Commit Graph

1999 Commits

Author SHA1 Message Date
10242ac10b
auth: add groups added in the web ui to seeding 2023-07-01 19:54:19 +02:00
0000000de9
jabber: remove yax.im from spam list 2023-06-28 21:42:30 +02:00
28e92d2fd9
hedgedoc: update ldap group 2023-06-28 01:04:31 +02:00
fdfad8b3d6
home-assistant: update ldap group 2023-06-28 01:04:31 +02:00
4bd6180f5e
matrix: update ldap group 2023-06-28 01:04:30 +02:00
f7df3aecd7
mastodon: update ldap group 2023-06-28 01:04:30 +02:00
4ddaa002b0 freifunk: fix /run/nginx creation 2023-06-27 02:48:34 +02:00
dae9fcd0ff freifunk: move ospf secret to sops 2023-06-27 02:48:25 +02:00
fe6490b081 freifunk: disable firewall
sigh
2023-06-27 02:47:59 +02:00
102457debb
mediawiki: resolve renamed option 2023-06-25 19:36:19 +02:00
3333333d1c
Remove ceph 16.2 2023-06-25 13:32:06 +02:00
Markus Schmidl
686012b734 server7: upgrade ceph mds 2023-06-23 18:36:35 +02:00
96576fde30
Pin ceph components on all servers 2023-06-23 18:23:17 +02:00
11111118af
c3d2-web: fix telme10 startup 2023-06-23 18:13:03 +02:00
9999999b65
buzzrelay: reduce mem 2023-06-23 17:56:36 +02:00
274e8ad4d2 ticker: reenable palaissommer 2023-06-23 02:08:38 +02:00
8888888e4c
server7: update ceph mgr 2023-06-22 23:48:56 +02:00
9001e9dd92
hydra: remove todo 2023-06-22 23:05:08 +02:00
120981e451
server7: set ceph version per component 2023-06-22 22:36:46 +02:00
00000174a6
hydra: fix eval, set protocol for localhost to null to dedupe in machines tab 2023-06-22 21:18:24 +02:00
0000009ca3
jabber: reload prosody when updating cert 2023-06-22 20:36:31 +02:00
b31782f405
hydra: cleanup build machines config 2023-06-22 16:29:10 +02:00
f274b0f43a bind: make zones directory writable to bind for .jnl files 2023-06-22 12:22:32 +02:00
000003034b
Cleanup 2023-06-16 20:28:00 +02:00
00000040af
Migrate deprecated settings 2023-06-16 20:10:44 +02:00
076c42f090 Revert "ticker: add chaosevents feed"
This reverts commit f465d40cbf.
2023-06-16 02:32:21 +02:00
f465d40cbf ticker: add chaosevents feed 2023-06-15 12:14:22 +02:00
102433c3bf
leoncloud: fix eval 2023-06-15 01:22:04 +02:00
42424268f4
Fix eval 2023-06-14 23:59:26 +02:00
96576c95d3
server7: fix eval 2023-06-14 23:44:14 +02:00
999999be2c
leoncloud: fix eval 2023-06-14 23:41:57 +02:00
c4bb6c7fa3
drone: reduce ram 2023-06-14 22:38:22 +02:00
2b30cfc9ef
c3d2-web: reduce cpus, increase ram for deployment 2023-06-14 22:38:17 +02:00
4242423be2
nfsroot: fix eval 2023-06-14 22:35:43 +02:00
0000008c13
Pin ceph to the currently deployed versions 2023-06-14 18:51:29 +02:00
1ea2d6a85f radiobert: tune dump1090 args 2023-06-13 01:00:57 +02:00
7d7340afc3 radiobert: add networking.firewall.allowedTCPPorts 2023-06-13 00:19:59 +02:00
cf83619929 radiobert: tune dump1090 args 2023-06-13 00:19:47 +02:00
6957a5e31b sdrweb: vendor jquery 2023-06-12 22:48:01 +02:00
cf135d9e47 radiobert: update nixos-23.05 option 2023-06-12 22:47:40 +02:00
32257815dd radiobert: upgrade from readsb to dump1090 2023-06-12 22:47:34 +02:00
