diff --git a/modules/lamassu-lnbits.nix b/modules/lamassu-lnbits.nix index 67795bc..3ca110b 100644 --- a/modules/lamassu-lnbits.nix +++ b/modules/lamassu-lnbits.nix @@ -60,7 +60,7 @@ let RestrictSUIDSGID = true; LockPersonality = true; MemoryDenyWriteExecute = false; # Required for Node.js JIT - ReadWritePaths = [ cfg.dataDir "${cfg.dataDir}/source" ]; + ReadWritePaths = [ cfg.dataDir ]; RestrictAddressFamilies = [ "AF_UNIX" "AF_INET" "AF_INET6" ]; User = cfg.user; Group = cfg.group; @@ -221,7 +221,6 @@ in # Data directories systemd.tmpfiles.rules = [ "d '${cfg.dataDir}' 0770 ${cfg.user} ${cfg.group} - -" - "d '${cfg.dataDir}/logs' 0770 ${cfg.user} ${cfg.group} - -" "d '${cfg.dataDir}/ofac' 0770 ${cfg.user} ${cfg.group} - -" "d '${cfg.dataDir}/photos' 0770 ${cfg.user} ${cfg.group} - -" "d '${cfg.dataDir}/photos/idcards' 0770 ${cfg.user} ${cfg.group} - -" @@ -261,8 +260,8 @@ in wants = [ "network-online.target" ]; path = with pkgs; [ - nodejs_22 nodePackages.pnpm python3 git coreutils gnused bash - util-linux stdenv.cc gnumake pkg-config binutils expat + nodejs_22 nodePackages.pnpm python3 git coreutils bash util-linux + stdenv.cc gnumake pkg-config binutils expat ]; environment = {