Always disable caddy's admin endpoint

This commit is contained in:
SebastianStork 2025-07-05 20:48:19 +02:00
parent 56b28f055d
commit 155b9b2a30

View file

@ -69,6 +69,7 @@ in
services.caddy = {
enable = true;
enableReload = false;
globalConfig = "admin off";
virtualHosts =
virtualHosts
|> lib.mapAttrs' (
@ -83,8 +84,6 @@ in
services.caddy = {
package = caddyWithTailscale;
globalConfig = ''
admin off
tailscale {
auth_key {file.${config.sops.secrets."service-tailscale-auth-key".path}}
}