Commit Graph

435 Commits

Author SHA1 Message Date
84f896770e Refactor host registry 2022-01-16 13:26:37 +01:00
dd05418887 Refactor k-ot user 2022-01-16 12:31:43 +01:00
f066f4cb82 Split "lib" into "config" and "modules"
Separate modules that add options from modules that change
configuration.
2022-01-15 21:04:38 +01:00
5f910a4630 Remove old yggdrasil stuff 2022-01-14 00:22:59 +01:00
7486153420 Remove yggdrasil container 2022-01-13 20:20:48 +01:00
b21c912992 grafana, matemat, spaceapi: enable autoUpdate 2022-01-12 01:46:13 +01:00
1a24cc1c5e Remove depot.hq.c3d2.de
It was a Genode package repository.
2022-01-10 12:24:56 +01:00
bffad63d96 hydra: reduce updater interval to daily
our infrastructure needs over 2h for the evaluation only :(
2022-01-10 04:13:55 +01:00
90d04d943b hydra: hack, update to nix master 2022-01-10 03:37:01 +01:00
838ea568bc lib/autoupdate: init, enable on mucbot 2022-01-10 03:34:34 +01:00
d678c69d23 hydra: improve updater 2022-01-10 02:35:49 +01:00
6aa807a07a hydra: add updater to flake update regularly 2022-01-09 18:05:13 +01:00
6cf3ca9441 hydra: set nix-daemon to idle scheduling 2022-01-09 01:50:32 +01:00
37c3082fea hydra: revive nix-serve.hq.c3d2.de binary cache 2022-01-09 01:50:27 +01:00
b788033951 add options.c3d2.mountCeph, clean up sops code 2022-01-08 21:21:51 +01:00
88972474d0 Fix nameservers and pulsebert ssh hostkey 2022-01-08 02:28:42 +01:00
518e738cc1 mobilizon: remove nginx setting that is now provided by updated nixpkgs-mobilizon 2022-01-08 01:47:59 +01:00
97b8c6802e hydra: use nix-client.ip4 from hostRegistry 2022-01-08 01:38:31 +01:00
7dedbb74fe hydra: fix nix settings for building this flake 2022-01-08 01:33:50 +01:00
02886d74a2 Add nix-build host to flake and hosts registry 2022-01-08 01:27:39 +01:00
36f9213db7 dn42: sopsify 2022-01-06 23:48:00 +01:00
e2344bf4b4 blogs: improve plume setup 2021-12-29 21:32:20 +01:00
fee8477bbe blogs: move plume .env into secrets 2021-12-25 02:02:45 +01:00
857650d645 blogs: init 2021-12-24 03:18:20 +01:00
bc1c54449d matemat: remove isInHq settings
container is now in serv vlan
2021-12-23 17:18:31 +01:00
aeb63194ac another try to disable networkd 2021-12-20 06:23:28 +01:00
8e49adef6d disable networkd altogether 2021-12-20 04:24:29 +01:00
c6a7f51e74 disable hq interface, since this is a container 2021-12-20 03:55:50 +01:00
4b69a5a867 disable DHCP on matemat 2021-12-20 03:28:15 +01:00
8c6635368c ensure proper reboot safety of bind service 2021-12-11 07:33:43 +01:00
Daniel Poelzleithner
fe2da9b8ba add access proxy forwarding 2021-12-05 20:43:05 +01:00
b5c2ac927d use prefixLength settings from zentralwerk (enlarging serv) 2021-11-20 01:03:57 +01:00
5881a795af scrape: enable http autoindex 2021-11-12 00:24:40 +01:00
3ae9feaa9d scrape, ticker: add drk-impfaktionen 2021-11-12 00:24:27 +01:00
d916d4d7e0 ticker: update, add ddosug feed 2021-11-11 16:33:31 +01:00
dee06b4790 hydra: add nix-build to buildMachines 2021-11-10 00:30:57 +01:00
937e420024 sdrweb: bump min icon size on adsb map 2021-11-09 20:13:55 +01:00
7316d6ebb5 sdrweb: remove wrong iconAnchor from adsb map 2021-11-09 20:13:27 +01:00
85c944e9ae grafana: set automatic Restart for grafana and influxdb
influxdb seems crashy like shit on our proxmox cluster. YOLO
2021-11-07 03:39:30 +01:00
f2f4b89f43 stream: enable jackett 2021-11-07 03:38:41 +01:00
05d50ce25d sdrweb: add trails to map, fix marker icon positioning 2021-11-02 18:38:49 +01:00
076ec41631 sdrweb: link adsbexchange.com on map 2021-11-02 18:38:49 +01:00
c32aad0ab1
Run statix fix 2021-10-31 19:00:03 +01:00
502f04040f
nix-build: clean tmpfs on reboot 2021-10-31 18:59:46 +01:00
e3886c1b7c sdrweb: fix map errors 2021-10-31 00:10:21 +02:00
056cedc107 radiobert: switch from dump1090 to readsb 2021-10-30 22:52:01 +02:00
407b1cb8a6 sdrweb: add heliwatch 2021-10-30 02:02:08 +02:00
d5bff54d43 jabber: add stats, automatic prosody restart 2021-10-19 02:23:01 +02:00
2c0eed36a1 dacbert, radiobert: copy sandro's kernel hack from pulsebert 2021-10-19 01:26:48 +02:00
b61ae77b71
Remove useless defaults
We know how nixos works
2021-10-18 23:17:15 +02:00
eb6fb245c8 hydra: fix gc.dates 2021-10-18 22:23:11 +02:00
06948797be bind: doc, refactor, fix 2021-10-18 04:04:40 +02:00
29aa88ebca c3d2-web: remove jabber proxying 2021-10-18 04:03:56 +02:00
4291730991 jabber: init 2021-10-18 03:46:25 +02:00
fc127e41b4 mask dollar signs to prevent variable resolution 2021-10-16 20:50:02 +02:00
5c54aa2aee correctly reading documentation really helps 2021-10-16 20:47:33 +02:00
467e31f742 try fixing the local listen address 2021-10-16 20:43:43 +02:00
9862642cbb try fixing the port 8080 redirect 2021-10-16 20:39:54 +02:00
f9c134ad94 add httpPort 8080 and set bindAddress to localhost 2021-10-16 20:19:44 +02:00
fec49f21dc remove wrong semicolon 2021-10-16 19:31:35 +02:00
41857a2854 replace localhsot with ip to force local IPv4 2021-10-16 19:21:14 +02:00
06d26041e2 attempt to fix keycloak networking 2021-10-16 19:04:16 +02:00
d18cc551b2 add /auth and try again 2021-10-16 18:24:54 +02:00
bc3441d890 add proxyPass to Keycloak 2021-10-16 18:12:11 +02:00
27455c55c8 bind: fix 2021-10-16 01:51:39 +02:00
3b1f9606d1 bind: add bind stats 2021-10-16 01:51:27 +02:00
3e7ebcdbd9 keycloak: init something broken 2021-10-15 23:12:04 +02:00
e59ca2c90c sdrweb: throttle adsb map updates 2021-10-15 19:14:31 +02:00
162ab421a7 radiobert: add dump1090-influxdb 2021-10-15 19:14:17 +02:00
79b2b259bc bind: init 2021-10-15 02:07:50 +02:00
a80e15487e sdrweb: enhance adsb.hq.c3d2.de 2021-10-14 02:10:18 +02:00
227a8827ee sdrweb: improve adsb.hq.c3d2.de 2021-10-13 23:44:24 +02:00
d3155ea261 sdrweb: import adsb.html 2021-10-13 22:55:21 +02:00
9ac730a8af sdrweb: add adsb.hq.c3d2.de 2021-10-13 22:53:27 +02:00
dc287e251a sdrweb: move openwebrx stats from radiobert 2021-10-13 21:44:04 +02:00
21a97dd1a9 scrape, ticker: add mkz-programm 2021-10-13 17:56:03 +02:00
8c2c3baf21 grafana: replace caddy with nginx
...so that it's automatically included in public-access-proxy
2021-10-11 23:04:05 +02:00
b3e5b24569 sdrweb: refactor from radiobert 2021-10-07 23:00:50 +02:00
16e19932e8 public-access-proxy: prefer ip4 over ip6 for backends
ipv6 addresses change with mac addresses but our ipv4 addresses in
'serv' are static
2021-10-07 17:52:20 +02:00
883222a750 matemat: move from c3d2 to serv
fixes gitea issue #9
2021-10-06 21:56:36 +02:00
4f20008ec9 public-access-proxy: populate proxyHosts from other nixosConfigurations
fixes gitea issue #8
2021-10-06 21:55:43 +02:00
8b15c0c066 c3d2-web: deploy in full glory 2021-10-06 16:43:36 +02:00
8d63790f86 c3d2-web: separate vhost for datenspuren.de 2021-10-06 03:21:22 +02:00
7746b695e7 c3d2-web: init 2021-10-06 02:55:30 +02:00
d8979a5eaf keycloak: flakify 2021-10-05 12:53:39 +02:00
2f2d2e42c5
Format 2021-10-05 09:55:21 +02:00
9977aa693b Revert "gitea: enable git hooks"
they are insecure

