Commit Graph

392 Commits

Author SHA1 Message Date
502f04040f
nix-build: clean tmpfs on reboot 2021-10-31 18:59:46 +01:00
e3886c1b7c sdrweb: fix map errors 2021-10-31 00:10:21 +02:00
056cedc107 radiobert: switch from dump1090 to readsb 2021-10-30 22:52:01 +02:00
407b1cb8a6 sdrweb: add heliwatch 2021-10-30 02:02:08 +02:00
d5bff54d43 jabber: add stats, automatic prosody restart 2021-10-19 02:23:01 +02:00
2c0eed36a1 dacbert, radiobert: copy sandro's kernel hack from pulsebert 2021-10-19 01:26:48 +02:00
b61ae77b71
Remove useless defaults
We know how nixos works
2021-10-18 23:17:15 +02:00
eb6fb245c8 hydra: fix gc.dates 2021-10-18 22:23:11 +02:00
06948797be bind: doc, refactor, fix 2021-10-18 04:04:40 +02:00
29aa88ebca c3d2-web: remove jabber proxying 2021-10-18 04:03:56 +02:00
4291730991 jabber: init 2021-10-18 03:46:25 +02:00
fc127e41b4 mask dollar signs to prevent variable resolution 2021-10-16 20:50:02 +02:00
5c54aa2aee correctly reading documentation really helps 2021-10-16 20:47:33 +02:00
467e31f742 try fixing the local listen address 2021-10-16 20:43:43 +02:00
9862642cbb try fixing the port 8080 redirect 2021-10-16 20:39:54 +02:00
f9c134ad94 add httpPort 8080 and set bindAddress to localhost 2021-10-16 20:19:44 +02:00
fec49f21dc remove wrong semicolon 2021-10-16 19:31:35 +02:00
41857a2854 replace localhsot with ip to force local IPv4 2021-10-16 19:21:14 +02:00
06d26041e2 attempt to fix keycloak networking 2021-10-16 19:04:16 +02:00
d18cc551b2 add /auth and try again 2021-10-16 18:24:54 +02:00
bc3441d890 add proxyPass to Keycloak 2021-10-16 18:12:11 +02:00
27455c55c8 bind: fix 2021-10-16 01:51:39 +02:00
3b1f9606d1 bind: add bind stats 2021-10-16 01:51:27 +02:00
3e7ebcdbd9 keycloak: init something broken 2021-10-15 23:12:04 +02:00
e59ca2c90c sdrweb: throttle adsb map updates 2021-10-15 19:14:31 +02:00
162ab421a7 radiobert: add dump1090-influxdb 2021-10-15 19:14:17 +02:00
79b2b259bc bind: init 2021-10-15 02:07:50 +02:00
a80e15487e sdrweb: enhance adsb.hq.c3d2.de 2021-10-14 02:10:18 +02:00
227a8827ee sdrweb: improve adsb.hq.c3d2.de 2021-10-13 23:44:24 +02:00
d3155ea261 sdrweb: import adsb.html 2021-10-13 22:55:21 +02:00
9ac730a8af sdrweb: add adsb.hq.c3d2.de 2021-10-13 22:53:27 +02:00
dc287e251a sdrweb: move openwebrx stats from radiobert 2021-10-13 21:44:04 +02:00
21a97dd1a9 scrape, ticker: add mkz-programm 2021-10-13 17:56:03 +02:00
8c2c3baf21 grafana: replace caddy with nginx
...so that it's automatically included in public-access-proxy
2021-10-11 23:04:05 +02:00
b3e5b24569 sdrweb: refactor from radiobert 2021-10-07 23:00:50 +02:00
16e19932e8 public-access-proxy: prefer ip4 over ip6 for backends
ipv6 addresses change with mac addresses but our ipv4 addresses in
'serv' are static
2021-10-07 17:52:20 +02:00
883222a750 matemat: move from c3d2 to serv
fixes gitea issue #9
2021-10-06 21:56:36 +02:00
4f20008ec9 public-access-proxy: populate proxyHosts from other nixosConfigurations
fixes gitea issue #8
2021-10-06 21:55:43 +02:00
8b15c0c066 c3d2-web: deploy in full glory 2021-10-06 16:43:36 +02:00
8d63790f86 c3d2-web: separate vhost for datenspuren.de 2021-10-06 03:21:22 +02:00
7746b695e7 c3d2-web: init 2021-10-06 02:55:30 +02:00
d8979a5eaf keycloak: flakify 2021-10-05 12:53:39 +02:00
2f2d2e42c5
Format 2021-10-05 09:55:21 +02:00
9977aa693b Revert "gitea: enable git hooks"
they are insecure

This reverts commit c8b4428e3f.
