Commit Graph

1123 Commits

Author SHA1 Message Date
afcd152088 matemat: allow all the internal ipv6 subnets 2022-08-27 21:39:11 +02:00
7b99cdc3cc Merge pull request 'sync the port with the new one' (#46) from leon/nix-config:master into master
Reviewed-on: #46
2022-08-27 21:12:00 +02:00
5428aa3d17 sync the port with the new one 2022-08-27 18:19:38 +01:00
858a344a7d ticker: update `and' feed url 2022-08-27 16:31:56 +02:00
fab419937d leon: fix interface in prepared but inactive code 2022-08-26 00:35:57 +02:00
de3b114a83 Merge pull request 'master' (#45) from leon/nix-config:master into master
Reviewed-on: #45
2022-08-26 00:34:57 +02:00
6c5d103e12 changing routing from serv to pub 2022-08-25 23:32:04 +01:00
cdd358e2cb leon: add backwards route for port forwarding 2022-08-26 00:01:10 +02:00
1dc8bdc3e3 add new-vpn-interface-without-internet 2022-08-25 22:42:33 +01:00
b93a0d2a73 add new VPN-interface- 2022-08-25 22:38:52 +01:00
691bc7c8e1 leon: route through pub-gw 2022-08-25 22:04:22 +02:00
0f4aa8baa8 Merge pull request 'fixing the interface name' (#44) from leon/nix-config:master into master
Reviewed-on: #44
2022-08-25 20:26:06 +02:00
d55ff8fa56 fixing the interface name 2022-08-25 19:18:57 +01:00
535c85010a Merge pull request 'master' (#43) from leon/nix-config:master into master
Reviewed-on: #43
2022-08-25 19:51:25 +02:00
5f3c3da2db fix-iptables-down-option 2022-08-25 01:53:27 +01:00
103936aa47 add-vps-wireguard-server 2022-08-25 01:44:31 +01:00
5521c14abb Adding Wg-VPN uncomplete-- 2022-08-24 04:47:49 +01:00
8d9f1ef2dd
Keep journalctl for debugging 2022-08-24 01:18:24 +02:00
848c27d1fb
Allow llmnr tcp 2022-08-24 01:18:13 +02:00
0beeba3686
pulsebert: disable bluetooth
there is no wireless hardware on the new hardware
2022-08-24 01:17:52 +02:00
bdbfef3bc5
Switch pulsebert to dell mini 2022-08-24 00:32:00 +02:00
248034671d
pulsebert: activate firewall 2022-08-23 00:19:58 +02:00
936e45704b
pulsebert: disable not working wlan0 dhcp 2022-08-23 00:19:45 +02:00
c9e34bc740
pulsebert: add sdimage back 2022-08-23 00:19:33 +02:00
b7bc64e2df nfsroot: provide netbootxyz from this host 2022-08-22 22:14:16 +02:00
2c4814b16d
Disable crashing mjpg-streamer 2022-08-21 22:33:44 +02:00
b3406003cb
Try getting firewall to work
somehow allowing ports does not have any effect.
Probably related to the Pi not being reboot save.