This reverts commit c8b4428e3f.
2021-10-05 00:14:12 +02:00
1f7aea3a28 logging: consolidate, flakify 2021-10-05 00:13:06 +02:00
6dc285dea5
Set default theme to dark 2021-10-04 21:13:10 +02:00
b35844acee
Fix section 2021-10-04 21:12:29 +02:00
c8b4428e3f gitea: enable git hooks 2021-10-04 21:08:09 +02:00
03c3889354
Poorly add nix-build configs 2021-10-03 16:19:37 +02:00
2ab3e1bdb4
Format 2021-10-03 00:22:01 +02:00
9018db9086
Remove permit root login without password everywhere 2021-10-03 00:20:15 +02:00
f58e8b6474
Include default module everywhere 2021-10-03 00:17:24 +02:00
3ed7b4e16f
Add Gitea container 2021-10-02 21:05:40 +02:00
9ce399de42 fix ip for keycloak 2021-10-02 20:48:55 +02:00
2585efb6f4 fix hostName for keycloak 2021-10-02 20:26:57 +02:00
fd876cceeb add keycloak container 2021-10-02 20:00:13 +02:00
36931f80b2
Cleanup systemPackages 2021-10-02 19:38:38 +02:00
f817394e5e
defaults: nixUnstable, activate flakes, auto optimise store, auto gc 2021-10-02 19:31:44 +02:00
7ce04c0c1e mail: prepare 2021-10-02 00:47:45 +02:00
2df10730b1 ticker: rm dup security.acme configuration 2021-09-29 22:59:31 +02:00
1f4344f43e mobilizon: setup emails 2021-09-29 19:28:05 +02:00
dcfdd87899 DRY security.acme 2021-09-27 22:27:36 +02:00
8974270a90 public-access-proxy: fix sdr domain name 2021-09-26 01:47:02 +02:00
9a7a585f63 radiobert: deploy into serv, add nginx 2021-09-25 16:36:09 +02:00
1dd68b06a9 freifunk: ignore invalid cert on https://register.freifunk-dresden.de 2021-09-22 00:01:41 +02:00
1235a7439d mobilizon: init
does not yet send mails
2021-09-20 22:11:32 +02:00
4d9aa9f091 ticker: add ds21 schedule.ics 2021-09-18 00:45:47 +02:00
8305b47c7c s/zentralwerk.dn42/zentralwerk.org/
follow-up to df0bca25bb

