summaryrefslogtreecommitdiff
path: root/modules/services
diff options
context:
space:
mode:
authorMichael Hoang <Enzime@users.noreply.github.com>2023-11-11 23:03:48 +1100
committerGitHub <noreply@github.com>2023-11-11 23:03:48 +1100
commit0f1ad801387445fdda01d080db8ecf169be8e793 (patch)
treee4b80967493d2c5ae1c3ee1183995a9771d7f100 /modules/services
parentc8f385766ba076a096caa794309c40f89894d88a (diff)
parent4fa7b5cdd14a0fee6edc8c8924e57422b0dcc9ef (diff)
Merge pull request #805 from yacinehmito/disable-pki
Add security.pki.installCACerts config
Diffstat (limited to 'modules/services')
-rw-r--r--modules/services/nix-daemon.nix5
1 files changed, 4 insertions, 1 deletions
diff --git a/modules/services/nix-daemon.nix b/modules/services/nix-daemon.nix
index 35476a0..584c226 100644
--- a/modules/services/nix-daemon.nix
+++ b/modules/services/nix-daemon.nix
@@ -63,7 +63,10 @@ in
serviceConfig.EnvironmentVariables = mkMerge [
config.nix.envVars
- { NIX_SSL_CERT_FILE = mkDefault config.environment.variables.NIX_SSL_CERT_FILE;
+ {
+ NIX_SSL_CERT_FILE = mkIf
+ (config.environment.variables ? NIX_SSL_CERT_FILE)
+ (mkDefault config.environment.variables.NIX_SSL_CERT_FILE);
TMPDIR = mkIf (cfg.tempDir != null) cfg.tempDir;
# FIXME: workaround for https://github.com/NixOS/nix/issues/2523
OBJC_DISABLE_INITIALIZE_FORK_SAFETY = mkDefault "YES";