e58c0c24fa
load uranus at boot 2023-06-08 14:33:49 +02:00
2c65075ab1 stream: update htpasswd hash 2023-06-08 01:28:49 +02:00
212c770b61 prometheus: update htpasswd hash 2023-06-08 01:25:49 +02:00
f7428b2906 nfsroot: make nfs-mountd depend on mounts before exporting shares 2023-06-08 01:09:23 +02:00
1111111f5e
Delete oxigraph 2023-06-07 20:08:00 +02:00
965764d70b
spaceapi: fix firewall 2023-06-05 22:09:07 +02:00
25613c02ec
Add missing file 2023-06-05 21:38:26 +02:00
0000007338
server8: add magnesium, blogs to restic 2023-06-05 21:38:08 +02:00
23230d670c
blogs: add backup 2023-06-05 21:37:55 +02:00
00000004b8
schalter: fix build 2023-06-05 21:35:57 +02:00
4242423a05
mobilizon: 23.05, backups
postgis fails to build
2023-06-05 21:08:21 +02:00
000000010d
jabber: fix eval 2023-06-05 20:18:14 +02:00
237170a2cb
hedgedoc: fix login only with ldap group 2023-06-05 20:08:24 +02:00
f7dc0c3986
Enable firewall everywhere 2023-06-05 19:56:33 +02:00
f81678b3f1
hedgedoc: migrate ldap to nixos-modules 2023-06-05 19:56:33 +02:00
7cc618138b
public-access-proxy: fix eval 2023-06-05 10:16:09 +02:00
e9085fa879 owncast: merge /archive into rootfs 2023-06-05 01:49:08 +02:00
000006b7e2
Misc 2023-06-01 22:42:06 +02:00
90016a351b
matrix: disable failing tests 2023-05-29 21:44:35 +02:00
0000001fe2
Delete tmppleroma 2023-05-26 22:05:41 +02:00
2bbf5dae62
server7: enable networking in initrd 2023-05-25 23:58:44 +02:00
000000f0c5
pipebert: block websites outside of hq 2023-05-25 22:18:21 +02:00
3333332a03
Move nginx allow only hq network to lib 2023-05-25 22:17:51 +02:00
33b9e16399 server7: switch osd.5 from nvme to ssd
1 lonely nvme device doesn't make sense for redundancy within the device
  class
2023-05-24 19:21:26 +02:00
70593f9c94
pipebert: add todo 2023-05-24 01:22:46 +02:00
5555555874
Unset noop grub.version 2023-05-23 22:25:52 +02:00
1dd62b623a
drone: add backups 2023-05-23 21:00:39 +02:00
cf86ed2330 remove vpn2 & vhost 2023-05-23 18:31:36 +01:00
2b5a5f2c21
glotzbert: use disko for config.fileSystem 2023-05-22 00:58:21 +02:00
d3633dd1a4
jabber: fix eval 2023-05-22 00:50:25 +02:00
d8c95a05bf
jabber: add backups 2023-05-22 00:48:40 +02:00
8593ef3e2e
jabber: format 2023-05-22 00:44:40 +02:00
af67b84800
autoupdate inputs for borzoi flake 2023-05-21 22:53:06 +02:00
c839c23baa
server6: enable cluster modules, add secrets 2023-05-21 22:04:13 +02:00
ffe2ed7dd6
server6: add secrets 2023-05-21 22:02:50 +02:00
e43dee88ca
server6: comment what the interfaces are all 2023-05-21 21:12:33 +02:00
e2d88bdc80
server6: load correct kernel module 2023-05-21 20:57:38 +02:00
ec567ffbfa
Move mergeNncpSettings setting 2023-05-21 15:37:27 +02:00
124e74c48a
server6: enable initrd unlocking via ssh 2023-05-20 22:11:56 +02:00
5aeaaf338c
Add server6 2023-05-20 04:39:40 +02:00
226af82ffb
glotzbert: use dev disk by 2023-05-20 04:06:05 +02:00
169836c95f
Move nix settins to baremetal 2023-05-19 23:06:04 +02:00
