nixos/cfssl: don't create user/group unless service is enabled

Changed files
+2 -2
nixos
modules
services
security
+2 -2
nixos/modules/services/security/cfssl.nix
···
};
};
-
config = {
+
config = mkIf cfg.enable {
users.extraGroups.cfssl = {
gid = config.ids.gids.cfssl;
};
···
uid = config.ids.uids.cfssl;
};
-
systemd.services.cfssl = mkIf cfg.enable {
+
systemd.services.cfssl = {
description = "CFSSL CA API server";
wantedBy = [ "multi-user.target" ];
after = [ "network.target" ];