2021-10-05 00:14:12 +02:00
1f7aea3a28 logging: consolidate, flakify 2021-10-05 00:13:06 +02:00
6dc285dea5
Set default theme to dark 2021-10-04 21:13:10 +02:00
b35844acee
Fix section 2021-10-04 21:12:29 +02:00
c8b4428e3f gitea: enable git hooks 2021-10-04 21:08:09 +02:00
03c3889354
Poorly add nix-build configs 2021-10-03 16:19:37 +02:00
2ab3e1bdb4
Format 2021-10-03 00:22:01 +02:00
9018db9086
Remove permit root login without password everywhere 2021-10-03 00:20:15 +02:00
f58e8b6474
Include default module everywhere 2021-10-03 00:17:24 +02:00
3ed7b4e16f
Add Gitea container 2021-10-02 21:05:40 +02:00
9ce399de42 fix ip for keycloak 2021-10-02 20:48:55 +02:00
2585efb6f4 fix hostName for keycloak 2021-10-02 20:26:57 +02:00
fd876cceeb add keycloak container 2021-10-02 20:00:13 +02:00
36931f80b2
Cleanup systemPackages 2021-10-02 19:38:38 +02:00
f817394e5e
defaults: nixUnstable, activate flakes, auto optimise store, auto gc 2021-10-02 19:31:44 +02:00
7ce04c0c1e mail: prepare 2021-10-02 00:47:45 +02:00
2df10730b1 ticker: rm dup security.acme configuration 2021-09-29 22:59:31 +02:00
1f4344f43e mobilizon: setup emails 2021-09-29 19:28:05 +02:00
dcfdd87899 DRY security.acme 2021-09-27 22:27:36 +02:00
8974270a90 public-access-proxy: fix sdr domain name 2021-09-26 01:47:02 +02:00
9a7a585f63 radiobert: deploy into serv, add nginx 2021-09-25 16:36:09 +02:00
1dd68b06a9 freifunk: ignore invalid cert on https://register.freifunk-dresden.de 2021-09-22 00:01:41 +02:00
1235a7439d mobilizon: init
does not yet send mails
2021-09-20 22:11:32 +02:00
4d9aa9f091 ticker: add ds21 schedule.ics 2021-09-18 00:45:47 +02:00
8305b47c7c s/zentralwerk.dn42/zentralwerk.org/
follow-up to df0bca25bb

requested by poelzi
2021-09-18 00:44:58 +02:00
e90d9e1449 stream: set hostName 2021-09-10 23:02:57 +02:00
9a936461e6 stream: init 2021-09-10 22:59:40 +02:00
2ad513da4a kibana: fix build 2021-09-10 00:21:53 +02:00
8ac07ae985 spaceapi: flakify 2021-09-10 00:21:38 +02:00
8fbef50ba5 ticker: enable stats 2021-09-09 22:00:08 +02:00
fcea4078cf scrape: scrape dhmd-veranstaltungen hourly 2021-09-09 18:22:31 +02:00
c95ca9d4ad scrape: don't reset /home/scrape permissions 2021-09-09 18:22:22 +02:00
7830b1a2b3 public-access-proxy: collect haproxy stats 2021-09-09 18:21:38 +02:00
d72ae64d7d public-access-proxy: remove unused config 2021-09-09 16:44:45 +02:00
9d19102721 ticker: add dhmd feed 2021-09-08 22:48:37 +02:00
eb3006fa32 scrape: add scraper 2021-09-08 21:12:54 +02:00
e2fac8eb53 kibana: bump nginx clientMaxBodySize 2021-09-08 03:17:54 +02:00
3964498be4 dn42: enable resolved 2021-09-08 03:17:22 +02:00
23536cfcaf matemat: set ssmtp.useTLS
nixos complained
2021-09-08 01:43:35 +02:00
3b93b16370 ticker: flakify 2021-09-08 01:22:40 +02:00
745fe9471e scrape: add scraper 2021-09-08 00:34:26 +02:00
9a16c2148b ticker: save config after migration from inbert to cluster01 2021-09-06 01:43:07 +02:00