5742a7da5f server{7-10}: set full nix.settings.system-features for building 2023-05-19 21:48:21 +02:00
27e567e82c
Add baremetal option 2023-05-19 21:38:30 +02:00
20a3ce5ad8
server10: add borken-data-hoarder and tram-borzoi to autostart 2023-05-19 19:15:09 +02:00
7e3a98d68f
disko: support multiple disks 2023-05-19 01:57:15 +02:00
31d255b388
mastodon: ignore cache 2023-05-19 00:43:49 +02:00
0e781cb313 ticker: add defaults for a few calendars 2023-05-18 22:51:56 +02:00
2331e0dad5
buzzrelay: add backup 2023-05-18 22:10:21 +02:00
f41ab5ce03
dacbert: fix kernel 2023-05-18 20:07:06 +02:00
efd124ac4f
Backup Hedgedoc 2023-05-18 18:36:16 +02:00
6276ff3f00
Fix eval, another try 2023-05-18 17:49:25 +02:00
7d5f832a3d
Format 2023-05-18 17:47:15 +02:00
d79a47d6c3
dacbert: fix eval 2023-05-18 17:44:03 +02:00
299a30d838
Backup matrix, ticker 2023-05-18 17:15:36 +02:00
06e11fb7da
leoncloud: fix eval 2023-05-18 02:26:18 +02:00
0aa5340645
Fix kernel priority 2023-05-18 02:25:09 +02:00
2547cfe54b
Use options for restic backups 2023-05-18 02:06:44 +02:00
dd489fe8cd
Add offsite restic backups, move to backup module 2023-05-17 10:20:38 +02:00
d5d532c5d4
gitea: add restic, server8: bump max_blob_size 2023-05-17 00:27:06 +02:00
82b0e27eeb
mastodon: add restic 2023-05-16 23:40:43 +02:00
811b6fb3cd
mediawiki: add restic 2023-05-16 23:17:53 +02:00
7b06f91cfb
mediawiki: format 2023-05-16 23:17:30 +02:00
bd119f9119
mediawiki: update extensions to 1.39, remove integrated Interwiki, SyntaxHightlight, add WikiEditor 2023-05-16 23:17:02 +02:00
ad6bd323d3
Add hydra and matemat backup credentials 2023-05-16 18:51:41 +02:00
89627efe85
restic: don't buffer 2023-05-16 18:51:10 +02:00
75c4b4d444
server8: add restic-server 2023-05-15 23:49:16 +02:00
38d9b8f827
pipebert: fix websites 2023-05-15 00:00:13 +02:00
cf47bf50f7
pipebert: add mopidy 2023-05-14 23:13:58 +02:00
b69819df89
Switch to disko module 2023-05-08 23:33:12 +02:00
43c4406ddc
Use upstream harmonia module 2023-05-08 23:32:47 +02:00
8429bd3932
glotzbert: Fix default source, cleanup 32 bit 2023-05-06 15:17:49 +02:00
f214e2c251
Don't explizit set console font
This is now done by the kernel by default
2023-05-06 15:16:47 +02:00
0000000f1d
mastodon: move ldap to nixos-modules 2023-05-05 01:01:22 +02:00
8f664240ed rpi-netboot: install ffmpeg, trainbot 2023-05-05 00:47:18 +02:00
87d4e94e8f
matrix: require matrix ldap group 2023-05-05 00:03:39 +02:00
1f1e281783
hydra: remove kvm from gallium 2023-05-04 23:15:05 +02:00
3d12038a87
pipebert: rename interface from "USB" 2023-05-03 01:32:54 +02:00
e0add245f0
pulsebert: enable bluetooth 2023-05-02 21:50:39 +02:00
b1fe1ea0b3
pulsebert: disable octoprint, audio streaming 2023-05-02 20:13:14 +02:00
1148a5c7cf ticker: add metaknoten 2023-05-01 19:32:19 +02:00
d650783084
add nix to the microvm creation unit 2023-05-01 06:21:49 +02:00
e2f260f856
fix auto flake update script 2023-05-01 06:17:57 +02:00
ca0db6f9de
fix formatting oopsie 2023-05-01 06:06:29 +02:00
4efce70f3f
