Commit Graph

1999 Commits

Author SHA1 Message Date
bd577d16dc
auth: remove unused arg 2023-08-23 23:44:30 +02:00
9138a92e4a
hedgedoc: increase ram 2023-08-13 12:58:50 +02:00
152bb3d034 buzzrelay: bump microvm.mem from 0.5 to 0.75 GB 2023-08-11 20:56:05 +02:00
84a874e440 cavemem: lower microvm.mem from 32 to 20 gb 2023-08-11 20:54:45 +02:00
336097bcde
hedgedoc: delete dangling socket 2023-08-11 00:36:04 +02:00
cc1e44834c caveman: bump microvm.mem from 24 to 32 GB 2023-08-09 14:09:26 +02:00
afce1e4582 ticker: add nak 2023-08-09 12:43:19 +02:00
540cbe5bee cavemem: bump microvm.mem from 16 to 24 gb 2023-08-09 12:42:41 +02:00
429ab187e5 fu 2023-08-09 00:49:21 +02:00
1ae93d3be6 caveman: add backup creds for server8 2023-08-09 00:49:21 +02:00
8907494517
sops updatekeys 2023-08-09 00:44:38 +02:00
aa969731b1
Rename repository 2023-08-09 00:36:19 +02:00
6f2fb430e9 ticker: add naf 2023-08-08 16:44:44 +02:00
8bbb67d403
pipebert: fix gixy 2023-08-03 01:24:16 +02:00
8a591c1ca9
hydra: add fail2ban 2023-07-31 00:55:35 +02:00
7cc8c6811a
gitea: update settings to 1.20 2023-07-30 22:13:53 +02:00
6c23fa359b
hedgedoc: use socket 2023-07-25 00:52:31 +02:00
000007c9e4
c3d2-web: cleanup 2023-07-24 21:47:31 +02:00
1c1131f86a
c3d2-web: add atomic-rsync 2023-07-24 21:30:36 +02:00
251807cc75
c3d2-web: move gemini 2023-07-24 21:30:28 +02:00
6c950fc96c
Fix gixy 2023-07-24 21:30:18 +02:00
6db1b702bf freifunk: use dns for wireguard endpoint 2023-07-15 13:28:36 +02:00
19c1998f7f freifunk: fix nginx syntax 2023-07-15 01:06:02 +02:00
0000008670
Delete leoncloud 2023-07-15 00:28:41 +02:00
1f66965154
Update portunus 2023-07-12 15:11:58 +02:00
Markus Schmidl
fe69a12995 disable firewall for radiobert 2023-07-12 13:00:11 +02:00
833d52c8db
gitea: don't bump last changed timestamp of repos with gc cron job 2023-07-11 13:49:50 +02:00
8888888422
mediawiki: fix FOD hash, widen dependency pinning 2023-07-10 23:54:04 +02:00
128fb86549
mediawiki: enable interwiki
Closes #123
2023-07-10 17:34:37 +02:00
0000003775
Update mediawiki to 1.40 2023-07-10 17:33:13 +02:00
1111112db6
portunus: rebase patch 2023-07-08 15:46:04 +02:00
1285469bc0
freifunk: fix issue found by gixy 2023-07-08 01:50:53 +02:00
a84b8b62a2 server9: add new ssd 2023-07-07 00:03:33 +02:00
0000005a94
hydra: fix eval 2023-07-06 00:23:44 +02:00
96576ab193
hydra: comment why gallium has no kvm 2023-07-05 23:57:19 +02:00
000002e220
hydra: fix copy paste errors in gallium 2023-07-05 23:55:31 +02:00
8888888871
matemat: add basic auth back 2023-07-05 23:28:37 +02:00
888888e271
server10: remove znapsend 2023-07-05 23:12:59 +02:00
12098169ee
mobilizon: disable 2023-07-04 00:17:48 +02:00
222222f338