838f075190 add gitea. 2021-09-05 02:28:48 +02:00
add5efdc7b added ticker host 2021-09-04 18:09:05 +02:00
2a9b976cc2 public-access-proxy: move nixvita.de 2021-09-03 20:49:02 +02:00
1327f465de public-access-proxy: match by host end 2021-09-01 23:36:26 +02:00
dbccd2df17 public-access-proxy: fix wildcard matches 2021-09-01 21:42:03 +02:00
b1ae3b6013 public-access-proxy: s/srv1/vps1/ 2021-09-01 21:41:50 +02:00
b96c789aca public-access-proxy: proxy to srv1 2021-09-01 21:27:32 +02:00
e01f9ce5bf scrape: add and serve riesa-efau-kalender 2021-07-17 23:17:05 +02:00
e925dfd0c5 public-access-proxy: fix settings 2021-07-14 18:57:06 +02:00
8240f7dc32 Revert "public-access-proxy: fix haproxy config indentation"
This reverts commit 9168f27585.

Not required as per http://cbonte.github.io/haproxy-dconv/2.3/configuration.html#2.1
2021-07-14 17:40:49 +02:00
724e659016 public-access-proxy: disable outdated backends 2021-06-24 21:43:34 +02:00
9168f27585 public-access-proxy: fix haproxy config indentation 2021-06-24 21:38:59 +02:00
3b98bfb261 public-access-proxy: flakify 2021-06-23 21:59:10 +02:00
b58ab9e8f0 public-access-proxy: add nixvita.de 2021-06-23 21:26:51 +02:00
92c48317f4 freifunk, yggdrasil: enable OSPFv3 auth 2021-06-16 20:02:11 +02:00
5c6d357036 dhcp: remove
DHCP server is now on c3d2-gw3.c3d2.zentralwerk.dn42
2021-06-16 20:01:38 +02:00
2653f998dd logging: use internal domain names for backend IPv4 connections 2021-06-07 23:30:49 +02:00
4fdf88ac18 IPv6 renumbering 2021-06-02 21:37:18 +02:00
1369154dbb dnscache: remove 2021-06-02 21:35:04 +02:00
d77639d9a7 matemat: specify port for mail.c3d2.de 2021-05-28 04:54:26 +02:00
0f9193d874 freifunk, yggdrasil: enlarge core network from /26 to /25 2021-05-27 01:35:38 +02:00
31b643e2e0 kibana: flakify 2021-05-10 00:28:27 +02:00
60117817f7 freifunk: advertise default route in another ospf instance, import all ipv6 routes 2021-05-01 01:41:26 +02:00
3cad34726d rewrite hostname to satisfy helo restrictions 2021-04-30 10:36:37 +02:00
a4b53d344d freifunk: fix ip rules 2021-04-30 00:08:49 +02:00
b7456776b0 freifunk: enable nat for tunneled uplink 2021-04-29 23:08:28 +02:00
8bfb061785 freifunk: learn freifunk default route and share over OSPF 2021-04-29 22:55:50 +02:00
08b35d6f51 freifunk: name more bmx tables 2021-04-29 22:55:31 +02:00
8b0fb87025 freifunk: mknod /dev/net/tun 2021-04-29 21:56:37 +02:00
90c5c69ecb freifunk: switch bmxd from gateway to node mode 2021-04-29 21:54:22 +02:00
b9f603eba8 hydra: useSubstitutes = true
reason: https://github.com/NixOS/nixpkgs/issues/118732
2021-04-08 13:53:11 +02:00
7e73c09ad7 yggdrasil: disable radv 2021-04-04 21:11:21 +02:00
1b10fdf03d dn42: implement multiprotocol peering 2021-03-29 00:52:59 +02:00
d04f56f4c1 scrape: add luftqualitaet 2021-03-28 20:41:37 +02:00
ef5a03b68b scrape: add impfee 2021-03-24 21:11:16 +01:00
6056b78ce6 hydra: add buildMachines
did I deploy that?
