{pkgs, ...}: { services.vaultwarden = { enable = true; backupDir = "/var/backup/vaultwarden"; config = { DOMAIN = "https://vaultwarden.owo.monster"; ROCKET_ADDRESS = "127.0.0.1"; ROCKET_PORT = 8222; SIGNUPS_ALLOWED = false; }; }; services.nginx.virtualHosts."vaultwarden.owo.monster" = { forceSSL = true; enableACME = true; locations = { "/".proxyPass = "http://127.0.0.1:8222"; }; }; }