diff --git a/nixos/modules/services/networking/cgit.nix b/nixos/modules/services/networking/cgit.nix index 6f15e92aa2c4..c4ecc86c1235 100644 --- a/nixos/modules/services/networking/cgit.nix +++ b/nixos/modules/services/networking/cgit.nix @@ -178,7 +178,7 @@ in warnings = flatten (flip mapAttrsToList cfgs (inst: cfg: optional (cfg.user == "root") '' `services.cgit.${inst}` is configured to run as root. - This has security implications: . + This has security implications. See advisory: https://discourse.nixos.org/t/51419 It is recommended to set an unprivileged user explicitly. This default user will be set to "cgit" in NixOS 24.11. '' diff --git a/nixos/modules/services/web-servers/fcgiwrap.nix b/nixos/modules/services/web-servers/fcgiwrap.nix index 290bcfd9b65c..1c89ae261bee 100644 --- a/nixos/modules/services/web-servers/fcgiwrap.nix +++ b/nixos/modules/services/web-servers/fcgiwrap.nix @@ -11,7 +11,7 @@ let ''; securityWarning = '' The fcgiwrap module is configured with a global shared instance. - This has security implications: . + This has security implications. See advisory: https://discourse.nixos.org/t/51419 Isolated instances should instead be configured through `services.fcgiwrap.instances.*'. The global options at `services.fcgiwrap.*` will be removed in NixOS 24.11. '';