2022-08-21 22:33:44 +02:00
398133fa93
Don't error if octoprint is disabled for testing 2022-08-21 22:10:01 +02:00
72c8847075
Dedupe octoprint port 2022-08-21 22:09:39 +02:00
f62d05d770
glotzbert: enable hardware accelerated video decoding in chromium 2022-08-21 00:13:29 +02:00
f0907545d4 Merge remote-tracking branch 'leon/master' 2022-08-20 17:24:25 +02:00
b97ab5e226 fix firewall syntax 2022-08-20 16:22:11 +01:00
60cacf8cfd fix ssh syntax 2022-08-20 16:16:59 +01:00
5b23d68513 open ports 2022-08-20 05:55:46 +01:00
26c22ea868 add config and wireguard-tools 2022-08-20 03:24:53 +01:00
c825120197
factorio: increase RAM 2022-08-18 23:30:47 +02:00
ac2a9e2246 server9, server10: refactor into modules/microvm-host 2022-08-17 21:00:01 +02:00
5741ba6aa6 leon: fix syntax 2022-08-14 23:04:27 +02:00
f4155c5675 scrape, ticker: add dresden-kulturstadt 2022-08-14 23:04:18 +02:00
2b28d6d81c Merge pull request 'add new ssh-key and app' (#41) from leon/nix-config:vps into master
Reviewed-on: #41
2022-08-13 23:23:25 +02:00
97e705423b add new ssh-key and app 2022-08-11 03:27:43 +01:00
9d256b6306 ticker: wiggle colors 2022-08-10 15:01:46 +02:00
153d6bc336 ticker: colors 2022-08-10 14:36:29 +02:00
aded3075fa ticker: add software-engineering-community, slubmakerspace, php-usergroup 2022-08-10 14:26:47 +02:00
7ce2490bd6
mediawiki: add LDAPAuthentication2 and PluggableAuth 2022-08-07 20:55:11 +02:00
2ba58ac387
mediawiki: install first extension for LDAP, LDAPProvider, fix deployment, bump flake 2022-08-07 14:59:00 +02:00
a533a648e2 config.nix 2022-08-07 02:47:42 +01:00
0a7a4715f1 ftp: add astro's key for ftpupload@ 2022-08-05 21:00:09 +02:00
c30245df93 ftp: chroot deeper 2022-08-05 20:59:54 +02:00
e30dc899ad
Add factorio 2022-08-05 19:08:42 +02:00
47198a8124
Format 2022-08-05 18:19:12 +02:00
6e7e013ec6
auth: fix json 2022-08-02 01:51:13 +02:00
355c10d79f
auth: seed groups, technical users 2022-08-01 00:16:55 +02:00
f2bd987f1e
Move sopsDefaultFile into hosts 2022-07-31 18:13:03 +02:00
36f78974e9
Delete old proxy entries 2022-07-31 17:55:56 +02:00
01e108977f
Format 2022-07-31 17:54:49 +02:00
a20be3ca78
Move sops secrets into nix-config, move hosts under hosts/containers to hosts 2022-07-31 17:52:24 +02:00
c5a2cad5ab
Delete no longer existing hosts 2022-07-31 17:47:31 +02:00
d3c494f5f7
mediawiki: use upstreamed package, correct admin mail 2022-07-27 22:32:44 +02:00
73f937c5f6
gitea: increase paging per size 2022-07-27 21:00:29 +02:00
0b78141b42
WIP 2022-07-24 03:59:15 +02:00
f0800a6150
Rename codimd.c3d2.de to hedgedoc.c3d2.de, redirect, add ldap login 2022-07-24 03:59:07 +02:00
9eef50b0f0
gitea: increqase minimal rsa key size 2022-07-23 22:26:08 +02:00
43bdf5cc4e
gitea: route ldap over internal network 2022-07-23 02:04:53 +02:00
d07eb5eab2
auth: open ldaps port 2022-07-23 02:04:42 +02:00
70004fb081
Add auth.c3d2.de 2022-07-23 00:06:24 +02:00
d26554436e
RIP keycloak 2022-07-22 19:55:18 +02:00
fb38db52bb
leon: remove resolved TODO 2022-07-20 20:59:04 +02:00
4c95a28d19
