!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

884 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` for interface and routing setup, use systemd-networkd, ifstate or NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org256 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
14 Jul 2025
@saiko:knifepoint.net@saiko:knifepoint.net
In reply to @n4ch723hr3r:nope.chat
the main problem seems to be the inability to put it behind a reverse proxy
oh. well, that’s mostly a http specific thing
14:27:54
@saiko:knifepoint.net@saiko:knifepoint.net
In reply to @matthewcroughan:defenestrate.it
Because the only way to run it properly is on port 80/443, if you want a letsencrypt SSL cert, because you can't proxy it
no absolutely not
14:27:58
@saiko:knifepoint.net@saiko:knifepoint.netI run mumble with a LE cert on its own port14:28:04
@n4ch723hr3r:nope.chat@n4ch723hr3r:nope.chaticecast has TLS built into it14:28:22
@saiko:knifepoint.net@saiko:knifepoint.netthe certs are not bound to a specific port, so you can give it its own domain, get a cert via http on that domain and then use the cert for the other service14:29:18
@matthewcroughan:defenestrate.itmatthewcroughan @fosdemwith self-signed certs?14:30:07
@n4ch723hr3r:nope.chat@n4ch723hr3r:nope.chatthat too. you can specify a path to that cert14:30:34
@saiko:knifepoint.net@saiko:knifepoint.netthis is what I do for mumble: https://git.dblsaiko.net/systems/tree/configurations/spike/murmur.nix (sys2x.ssl.acmeCerts just adds an empty nginx virtual host with enableACME=true)14:30:53
@matthewcroughan:defenestrate.itmatthewcroughan @fosdemWell either way, the player seems to get confused if I reverse proxy14:31:01
@matthewcroughan:defenestrate.itmatthewcroughan @fosdemsince the icecast streams are not http14:31:07
@n4ch723hr3r:nope.chat@n4ch723hr3r:nope.chati've also just read somewhere that the maintainer discourages reverse-proxying14:31:36
@saiko:knifepoint.net@saiko:knifepoint.nethow are you reverse-proxying it if it’s not http?14:31:37

Show newer messages


Back to Room ListRoom Version: 6