mastodon: enable enableBirdUITheme 2023-07-02 23:34:27 +02:00
424242595e
home-assistant: fix eval 2023-07-02 23:28:06 +02:00
5555552d45
leon: fix eval 2023-07-02 22:07:39 +02:00
000000607f
hedgedoc: remove filter overwrite 2023-07-02 20:39:09 +02:00
7777770a21
matrix: use correct override 2023-07-02 20:39:00 +02:00
55555551a3
home-assistant: move ldap seedSettings to global 2023-07-02 20:38:33 +02:00
290820c38a
gitea: enable ldap again, upsi 2023-07-02 17:42:04 +02:00
999999920e
grafana: fix ldap group seeding 2023-07-02 05:49:20 +02:00
0221f34859
portunus: manage groups decleratively 2023-07-02 05:17:55 +02:00
808cc29c6c
Format, clean out lib, remove sops default and implicit set options 2023-07-02 05:17:55 +02:00
e78931472e freifunk: fix sysinfo-json 2023-07-02 02:00:03 +02:00
10242ac10b
auth: add groups added in the web ui to seeding 2023-07-01 19:54:19 +02:00
0000000de9
jabber: remove yax.im from spam list 2023-06-28 21:42:30 +02:00
28e92d2fd9
hedgedoc: update ldap group 2023-06-28 01:04:31 +02:00
fdfad8b3d6
home-assistant: update ldap group 2023-06-28 01:04:31 +02:00
4bd6180f5e
matrix: update ldap group 2023-06-28 01:04:30 +02:00
f7df3aecd7
mastodon: update ldap group 2023-06-28 01:04:30 +02:00
4ddaa002b0 freifunk: fix /run/nginx creation 2023-06-27 02:48:34 +02:00
dae9fcd0ff freifunk: move ospf secret to sops 2023-06-27 02:48:25 +02:00
fe6490b081 freifunk: disable firewall
sigh
2023-06-27 02:47:59 +02:00
102457debb
mediawiki: resolve renamed option 2023-06-25 19:36:19 +02:00
3333333d1c
Remove ceph 16.2 2023-06-25 13:32:06 +02:00
Markus Schmidl
686012b734 server7: upgrade ceph mds 2023-06-23 18:36:35 +02:00
96576fde30
Pin ceph components on all servers 2023-06-23 18:23:17 +02:00
11111118af
c3d2-web: fix telme10 startup 2023-06-23 18:13:03 +02:00
9999999b65
buzzrelay: reduce mem 2023-06-23 17:56:36 +02:00
274e8ad4d2 ticker: reenable palaissommer 2023-06-23 02:08:38 +02:00
8888888e4c
server7: update ceph mgr 2023-06-22 23:48:56 +02:00
9001e9dd92
hydra: remove todo 2023-06-22 23:05:08 +02:00
120981e451
server7: set ceph version per component 2023-06-22 22:36:46 +02:00
00000174a6
hydra: fix eval, set protocol for localhost to null to dedupe in machines tab 2023-06-22 21:18:24 +02:00
0000009ca3
jabber: reload prosody when updating cert 2023-06-22 20:36:31 +02:00
b31782f405
hydra: cleanup build machines config 2023-06-22 16:29:10 +02:00
f274b0f43a bind: make zones directory writable to bind for .jnl files 2023-06-22 12:22:32 +02:00
000003034b
Cleanup 2023-06-16 20:28:00 +02:00
00000040af
Migrate deprecated settings 2023-06-16 20:10:44 +02:00
076c42f090 Revert "ticker: add chaosevents feed"
This reverts commit f465d40cbf.