add reverse proxy forward to borken-data-hoarder 2023-05-01 05:59:52 +02:00
de6329de4c
add borken-data-hoarder microvm 2023-05-01 05:58:55 +02:00
0401d57e33
hydra: optimise periodically to speed up jobs 2023-04-30 15:37:58 +02:00
1112d2a577
pipebert: fix interface, boot disk id 2023-04-30 02:14:45 +02:00
dd28a0b357
glotzbert: enable firewall 2023-04-29 23:36:13 +02:00
f511eecdf7
Add pipebert 2023-04-29 23:26:10 +02:00
a23f73e88b
Move audio specific settings from pulsebert to audioserver 2023-04-29 23:05:39 +02:00
1d62fc65ae
gitea: fix infinite recursion 2023-04-28 00:07:24 +02:00
e6f98212e2
gitea: remove rec 2023-04-27 21:50:37 +02:00
a1e7af1abb
gitea: use postgres package that is used for db service 2023-04-27 21:47:12 +02:00
4f5b0029c8 grafana: add PostgreSQL to servers dashboard 2023-04-26 19:00:57 +02:00
29c1f68326 grafana: reallow anonymous access 2023-04-26 18:59:23 +02:00
23feab5323
matrix: remove unused input 2023-04-26 01:11:58 +02:00
3eeeb8b900 ticker: add club-aquarium 2023-04-25 02:43:26 +02:00
3032bf33a9
glotzbert: fix interface name 2023-04-25 00:37:50 +02:00
f03ff2cc07
glotzbert: fix boot disk uuid 2023-04-25 00:23:39 +02:00
d8352e54e8
glotzbert: upgrade machine 2023-04-24 23:09:38 +02:00
d2fd11dccb
Make all gnomes minimal 2023-04-24 23:09:37 +02:00
5d513cba75 caveman: update hunter prometheus_port to fix port conflict 2023-04-24 21:43:55 +02:00
13e0febab4
hydra: fix eval 2023-04-24 19:56:58 +02:00
a4cea0bb11 hydra: update builder user 2023-04-24 18:16:49 +02:00
3b57b4821e
hydra: add restricted remote builder 2023-04-23 01:17:16 +02:00
d801ace08b
Don't import ssh-keys multiple times 2023-04-22 23:03:14 +02:00
82b799a754 jabber: update spam exclude list 2023-04-20 22:01:51 +02:00
215e539387
pulsebert: fix drucker.hq.c3d2.de 2023-04-20 02:03:27 +02:00
577b24490b
disko: fix eval with newer version, general fixes 2023-04-20 02:02:48 +02:00
ab051ff2f3 nfsroot: update netboot_xyz from 2.0.65 to 2.0.68 2023-04-19 21:39:10 +02:00
Markus Schmidl
bd2a66113b hosts/public-access-proxy: add assertion for haproxy backend 2023-04-18 22:07:17 +02:00
dd73d8ae9c
fix the ipv4 redirects for dump-dvb stuff 2023-04-18 21:10:00 +02:00
Markus Schmidl
10b3da1a37 hosts/public-access-proxy: add tlm.solutions domain 2023-04-18 20:24:19 +02:00
e529dffb9c
pulsebert: expose on pulsebert.hq.c3d2.de 2023-04-15 02:55:02 +02:00
009780d093
pulsebert: add ledfx 2023-04-15 02:37:48 +02:00
98338b7511
matrix: bridge nixos rooms 2023-04-14 01:03:45 +02:00
8756ebc937
home-assistant: add spaceapi for us and turmlabor 2023-04-12 01:23:09 +02:00
80ba520664
Format 2023-04-12 01:23:00 +02:00
a2215e07fd
public-access-proxy: enable proxy protocol by default 2023-04-11 23:53:38 +02:00
e450e6cdf1
Enable proxyProtocol for drone and gitea 2023-04-11 01:11:43 +02:00
1bf9c651f5
hydra: fix occasional 502
hydra only listens on v4
2023-04-11 00:24:32 +02:00
186e4971c9
Cleanup 2023-04-11 00:24:27 +02:00
3d842ac003 Merge pull request 'please merge my last update' (#115) from leon/nix-config:master into master
