aboutsummaryrefslogtreecommitdiff
path: root/profiles/git-server.nix
diff options
context:
space:
mode:
authorFranck Cuny <franck@fcuny.net>2025-11-09 14:15:55 -0800
committerFranck Cuny <franck@fcuny.net>2025-11-09 14:15:55 -0800
commit9cadfda117f2b20fc4ec03e9004cf58912972713 (patch)
tree1544e177892cd61e31649f2bae114e202530bcd6 /profiles/git-server.nix
parentremove tailscale configuration (diff)
downloadinfra-9cadfda117f2b20fc4ec03e9004cf58912972713.tar.gz
re-use gitolite as a git server
Diffstat (limited to '')
-rw-r--r--profiles/git-server.nix27
1 files changed, 27 insertions, 0 deletions
diff --git a/profiles/git-server.nix b/profiles/git-server.nix
new file mode 100644
index 0000000..3d34fad
--- /dev/null
+++ b/profiles/git-server.nix
@@ -0,0 +1,27 @@
+{ pkgs, ... }:
+{
+ services.gitolite = {
+ enable = true;
+ adminPubkey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAINBkozy+X96u5ciX766bJ/AyQ3xm1tXZTIr5+4PVFZFi";
+ user = "git";
+ group = "git";
+ extraGitoliteRc = ''
+ # Make dirs/files group readable, needed for webserver/cgit. (Default
+ # setting is 0077.)
+ $RC{UMASK} = 0027;
+ $RC{GIT_CONFIG_KEYS} = 'cgit.desc cgit.hide cgit.ignore cgit.owner';
+ $RC{LOCAL_CODE} = "$rc{GL_ADMIN_BASE}/local";
+ push( @{$RC{ENABLE}}, 'symbolic-ref' );
+ '';
+ };
+
+ # let's make sure the default branch is `main'.
+ # NOTE: gitolite-admin.git default branch needs to be named master
+ systemd.tmpfiles.rules = [
+ "C /var/lib/gitolite/.gitconfig - git git 0644 ${pkgs.writeText "gitolite-gitconfig" ''
+ [init]
+ defaultBranch = main
+ ''}"
+ ];
+
+}