2023-06-16 02:32:21 +02:00
f465d40cbf ticker: add chaosevents feed 2023-06-15 12:14:22 +02:00
102433c3bf
leoncloud: fix eval 2023-06-15 01:22:04 +02:00
42424268f4
Fix eval 2023-06-14 23:59:26 +02:00
96576c95d3
server7: fix eval 2023-06-14 23:44:14 +02:00
999999be2c
leoncloud: fix eval 2023-06-14 23:41:57 +02:00
c4bb6c7fa3
drone: reduce ram 2023-06-14 22:38:22 +02:00
2b30cfc9ef
c3d2-web: reduce cpus, increase ram for deployment 2023-06-14 22:38:17 +02:00
4242423be2
nfsroot: fix eval 2023-06-14 22:35:43 +02:00
0000008c13
Pin ceph to the currently deployed versions 2023-06-14 18:51:29 +02:00
1ea2d6a85f radiobert: tune dump1090 args 2023-06-13 01:00:57 +02:00
7d7340afc3 radiobert: add networking.firewall.allowedTCPPorts 2023-06-13 00:19:59 +02:00
cf83619929 radiobert: tune dump1090 args 2023-06-13 00:19:47 +02:00
6957a5e31b sdrweb: vendor jquery 2023-06-12 22:48:01 +02:00
cf135d9e47 radiobert: update nixos-23.05 option 2023-06-12 22:47:40 +02:00
32257815dd radiobert: upgrade from readsb to dump1090 2023-06-12 22:47:34 +02:00
e58c0c24fa
load uranus at boot 2023-06-08 14:33:49 +02:00
2c65075ab1 stream: update htpasswd hash 2023-06-08 01:28:49 +02:00
212c770b61 prometheus: update htpasswd hash 2023-06-08 01:25:49 +02:00
f7428b2906 nfsroot: make nfs-mountd depend on mounts before exporting shares 2023-06-08 01:09:23 +02:00
1111111f5e
Delete oxigraph 2023-06-07 20:08:00 +02:00
965764d70b
spaceapi: fix firewall 2023-06-05 22:09:07 +02:00
25613c02ec
Add missing file 2023-06-05 21:38:26 +02:00
0000007338
server8: add magnesium, blogs to restic 2023-06-05 21:38:08 +02:00
23230d670c
blogs: add backup 2023-06-05 21:37:55 +02:00
00000004b8
schalter: fix build 2023-06-05 21:35:57 +02:00
4242423a05
mobilizon: 23.05, backups
postgis fails to build
2023-06-05 21:08:21 +02:00
000000010d
jabber: fix eval 2023-06-05 20:18:14 +02:00
237170a2cb
hedgedoc: fix login only with ldap group 2023-06-05 20:08:24 +02:00
f7dc0c3986
Enable firewall everywhere 2023-06-05 19:56:33 +02:00
f81678b3f1
hedgedoc: migrate ldap to nixos-modules 2023-06-05 19:56:33 +02:00
7cc618138b
public-access-proxy: fix eval 2023-06-05 10:16:09 +02:00
e9085fa879 owncast: merge /archive into rootfs 2023-06-05 01:49:08 +02:00
000006b7e2
Misc 2023-06-01 22:42:06 +02:00
90016a351b
matrix: disable failing tests 2023-05-29 21:44:35 +02:00
0000001fe2
Delete tmppleroma 2023-05-26 22:05:41 +02:00
2bbf5dae62
server7: enable networking in initrd 2023-05-25 23:58:44 +02:00
000000f0c5
pipebert: block websites outside of hq 2023-05-25 22:18:21 +02:00
3333332a03
Move nginx allow only hq network to lib 2023-05-25 22:17:51 +02:00
33b9e16399 server7: switch osd.5 from nvme to ssd
1 lonely nvme device doesn't make sense for redundancy within the device
  class
2023-05-24 19:21:26 +02:00
70593f9c94
pipebert: add todo 2023-05-24 01:22:46 +02:00
5555555874
Unset noop grub.version 2023-05-23 22:25:52 +02:00
1dd62b623a
