From b5f62bf8dd76fb1c8de0f1099ce9b297e72775e4 Mon Sep 17 00:00:00 2001 From: Ellie <6687206+wizzeh@users.noreply.github.com> Date: Sat, 21 Feb 2026 12:21:48 -0800 Subject: [PATCH] . --- common.nix | 1 - flake.lock | 8 ++++---- hosts/vps/configuration.nix | 1 + services/forgejo.nix | 5 +++++ services/wireguard-outer.nix | 1 + 5 files changed, 11 insertions(+), 5 deletions(-) diff --git a/common.nix b/common.nix index 98b8800..26007c8 100644 --- a/common.nix +++ b/common.nix @@ -73,7 +73,6 @@ system.autoUpgrade = { enable = true; - allowReboot = true; dates = "04:00"; }; diff --git a/flake.lock b/flake.lock index 26531c0..d5e456a 100644 --- a/flake.lock +++ b/flake.lock @@ -27,11 +27,11 @@ "treefmt-nix": "treefmt-nix" }, "locked": { - "lastModified": 1771638948, - "narHash": "sha256-zjId0MSbbYe9USVHLzDBY5MKCOJYMoU+E4weGy4RNfk=", + "lastModified": 1771691585, + "narHash": "sha256-mLcz20Gd5cYOCox0vDWYepFYenBD72klcDM1ARxk1dA=", "ref": "refs/heads/main", - "rev": "abf1e1195a0b7519cc034491a62e18cd1d2ea46d", - "revCount": 6138, + "rev": "688ef727e5f2b04812f79bd5507e02f17f70b699", + "revCount": 6141, "type": "git", "url": "https://forgejo.ellis.link/continuwuation/continuwuity" }, diff --git a/hosts/vps/configuration.nix b/hosts/vps/configuration.nix index 5005f28..6d73197 100644 --- a/hosts/vps/configuration.nix +++ b/hosts/vps/configuration.nix @@ -4,6 +4,7 @@ boot.loader.grub.enable = true; system.autoUpgrade.flake = "git+https://forgejo.ellie.town/wizzy/home-server#vps"; + system.autoUpgrade.allowReboot = true; sops.age.keyFile = "/var/lib/sops-nix/key.txt"; } diff --git a/services/forgejo.nix b/services/forgejo.nix index ab91654..1f07440 100644 --- a/services/forgejo.nix +++ b/services/forgejo.nix @@ -1,6 +1,11 @@ { ... }: { + systemd.services.forgejo = { + wants = [ "network-online.target" ]; + after = [ "network-online.target" ]; + }; + networking.firewall.interfaces.wg0.allowedTCPPorts = [ 3000 2222 diff --git a/services/wireguard-outer.nix b/services/wireguard-outer.nix index 10b10e6..3de261d 100644 --- a/services/wireguard-outer.nix +++ b/services/wireguard-outer.nix @@ -130,6 +130,7 @@ enabled = true; filter = "forgejo-ssh"; logpath = "/var/log/nginx/forgejo-ssh.log"; + backend = "auto"; maxretry = 10; findtime = 60; bantime = "1h";