home

My NixOS systems configurations.
Log | Files | Refs | LICENSE

commit 36f87c730f2f4699686fefa4498828668c7f65f9
parent 6d27c2ee30843029a686f3239411b2c96e7f1dc6
Author: Vincent Demeester <vincent@sbr.pm>
Date:   Tue, 25 Oct 2022 11:27:51 +0200

systems/shikoku: enable dockerRegistry…

… and update insecure-registries configurations

Signed-off-by: Vincent Demeester <vincent@sbr.pm>

Diffstat:
Msystems/hosts/shikoku.nix | 8++++++++
Msystems/modules/dev/containers.nix | 2+-
Msystems/modules/profiles/docker.nix | 2+-
3 files changed, 10 insertions(+), 2 deletions(-)

diff --git a/systems/hosts/shikoku.nix b/systems/hosts/shikoku.nix @@ -110,6 +110,14 @@ in enable = true; devices = [{ device = "/dev/nvme0n1"; }]; }; + dockerRegistry = { + enable = true; + listenAddress = "0.0.0.0"; + port = 5000; + enableDelete = true; + enableGarbageCollect = true; + garbageCollectDates = "daily"; + }; wireguard = { enable = true; ips = ips; diff --git a/systems/modules/dev/containers.nix b/systems/modules/dev/containers.nix @@ -89,7 +89,7 @@ in default-runtime = "docker-runc"; containerd = "/run/containerd/containerd.sock"; features = { buildkit = true; }; - insecure-registries = [ "172.30.0.0/16" "192.168.12.0/16" "massimo.home:5000" "r.svc.home:5000" "r.svc.home" ]; + insecure-registries = [ "172.30.0.0/16" "192.168.1.0/16" "10.100.0.0/16" "shikoku.home:5000" "r.svc.home:5000" "r.svc.home" ]; seccomp-profile = ./my-seccomp.json; }; }; diff --git a/systems/modules/profiles/docker.nix b/systems/modules/profiles/docker.nix @@ -64,7 +64,7 @@ in default-runtime = "docker-runc"; containerd = "/run/containerd/containerd.sock"; features = { buildkit = true; }; - insecure-registries = [ "172.30.0.0/16" "192.168.12.0/16" "massimo.home:5000" "r.svc.home:5000" "r.svc.home" ]; + insecure-registries = [ "172.30.0.0/16" "192.168.12.0/16" "shikoku.home:5000" "r.svc.home:5000" "r.svc.home" ]; seccomp-profile = ./docker/my-seccomp.json; }; };