|
| 1 | +{ config, pkgs, lib, ... }: |
| 2 | + |
| 3 | +with lib; |
| 4 | + |
| 5 | +let |
| 6 | + cfg = config.services.remote-text-server; |
| 7 | +in |
| 8 | +{ |
| 9 | + options.services.remote-text-server = { |
| 10 | + enable = mkEnableOption "remote-text-server"; |
| 11 | + package = mkOption { |
| 12 | + default = pkgs.callPackage ./. { texlive = pkgs.texliveFull; }; |
| 13 | + defaultText = "remote-text-server"; |
| 14 | + example = "inputs.remote-text-server.packages.${pkgs.system}.default.override { texlive = pkgs.texliveMinimal; }"; |
| 15 | + description = "The remote-text-server package to use"; |
| 16 | + type = types.package; |
| 17 | + }; |
| 18 | + port = mkOption { |
| 19 | + type = types.port; |
| 20 | + default = 7870; |
| 21 | + example = 46264; |
| 22 | + description = "The port to listen on. Currently ignored and always uses 3030"; |
| 23 | + }; |
| 24 | + }; |
| 25 | + |
| 26 | + config = mkIf cfg.enable { |
| 27 | + systemd.services.remote-text-server = { |
| 28 | + description = "RemoteText Server"; |
| 29 | + |
| 30 | + script = '' |
| 31 | + cd $STATE_DIRECTORY |
| 32 | + ${cfg.package}/bin/remote-text-server --port ${toString cfg.port} |
| 33 | + ''; |
| 34 | + |
| 35 | + serviceConfig = { |
| 36 | + DynamicUser = true; |
| 37 | + # EnvironmentFile = "/etc/jekyll-comments-env"; |
| 38 | + StateDirectory = "remote-text-server"; |
| 39 | + |
| 40 | + PrivateDevices = true; |
| 41 | + PrivateMounts = true; |
| 42 | + PrivateUsers = true; |
| 43 | + ProtectControlGroups = true; |
| 44 | + ProtectHome = true; |
| 45 | + ProtectHostname = true; |
| 46 | + ProtectKernelLogs = true; |
| 47 | + ProtectKernelModules = true; |
| 48 | + ProtectKernelTunables = true; |
| 49 | + }; |
| 50 | + |
| 51 | + wantedBy = [ "multi-user.target" ]; |
| 52 | + after = [ "network-online.target" ]; |
| 53 | + wants = [ "network-online.target" ]; |
| 54 | + }; |
| 55 | + # unnecessary bc tailscale is open. also should be set by the end user |
| 56 | + # networking.firewall.interfaces."tailscale0".allowedTCPPorts = [ cfg.port ]; |
| 57 | + }; |
| 58 | +} |
0 commit comments