server10: use zfs compatible kernel 2022-07-20 20:57:17 +02:00
0c3fc6f3ec gnunet: throttle maxNetDownBandwidth
this has caused avg 1.5 MB/s upload over last two weeks
2022-07-20 01:46:52 +02:00
5ba762520b broker: enable websockets 2022-07-19 18:25:28 +02:00
451719ee2e broker: listen on both ipv4 and ipv6
though sysctl net.ipv6.bindv6only is already at 0
2022-07-17 02:00:55 +02:00
e1f7b84669 hydra: fix overlay to restore wander from nixos-unstable 2022-07-17 01:48:50 +02:00
bd0479c4b5 broker: enable mqtt+tls 2022-07-17 01:48:16 +02:00
6fed0e0bf9 ftp: theme in Nix store 2022-07-16 22:59:28 +02:00
7cec5e2734 ftp: sftp working 2022-07-16 21:50:55 +02:00
fe8f3d3abb ftp: nginx 2022-07-16 20:38:23 +02:00
b87a73e85c ftp: copy ftpupload.authorized_keys from inbert 2022-07-16 20:37:29 +02:00
314227533a scrape, ticker: add tjg-dresden 2022-07-16 03:11:27 +02:00
df323b4dfa broker: customize mqttui with username/password 2022-07-16 03:11:06 +02:00
7b5f6b388e mosquitto: works 2022-07-16 02:05:36 +02:00
116bae9d15
hydra: set keep-outputs to not gc anything in build jobs 2022-07-16 01:00:06 +02:00
2128cd02b0 ticker: add dresdenjs, cpp-ug 2022-07-15 18:47:37 +02:00
d6d1347291 ticker: add ezag 2022-07-15 04:08:10 +02:00
87b1d471be scrape, ticker: add kultursommer, hfmdd, hfbk-dresden 2022-07-15 02:33:47 +02:00
cad90483e1 scrape, ticker: add kunsthaus 2022-07-14 20:38:48 +02:00
67daa356ae
fixed nix ref 2022-07-13 20:39:21 +02:00
1351320281
fixed folder names for staging-data-hoarder 2022-07-13 20:23:32 +02:00
667a7bb974
restructed update script for staging-data-hoarder 2022-07-13 20:10:42 +02:00
Markus Schmidl
0af1d41e0a public-access-proxy: update data-hoarder match arg 2022-07-12 00:57:42 +02:00
Markus Schmidl
009231747f public-access-proxy: add data-hoarder 2022-07-11 23:36:25 +02:00
36d19c3223 dacbert: remove duplicate boot.kernelPackages 2022-07-10 22:44:22 +02:00
49ff7a6f61 sdrweb: nomadify 2022-07-10 20:51:45 +02:00
1b618f0cd8 modules/microvm: c3d2.deployment.server = "nomad" 2022-07-10 20:50:07 +02:00
e96f45dc81 hydra, server9, server10: enable smartd 2022-07-10 03:01:56 +02:00
Markus Schmidl
028ceb3ac5 remove legacy 2022-07-10 03:00:12 +02:00
Markus Schmidl
545336db70 server10: add microvm data-hoarder 2022-07-10 01:28:44 +02:00
1212323160 c3d2-web: properly redirect stdout+stderr to file 2022-07-10 00:19:47 +02:00
94f9ac621e
hydra: set state version for container 2022-07-09 00:58:03 +02:00
321ff05045
hydra: more parallism with less jobs 2022-07-09 00:57:42 +02:00
a890058b8f
pulsebert: enable rtkit 2022-07-08 22:03:31 +02:00
7aa7cab3b2 c3d2-web: redirect https://datenspuren.de/ -> /2022/ 2022-07-07 17:04:34 +02:00
08060dced9 improve nomad deployment 2022-07-07 01:21:39 +02:00
c485214385 gnunet: bump limits 2022-07-07 00:32:02 +02:00
8ef962fe16 gnunet: add 2022-07-06 21:09:04 +02:00
9d9d7b2757
hydra: fix max output size 2022-07-05 21:31:10 +02:00
5707cd896f add nomad scripting 2022-07-05 00:08:03 +02:00
cb4799d2e9 ticker: add more feeds 2022-07-05 00:07:05 +02:00
98d7d5d6d5