drone: add backups 2023-05-23 21:00:39 +02:00
cf86ed2330 remove vpn2 & vhost 2023-05-23 18:31:36 +01:00
2b5a5f2c21
glotzbert: use disko for config.fileSystem 2023-05-22 00:58:21 +02:00
d3633dd1a4
jabber: fix eval 2023-05-22 00:50:25 +02:00
d8c95a05bf
jabber: add backups 2023-05-22 00:48:40 +02:00
8593ef3e2e
jabber: format 2023-05-22 00:44:40 +02:00
af67b84800
autoupdate inputs for borzoi flake 2023-05-21 22:53:06 +02:00
c839c23baa
server6: enable cluster modules, add secrets 2023-05-21 22:04:13 +02:00
ffe2ed7dd6
server6: add secrets 2023-05-21 22:02:50 +02:00
e43dee88ca
server6: comment what the interfaces are all 2023-05-21 21:12:33 +02:00
e2d88bdc80
server6: load correct kernel module 2023-05-21 20:57:38 +02:00
ec567ffbfa
Move mergeNncpSettings setting 2023-05-21 15:37:27 +02:00
124e74c48a
server6: enable initrd unlocking via ssh 2023-05-20 22:11:56 +02:00
5aeaaf338c
Add server6 2023-05-20 04:39:40 +02:00
226af82ffb
glotzbert: use dev disk by 2023-05-20 04:06:05 +02:00
169836c95f
Move nix settins to baremetal 2023-05-19 23:06:04 +02:00
5742a7da5f server{7-10}: set full nix.settings.system-features for building 2023-05-19 21:48:21 +02:00
27e567e82c
Add baremetal option 2023-05-19 21:38:30 +02:00
20a3ce5ad8
server10: add borken-data-hoarder and tram-borzoi to autostart 2023-05-19 19:15:09 +02:00
7e3a98d68f
disko: support multiple disks 2023-05-19 01:57:15 +02:00
31d255b388
mastodon: ignore cache 2023-05-19 00:43:49 +02:00
0e781cb313 ticker: add defaults for a few calendars 2023-05-18 22:51:56 +02:00
2331e0dad5
buzzrelay: add backup 2023-05-18 22:10:21 +02:00
f41ab5ce03
dacbert: fix kernel 2023-05-18 20:07:06 +02:00
efd124ac4f
Backup Hedgedoc 2023-05-18 18:36:16 +02:00
6276ff3f00
Fix eval, another try 2023-05-18 17:49:25 +02:00
7d5f832a3d
Format 2023-05-18 17:47:15 +02:00
d79a47d6c3
dacbert: fix eval 2023-05-18 17:44:03 +02:00
299a30d838
Backup matrix, ticker 2023-05-18 17:15:36 +02:00
06e11fb7da
leoncloud: fix eval 2023-05-18 02:26:18 +02:00
0aa5340645
Fix kernel priority 2023-05-18 02:25:09 +02:00
2547cfe54b
Use options for restic backups 2023-05-18 02:06:44 +02:00
dd489fe8cd
Add offsite restic backups, move to backup module 2023-05-17 10:20:38 +02:00
d5d532c5d4
gitea: add restic, server8: bump max_blob_size 2023-05-17 00:27:06 +02:00
82b0e27eeb
mastodon: add restic 2023-05-16 23:40:43 +02:00
811b6fb3cd
mediawiki: add restic 2023-05-16 23:17:53 +02:00
7b06f91cfb
mediawiki: format 2023-05-16 23:17:30 +02:00
bd119f9119
mediawiki: update extensions to 1.39, remove integrated Interwiki, SyntaxHightlight, add WikiEditor 2023-05-16 23:17:02 +02:00
ad6bd323d3
Add hydra and matemat backup credentials 2023-05-16 18:51:41 +02:00
89627efe85
restic: don't buffer 2023-05-16 18:51:10 +02:00
75c4b4d444
server8: add restic-server 2023-05-15 23:49:16 +02:00
38d9b8f827
pipebert: fix websites 2023-05-15 00:00:13 +02:00
cf47bf50f7
pipebert: add mopidy 2023-05-14 23:13:58 +02:00
b69819df89