2021-03-24 21:09:51 +01:00
70774131f1 grafana: rm broken route configuration 2021-03-24 21:09:18 +01:00
906ef601d3 mucbot: flakify 2021-03-22 16:22:57 +01:00
446f93bf00 dn42: clean up bgp filters 2021-03-12 23:38:17 +01:00
e90c920103 dn42: add routecount collectd stats 2021-03-12 22:20:35 +01:00
fb5751220f hail hydra! 2021-03-12 22:07:08 +01:00
b6bd649e45 dn42, dnscache: remove outdated nameservers 2021-03-12 21:07:45 +01:00
13ae483d22 dn42: enable collectd, clean up 2021-03-12 18:42:06 +01:00
4f6f47a30d dn42: update secrets 2021-03-11 20:46:33 +01:00
4a10f571fb dn42: enable forwarding 2021-03-11 16:54:40 +01:00
019c4487af grafana: flakify 2021-03-11 16:40:39 +01:00
44ded16352 dn42: put in hq net 2021-03-11 16:25:03 +01:00
4633b71ca9 dn42: flakify 2021-03-11 15:59:00 +01:00
3a220d91a2 lib/default-gateway.nix: rm
this is done in lib/default.nix
2021-03-10 15:54:09 +01:00
7c834abb43 ssmtp for matemat 2021-03-06 20:59:08 +01:00
ae1c93404d scrape: convert scrapers to flake input 2021-03-06 03:11:43 +01:00
4b8353c011 scrape: migrate from krops to flakes 2021-03-06 02:57:35 +01:00
f29dacb173 matemat: allow auth-less access from local subnets 2021-03-06 02:33:38 +01:00
8347def09b matemat: add auth 2021-03-06 02:28:46 +01:00
b26478db13 matemat: 🎆 init 2021-03-06 01:14:02 +01:00
fca9a7f859 lib/default-gateway.nix: set only when running without systemd-networkd
this would need GatewayOnLink=yes for the route on the interface
2021-03-06 01:10:53 +01:00
d89788511a freifunk: fix self reference 2021-03-05 01:20:56 +01:00
1a559b36e5 freifunk: obtain flaky secrets 2021-03-05 01:16:57 +01:00
1d3568bfe6 host-registry: add freifunk 2021-03-05 01:16:16 +01:00
f4b4dbb7a0 freifunk: add yggdrasil port-forwarding 2021-03-05 00:43:49 +01:00
4a15413ea0 freifunk: pin firmware/server revs 2021-03-05 00:43:12 +01:00
379b1851bb yggdrasil: implement ospf, nat, name interfaces 2021-03-04 01:45:29 +01:00
6c28006440 yggdrasil: disable systemd-networkd with a reason 2021-03-04 01:44:39 +01:00
9264b271f2 yggdrasil: add listener 2021-03-04 00:02:59 +01:00
d2262715da Add yggdrasil configurations 2021-03-03 22:53:19 +01:00