summaryrefslogtreecommitdiff
path: root/guix/vkraus/services/h4sp.scm
blob: b2da50d08b7edf64e3bb59a99b5c0aa4d28667fd (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
(define-module (vkraus services h4sp)
  #:use-module ((gnu services)
                #:select (service-type
                          service-extension))
  #:use-module ((gnu services web)
                #:select (nginx-service-type
                          nginx-server-configuration
                          nginx-location-configuration))
  #:use-module ((gnu services certbot)
                #:select (certbot-service-type
                          certificate-configuration))
  #:use-module ((vkraus services simple-firewall)
                #:select (simple-firewall-configuration
                          simple-firewall-service-type))
  #:use-module ((vkraus packages h4sp)
                #:select (h4sp:website))
  #:use-module ((guix gexp)
                #:select (file-append program-file gexp))
  #:export (h4sp-service-type)
  #:duplicates (merge-generics)
  #:declarative? #t)

(define (nginx-extension _)
  (list h4sp:website))

(define (certbot-extension _)
  (list
   (certificate-configuration
    (domains (list "h4sp.planete-kraus.eu"))
    (deploy-hook
     (program-file
      "refresh-nginx"
      #~(let ((pid (call-with-input-file "/var/run/nginx/pid" read)))
	  (kill pid SIGHUP)))))))

(define (simple-firewall-extension _)
  (list
   (simple-firewall-configuration #f '(http https) '(http https))))

(define h4sp-service-type
  (service-type
   (name 'h4sp)
   (description
    "Serve the web pages for H4SP.")
   (extensions
    (list
     (service-extension nginx-service-type nginx-extension)
     (service-extension certbot-service-type certbot-extension)
     (service-extension simple-firewall-service-type simple-firewall-extension)))))