Switch to disko module 2023-05-08 23:33:12 +02:00
43c4406ddc
Use upstream harmonia module 2023-05-08 23:32:47 +02:00
8429bd3932
glotzbert: Fix default source, cleanup 32 bit 2023-05-06 15:17:49 +02:00
f214e2c251
Don't explizit set console font
This is now done by the kernel by default
2023-05-06 15:16:47 +02:00
0000000f1d
mastodon: move ldap to nixos-modules 2023-05-05 01:01:22 +02:00
8f664240ed rpi-netboot: install ffmpeg, trainbot 2023-05-05 00:47:18 +02:00
87d4e94e8f
matrix: require matrix ldap group 2023-05-05 00:03:39 +02:00
1f1e281783
hydra: remove kvm from gallium 2023-05-04 23:15:05 +02:00
3d12038a87
pipebert: rename interface from "USB" 2023-05-03 01:32:54 +02:00
e0add245f0
pulsebert: enable bluetooth 2023-05-02 21:50:39 +02:00
b1fe1ea0b3
pulsebert: disable octoprint, audio streaming 2023-05-02 20:13:14 +02:00
1148a5c7cf ticker: add metaknoten 2023-05-01 19:32:19 +02:00
d650783084
add nix to the microvm creation unit 2023-05-01 06:21:49 +02:00
e2f260f856
fix auto flake update script 2023-05-01 06:17:57 +02:00
ca0db6f9de
fix formatting oopsie 2023-05-01 06:06:29 +02:00
4efce70f3f
add reverse proxy forward to borken-data-hoarder 2023-05-01 05:59:52 +02:00
de6329de4c
add borken-data-hoarder microvm 2023-05-01 05:58:55 +02:00
0401d57e33
hydra: optimise periodically to speed up jobs 2023-04-30 15:37:58 +02:00
1112d2a577
pipebert: fix interface, boot disk id 2023-04-30 02:14:45 +02:00
dd28a0b357
glotzbert: enable firewall 2023-04-29 23:36:13 +02:00
f511eecdf7
Add pipebert 2023-04-29 23:26:10 +02:00
a23f73e88b
Move audio specific settings from pulsebert to audioserver 2023-04-29 23:05:39 +02:00
1d62fc65ae
gitea: fix infinite recursion 2023-04-28 00:07:24 +02:00
e6f98212e2
gitea: remove rec 2023-04-27 21:50:37 +02:00
a1e7af1abb
gitea: use postgres package that is used for db service 2023-04-27 21:47:12 +02:00
4f5b0029c8 grafana: add PostgreSQL to servers dashboard 2023-04-26 19:00:57 +02:00
29c1f68326 grafana: reallow anonymous access 2023-04-26 18:59:23 +02:00
23feab5323
matrix: remove unused input 2023-04-26 01:11:58 +02:00
3eeeb8b900 ticker: add club-aquarium 2023-04-25 02:43:26 +02:00
3032bf33a9
glotzbert: fix interface name 2023-04-25 00:37:50 +02:00
f03ff2cc07
glotzbert: fix boot disk uuid 2023-04-25 00:23:39 +02:00
d8352e54e8
glotzbert: upgrade machine 2023-04-24 23:09:38 +02:00
d2fd11dccb
Make all gnomes minimal 2023-04-24 23:09:37 +02:00
5d513cba75 caveman: update hunter prometheus_port to fix port conflict 2023-04-24 21:43:55 +02:00
13e0febab4
hydra: fix eval 2023-04-24 19:56:58 +02:00
a4cea0bb11 hydra: update builder user 2023-04-24 18:16:49 +02:00
3b57b4821e
hydra: add restricted remote builder 2023-04-23 01:17:16 +02:00
d801ace08b
Don't import ssh-keys multiple times 2023-04-22 23:03:14 +02:00
82b799a754 jabber: update spam exclude list 2023-04-20 22:01:51 +02:00
215e539387
pulsebert: fix drucker.hq.c3d2.de 2023-04-20 02:03:27 +02:00