!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

902 Members
on your Router! Declaratively manage your switching, routing, wireless, tunneling and more.263 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
14 Jul 2025
@saiko:knifepoint.net@saiko:knifepoint.net
In reply to @matthewcroughan:defenestrate.it
Only if you have a spare IP to dedicate it to
why do you need a spare IP for icecast to work? I used to run it fine without one
14:24:35
@n4ch723hr3r:nope.chat@n4ch723hr3r:nope.chatthe main problem seems to be the inability to put it behind a reverse proxy14:25:42
@matthewcroughan:defenestrate.itmatthewcroughanBecause the only way to run it properly is on port 80/443, if you want a letsencrypt SSL cert, because you can't proxy it14:27:24
@matthewcroughan:defenestrate.itmatthewcroughanand you have to gen that cert by hand, and it's not automatable and it's awkward14:27:45
@saiko:knifepoint.net@saiko:knifepoint.net
In reply to @n4ch723hr3r:nope.chat
the main problem seems to be the inability to put it behind a reverse proxy
oh. well, that’s mostly a http specific thing
14:27:54
@saiko:knifepoint.net@saiko:knifepoint.net
In reply to @matthewcroughan:defenestrate.it
Because the only way to run it properly is on port 80/443, if you want a letsencrypt SSL cert, because you can't proxy it
no absolutely not
14:27:58
@saiko:knifepoint.net@saiko:knifepoint.netI run mumble with a LE cert on its own port14:28:04
@n4ch723hr3r:nope.chat@n4ch723hr3r:nope.chaticecast has TLS built into it14:28:22
@saiko:knifepoint.net@saiko:knifepoint.netthe certs are not bound to a specific port, so you can give it its own domain, get a cert via http on that domain and then use the cert for the other service14:29:18
@matthewcroughan:defenestrate.itmatthewcroughanwith self-signed certs?14:30:07
@n4ch723hr3r:nope.chat@n4ch723hr3r:nope.chatthat too. you can specify a path to that cert14:30:34
@saiko:knifepoint.net@saiko:knifepoint.netthis is what I do for mumble: https://git.dblsaiko.net/systems/tree/configurations/spike/murmur.nix (sys2x.ssl.acmeCerts just adds an empty nginx virtual host with enableACME=true)14:30:53
@matthewcroughan:defenestrate.itmatthewcroughanWell either way, the player seems to get confused if I reverse proxy14:31:01

Show newer messages


Back to Room ListRoom Version: 6