mirror of
https://github.com/NixOS/nixpkgs.git
synced 2024-12-25 23:23:07 +00:00
153 lines
5.4 KiB
Nix
153 lines
5.4 KiB
Nix
{ config, options, pkgs, lib, ... }:
|
|
let
|
|
dataDir = "/var/lib/matrix-appservice-discord";
|
|
registrationFile = "${dataDir}/discord-registration.yaml";
|
|
cfg = config.services.matrix-appservice-discord;
|
|
opt = options.services.matrix-appservice-discord;
|
|
# TODO: switch to configGen.json once RFC42 is implemented
|
|
settingsFile = pkgs.writeText "matrix-appservice-discord-settings.json" (builtins.toJSON cfg.settings);
|
|
|
|
in {
|
|
options = {
|
|
services.matrix-appservice-discord = {
|
|
enable = lib.mkEnableOption "a bridge between Matrix and Discord";
|
|
|
|
package = lib.mkPackageOption pkgs "matrix-appservice-discord" { };
|
|
|
|
settings = lib.mkOption rec {
|
|
# TODO: switch to lib.types.config.json as prescribed by RFC42 once it's implemented
|
|
type = lib.types.attrs;
|
|
apply = lib.recursiveUpdate default;
|
|
default = {
|
|
database = {
|
|
filename = "${dataDir}/discord.db";
|
|
};
|
|
|
|
# empty values necessary for registration file generation
|
|
# actual values defined in environmentFile
|
|
auth = {
|
|
clientID = "";
|
|
botToken = "";
|
|
};
|
|
};
|
|
example = lib.literalExpression ''
|
|
{
|
|
bridge = {
|
|
domain = "public-domain.tld";
|
|
homeserverUrl = "http://public-domain.tld:8008";
|
|
};
|
|
}
|
|
'';
|
|
description = ''
|
|
{file}`config.yaml` configuration as a Nix attribute set.
|
|
|
|
Configuration options should match those described in
|
|
[config.sample.yaml](https://github.com/Half-Shot/matrix-appservice-discord/blob/master/config/config.sample.yaml).
|
|
|
|
{option}`config.bridge.domain` and {option}`config.bridge.homeserverUrl`
|
|
should be set to match the public host name of the Matrix homeserver for webhooks and avatars to work.
|
|
|
|
Secret tokens should be specified using {option}`environmentFile`
|
|
instead of this world-readable attribute set.
|
|
'';
|
|
};
|
|
|
|
environmentFile = lib.mkOption {
|
|
type = lib.types.nullOr lib.types.path;
|
|
default = null;
|
|
description = ''
|
|
File containing environment variables to be passed to the matrix-appservice-discord service,
|
|
in which secret tokens can be specified securely by defining values for
|
|
`APPSERVICE_DISCORD_AUTH_CLIENT_I_D` and
|
|
`APPSERVICE_DISCORD_AUTH_BOT_TOKEN`.
|
|
'';
|
|
};
|
|
|
|
url = lib.mkOption {
|
|
type = lib.types.str;
|
|
default = "http://localhost:${toString cfg.port}";
|
|
defaultText = lib.literalExpression ''"http://localhost:''${toString config.${opt.port}}"'';
|
|
description = ''
|
|
The URL where the application service is listening for HS requests.
|
|
'';
|
|
};
|
|
|
|
port = lib.mkOption {
|
|
type = lib.types.port;
|
|
default = 9005; # from https://github.com/Half-Shot/matrix-appservice-discord/blob/master/package.json#L11
|
|
description = ''
|
|
Port number on which the bridge should listen for internal communication with the Matrix homeserver.
|
|
'';
|
|
};
|
|
|
|
localpart = lib.mkOption {
|
|
type = with lib.types; nullOr str;
|
|
default = null;
|
|
description = ''
|
|
The user_id localpart to assign to the AS.
|
|
'';
|
|
};
|
|
|
|
serviceDependencies = lib.mkOption {
|
|
type = with lib.types; listOf str;
|
|
default = lib.optional config.services.matrix-synapse.enable config.services.matrix-synapse.serviceUnit;
|
|
defaultText = lib.literalExpression ''
|
|
lib.optional config.services.matrix-synapse.enable config.services.matrix-synapse.serviceUnit
|
|
'';
|
|
description = ''
|
|
List of Systemd services to require and wait for when starting the application service,
|
|
such as the Matrix homeserver if it's running on the same host.
|
|
'';
|
|
};
|
|
};
|
|
};
|
|
|
|
config = lib.mkIf cfg.enable {
|
|
systemd.services.matrix-appservice-discord = {
|
|
description = "A bridge between Matrix and Discord.";
|
|
|
|
wantedBy = [ "multi-user.target" ];
|
|
wants = [ "network-online.target" ] ++ cfg.serviceDependencies;
|
|
after = [ "network-online.target" ] ++ cfg.serviceDependencies;
|
|
|
|
preStart = ''
|
|
if [ ! -f '${registrationFile}' ]; then
|
|
${cfg.package}/bin/matrix-appservice-discord \
|
|
--generate-registration \
|
|
--url=${lib.escapeShellArg cfg.url} \
|
|
${lib.optionalString (cfg.localpart != null) "--localpart=${lib.escapeShellArg cfg.localpart}"} \
|
|
--config='${settingsFile}' \
|
|
--file='${registrationFile}'
|
|
fi
|
|
'';
|
|
|
|
serviceConfig = {
|
|
Type = "simple";
|
|
Restart = "always";
|
|
|
|
ProtectSystem = "strict";
|
|
ProtectHome = true;
|
|
ProtectKernelTunables = true;
|
|
ProtectKernelModules = true;
|
|
ProtectControlGroups = true;
|
|
|
|
DynamicUser = true;
|
|
PrivateTmp = true;
|
|
WorkingDirectory = "${cfg.package}/${cfg.package.passthru.nodeAppDir}";
|
|
StateDirectory = baseNameOf dataDir;
|
|
UMask = "0027";
|
|
EnvironmentFile = cfg.environmentFile;
|
|
|
|
ExecStart = ''
|
|
${cfg.package}/bin/matrix-appservice-discord \
|
|
--file='${registrationFile}' \
|
|
--config='${settingsFile}' \
|
|
--port='${toString cfg.port}'
|
|
'';
|
|
};
|
|
};
|
|
};
|
|
|
|
meta.maintainers = with lib.maintainers; [ pacien ];
|
|
}
|