9c6ee729d6
GitOrigin-RevId: 6cee3b5893090b0f5f0a06b4cf42ca4e60e5d222
67 lines
2.1 KiB
Nix
67 lines
2.1 KiB
Nix
{ config, lib, pkgs, utils, ... }:
|
|
let
|
|
cfg = config.services.sing-box;
|
|
settingsFormat = pkgs.formats.json { };
|
|
in
|
|
{
|
|
|
|
meta = {
|
|
maintainers = with lib.maintainers; [ nickcao ];
|
|
};
|
|
|
|
options = {
|
|
services.sing-box = {
|
|
enable = lib.mkEnableOption (lib.mdDoc "sing-box universal proxy platform");
|
|
|
|
package = lib.mkPackageOptionMD pkgs "sing-box" { };
|
|
|
|
settings = lib.mkOption {
|
|
type = lib.types.submodule {
|
|
freeformType = settingsFormat.type;
|
|
options = {
|
|
route = {
|
|
geoip.path = lib.mkOption {
|
|
type = lib.types.path;
|
|
default = "${pkgs.sing-geoip}/share/sing-box/geoip.db";
|
|
defaultText = lib.literalExpression "\${pkgs.sing-geoip}/share/sing-box/geoip.db";
|
|
description = lib.mdDoc ''
|
|
The path to the sing-geoip database.
|
|
'';
|
|
};
|
|
geosite.path = lib.mkOption {
|
|
type = lib.types.path;
|
|
default = "${pkgs.sing-geosite}/share/sing-box/geosite.db";
|
|
defaultText = lib.literalExpression "\${pkgs.sing-geosite}/share/sing-box/geosite.db";
|
|
description = lib.mdDoc ''
|
|
The path to the sing-geosite database.
|
|
'';
|
|
};
|
|
};
|
|
};
|
|
};
|
|
default = { };
|
|
description = lib.mdDoc ''
|
|
The sing-box configuration, see https://sing-box.sagernet.org/configuration/ for documentation.
|
|
|
|
Options containing secret data should be set to an attribute set
|
|
containing the attribute `_secret` - a string pointing to a file
|
|
containing the value the option should be set to.
|
|
'';
|
|
};
|
|
};
|
|
};
|
|
|
|
config = lib.mkIf cfg.enable {
|
|
systemd.packages = [ cfg.package ];
|
|
|
|
systemd.services.sing-box = {
|
|
preStart = ''
|
|
umask 0077
|
|
mkdir -p /etc/sing-box
|
|
${utils.genJqSecretsReplacementSnippet cfg.settings "/etc/sing-box/config.json"}
|
|
'';
|
|
wantedBy = [ "multi-user.target" ];
|
|
};
|
|
};
|
|
|
|
}
|