Reviewed-on: #115
2023-04-10 20:47:46 +02:00
3a758855ad add new user to vpn 2023-04-10 14:39:01 +01:00
2d4977bb58
matrix: add matterbridge 2023-04-09 21:13:27 +02:00
b68f83d460
home-assistant: add esphome 2023-04-09 01:49:59 +02:00
0867957d4b
home-assistant: show automation in web ui 2023-04-08 22:46:37 +02:00
a6a6a102fb
pulsebert: add better dns name for drrkr 2023-04-08 22:38:34 +02:00
283c410ca6 home-assistant: add a stub network interface in c3d2 for mdns 2023-04-08 22:15:10 +02:00
03f19c46c4
home-assistant: enable avahi 2023-04-08 22:09:38 +02:00
8cc84e5f3d
public-access-proxy: add home-assistant 2023-04-08 21:28:43 +02:00
cc85d8f5a1
home-assistant: disable aws-sam-translator tests 2023-04-08 21:08:25 +02:00
a222a29f40
home-assistant: fix onboarding 2023-04-08 21:08:14 +02:00
0852142e98
home-assistant: fix ldap provider 2023-04-08 21:07:31 +02:00
5c56d05d5d
Add home-assistant 2023-04-07 01:43:01 +02:00
b86bb8d067
Rename nix-serve to nix-cache 2023-04-03 20:34:04 +02:00
f7d0fe3c74 buzzrelay: set journald storage to volatile 2023-03-31 22:00:52 +02:00
5a20cd1043 caveman: reduce the static mastodon-instances.txt 2023-03-31 20:30:25 +02:00
cf64c7c502 caveman: remove development vhost now served by buzzrelay 2023-03-31 20:29:57 +02:00
439f263813 caveman: move caveman-hunter prometheus_port 2023-03-31 20:29:36 +02:00
fb813a2130 caveman: set redis backup schedule 2023-03-31 20:21:47 +02:00
850f35dad9 buzzrelay: add collectd postgresql stats 2023-03-31 20:21:04 +02:00
662f487311
proxy node_exporter through nginx and drop none local traffic 2023-03-28 01:27:24 +02:00
a3b460f8aa
public-access-proxy: add element.c3d2.de 2023-03-25 16:23:00 +01:00
52fd6f4e03
c3d2-web: add matrix well-known entries 2023-03-25 16:22:49 +01:00
cf20a94462 Cleanup 2023-03-25 16:05:49 +01:00
fc56e5ff3e matrix: add element, fix ldap login 2023-03-25 16:05:30 +01:00
8cfdf8124e web: use regex's to have high priority 2023-03-25 16:05:01 +01:00
04f2bdf2f5 woodpecker: remove 2023-03-25 16:04:46 +01:00
f042fd77be Cleanup 2023-03-25 16:04:23 +01:00
ffa71115d5
matrix: add; bind: add missing file 2023-03-24 01:58:32 +01:00
5e88cbe4a5
public-access-proxy: add matrix 2023-03-24 01:56:23 +01:00
6dfa098c8a
Add todo 2023-03-24 01:56:11 +01:00
210d1a00d4
bind: fix paths, add ssh key declarative 2023-03-23 23:05:12 +01:00
a6f9000588
bind: sort 2023-03-23 21:36:53 +01:00
7819af404d
gitea: update shiny new and old settings 2023-03-23 20:29:18 +01:00
1df9fec4bb
bind: clone via ssh 2023-03-23 02:08:01 +01:00
5f1e34fcd2
bind: allow drone to log into dns user 2023-03-23 01:39:41 +01:00
3df5b42373
Fix 2023-03-23 01:35:19 +01:00
c2bf0e0a97
Add ssh secrets 2023-03-23 01:33:54 +01:00
19068120de
c3d2-web: reduce dependencies 2023-03-23 01:33:54 +01:00
61050634df
bind: use drone ci 2023-03-23 01:33:54 +01:00
29e13afd83 c3d2-web: add Mastodon Webfinger redirect for datenspuren.de 2023-03-22 23:09:02 +01:00
