3 ip_pub} IN PTR ${name}"
|
|
];
|
|
};
|
|
|
|
# we use this to pass in teh relevent infomation to the
|
|
services.skynet_ldap = {
|
|
enable = true;
|
|
|
|
host = {
|
|
# pass in teh ip (used for firewall)
|
|
ip = ip_pub;
|
|
|
|
# the name is used for dns
|
|
name = name;
|
|
};
|
|
};
|
|
}
|