hydra: increase max_output_size 2022-07-04 00:51:01 +02:00
eb1df36d7a hydra: remove nomad client 2022-07-04 00:33:50 +02:00
9170273a38 modules/cluster: join nomad instances over ipv4 2022-07-04 00:31:23 +02:00
974e85aaac dacbert: add pi-sensors 2022-07-04 00:22:11 +02:00
e8a66709b7 modules/cluster: init glusterfs and nomad 2022-07-04 00:22:11 +02:00
14d8d34112
mediawiki: turn on captcha to prevent spam 2022-07-03 22:45:19 +02:00
b378c49f5e
mediawiki: sort extensions 2022-07-03 22:00:22 +02:00
77a03b1962
mediawiki: fix css loading 2022-07-03 21:57:50 +02:00
fa700f5f8a
mediawiki: fix old api links 2022-07-03 21:42:33 +02:00
2b53f1878b ticker: add kursiv feed 2022-07-03 14:36:39 +02:00
b29d7e936f dacbert, radiobert: allow /dev/mem access for gpio 2022-07-01 19:45:00 +02:00
274945f951 ticker: add impact-hub 2022-07-01 03:11:51 +02:00
2525f40584
hydra: forcefully enable ca-derivations 2022-07-01 01:31:13 +02:00
0ed536b3fc
hydra-ca: add upstream ca hydra cache 2022-07-01 01:31:13 +02:00
51b70b1f0f
hydra-ca: add git for flakes 2022-07-01 01:31:13 +02:00
a0b116b924 scrape, ticker: add dresden-versammlungen, azconni 2022-07-01 01:05:50 +02:00
4b93a5fbcc add gefilte fest 2022-06-30 19:13:50 +02:00
Markus Schmidl
6025d3d9c9 server9: add zfs mounts to hardware configuration 2022-06-29 20:17:45 +02:00
Markus Schmidl
763d7203db server[9|10]: enable zfs autoscrub 2022-06-29 20:04:57 +02:00
a36901790d nfsroot: fix /etc/exports duplicate fsid 2022-06-29 17:40:15 +02:00
a05c9b9f0b
Use short URLs 2022-06-29 01:08:28 +02:00
29a41c6be0 c3d2-web: bump microvm.mem up to 1G
deploy-c3d2-web works at 512M but that seems very narrow for `make -j8`
2022-06-29 00:49:12 +02:00
3fd089cfb1
Fix TLS, format, fix hash for CiteThis extension 2022-06-29 00:06:28 +02:00
558f62e162 deactive plugin in mediawiki 2022-06-28 23:43:50 +02:00
e13bfbce2d
Don't use nginx *and* apache 2022-06-28 22:35:19 +02:00
5ab9f37518
hydra-ca: allow gitlab downloads 2022-06-28 20:58:07 +02:00
f29ae80d1c
Use staging until DNS record is changed 2022-06-28 20:50:43 +02:00
2e0f8f7e69 fix 2022-06-28 20:47:17 +02:00
b4d2a7f959
Format with nixpkgs-fmt 2022-06-28 20:43:16 +02:00
ed38402eec add secret keys from SOPS 2022-06-28 20:35:16 +02:00
a450bb1ffd stream: doc 2022-06-28 03:30:58 +02:00
2792bd107c stream: microvmify 2022-06-28 03:26:08 +02:00
ab144440f9 oparl: turn oparl-scraper into a flake input 2022-06-27 23:06:38 +02:00
72494557b3
Fix next hash 2022-06-27 22:59:01 +02:00
42b68b266e
Fix hash 2022-06-27 22:56:06 +02:00
7fc37408d3
Upload mediawiki extensions to web.archive.org 2022-06-27 22:53:44 +02:00
bc1248da56 use stable uris for mediawiki extensions 2022-06-27 21:59:37 +02:00
ac23481c75 updating plugins of mediawiki 2022-06-24 22:21:55 +02:00
4fb6d550c5 disable check in logrotate to satify hydra 2022-06-24 21:06:14 +02:00
e14254dd45
hydra-ca: add overlays 2022-06-24 03:02:06 +02:00
160af5e371 glotzbert: add options relatime,discard to / rootfs 2022-06-24 01:26:01 +02:00
639fbb597e
hydra: activate features 2022-06-24 01:17:54 +02:00