9be58af61f c3d2-web: fix Mastodon Webfinger redirect 2023-03-22 22:46:08 +01:00
8cd4626732
Remove factorio 2023-03-21 01:26:04 +01:00
35957073b0
gitea: add secret file 2023-03-18 01:35:58 +01:00
76883a973b
gitea: format, enable declarative ldap 2023-03-18 01:35:27 +01:00
9772890f59
data-hoarder-staging: deploy from master 2023-03-17 13:28:32 +01:00
f5fd030426
Correct module type 2023-03-10 20:25:47 +01:00
df8117b441
server7: cleanup 2023-03-09 21:57:13 +01:00
Markus Schmidl
c72a300651 deadnix 2023-03-09 21:47:10 +01:00
e413fcac75 server7: sops updatekeys *.yaml 2023-03-07 00:09:22 +01:00
49564713b6 server7: add server7_ssd0 luks 2023-03-07 00:06:57 +01:00
d96d0fb1fd server7: setup ceph 2023-03-07 00:05:22 +01:00
698fca39be server7: remove /var from manual mounting 2023-03-06 23:37:44 +01:00
6ca27604b6 server7: fix 2023-03-06 20:57:24 +01:00
ec245aa4e9 server7: switch to systemd-boot 2023-03-06 20:56:50 +01:00
6dd7514bee server7: enable grub uefi 2023-03-06 20:52:43 +01:00
559b7232aa server7: let grub device point to loop0 2023-03-06 20:49:59 +01:00
b14f17d407 server7: update grub device 2023-03-06 20:47:03 +01:00
b9a25bcc80 server7: update hardware-configuration to actual disk layout 2023-03-06 20:37:28 +01:00
6e7c0edda4 server7: add preparations 2023-03-06 19:07:51 +01:00
fa393831ab update gly-site 2023-03-03 19:59:12 +00:00
02f8019a4d add site 2023-03-03 19:59:12 +00:00
23325abbed Merge branch 'deploy-leon/leon' 2023-02-26 21:37:01 +01:00
0423572c90 pushing to overdose 2023-02-26 15:35:10 +00:00
015586b838 add client 2023-02-25 17:56:42 +00:00
8c2ed1ee04 udpate 2023-02-25 17:51:15 +00:00
bf9f4fc054 update repo 2023-02-25 13:44:46 +00:00
59469043df leon: turn back onto skyflake 2023-02-23 01:06:08 +01:00
f9000837bc
Delete direkhilfe, zengel 2023-02-23 00:04:10 +01:00
8cb5835594
gitea: fix deprecated option 2023-02-22 20:01:43 +01:00
63c451b8fd c3d2-web: fix evaluation... 2023-02-21 00:15:14 +01:00
0bd76deb35
c3d2-web: use lib.mkOptionDefault instead of options.*.default 2023-02-20 23:53:22 +01:00
19769c583e ticker: add jkpev feed 2023-02-20 10:53:27 +01:00
90d32bbe2f
jabber: add chatterboxtown.us to spam filter 2023-02-19 20:00:42 +01:00
7cfc141d36
jabber: remove hardcoded ip 2023-02-19 20:00:30 +01:00
a60f41df08
Bump matemat 2023-02-12 19:53:41 +01:00
df1b7ac6ce
owncast: redirect /archive to /archive/ 2023-02-01 00:29:13 +01:00
5151d81858
Add todo 2023-02-01 00:26:16 +01:00
d7f35bec7b
Allow c3d2 group, definitely void datadog 2023-01-30 00:46:19 +01:00
400b22ae3b
Make some room on /tmp for drones build directory 2023-01-30 00:36:01 +01:00
4c1d718f76
Cleanup old pipeline 2023-01-30 00:00:57 +01:00
1bcaf4714e
Combine allowUnfree into a single entry 2023-01-30 00:00:57 +01:00
03f9c98bf7
Add drone 2023-01-30 00:00:56 +01:00
ccc175e894 caveman: increase services.caveman.redis.maxmemory 2023-01-26 02:13:42 +01:00
e0dc85408f
Add woodpecker 2023-01-26 02:06:10 +01:00
9720353f7e
Add woodpecker 2023-01-26 00:55:17 +01:00