requested by poelzi
2021-09-18 00:44:58 +02:00
e90d9e1449 stream: set hostName 2021-09-10 23:02:57 +02:00
9a936461e6 stream: init 2021-09-10 22:59:40 +02:00
2ad513da4a kibana: fix build 2021-09-10 00:21:53 +02:00
8ac07ae985 spaceapi: flakify 2021-09-10 00:21:38 +02:00
8fbef50ba5 ticker: enable stats 2021-09-09 22:00:08 +02:00
fcea4078cf scrape: scrape dhmd-veranstaltungen hourly 2021-09-09 18:22:31 +02:00
c95ca9d4ad scrape: don't reset /home/scrape permissions 2021-09-09 18:22:22 +02:00
7830b1a2b3 public-access-proxy: collect haproxy stats 2021-09-09 18:21:38 +02:00
d72ae64d7d public-access-proxy: remove unused config 2021-09-09 16:44:45 +02:00
9d19102721 ticker: add dhmd feed 2021-09-08 22:48:37 +02:00
eb3006fa32 scrape: add scraper 2021-09-08 21:12:54 +02:00
e2fac8eb53 kibana: bump nginx clientMaxBodySize 2021-09-08 03:17:54 +02:00
3964498be4 dn42: enable resolved 2021-09-08 03:17:22 +02:00
23536cfcaf matemat: set ssmtp.useTLS
nixos complained
2021-09-08 01:43:35 +02:00
3b93b16370 ticker: flakify 2021-09-08 01:22:40 +02:00
745fe9471e scrape: add scraper 2021-09-08 00:34:26 +02:00
9a16c2148b ticker: save config after migration from inbert to cluster01 2021-09-06 01:43:07 +02:00
838f075190 add gitea. 2021-09-05 02:28:48 +02:00
add5efdc7b added ticker host 2021-09-04 18:09:05 +02:00
2a9b976cc2 public-access-proxy: move nixvita.de 2021-09-03 20:49:02 +02:00
1327f465de public-access-proxy: match by host end 2021-09-01 23:36:26 +02:00
dbccd2df17 public-access-proxy: fix wildcard matches 2021-09-01 21:42:03 +02:00
b1ae3b6013 public-access-proxy: s/srv1/vps1/ 2021-09-01 21:41:50 +02:00
b96c789aca public-access-proxy: proxy to srv1 2021-09-01 21:27:32 +02:00
e01f9ce5bf scrape: add and serve riesa-efau-kalender 2021-07-17 23:17:05 +02:00
e925dfd0c5 public-access-proxy: fix settings 2021-07-14 18:57:06 +02:00
8240f7dc32 Revert "public-access-proxy: fix haproxy config indentation"
This reverts commit 9168f27585.

Not required as per http://cbonte.github.io/haproxy-dconv/2.3/configuration.html#2.1
2021-07-14 17:40:49 +02:00
724e659016 public-access-proxy: disable outdated backends 2021-06-24 21:43:34 +02:00
9168f27585 public-access-proxy: fix haproxy config indentation 2021-06-24 21:38:59 +02:00
3b98bfb261 public-access-proxy: flakify 2021-06-23 21:59:10 +02:00
b58ab9e8f0 public-access-proxy: add nixvita.de 2021-06-23 21:26:51 +02:00
92c48317f4 freifunk, yggdrasil: enable OSPFv3 auth 2021-06-16 20:02:11 +02:00
5c6d357036 dhcp: remove
DHCP server is now on c3d2-gw3.c3d2.zentralwerk.dn42
2021-06-16 20:01:38 +02:00
2653f998dd logging: use internal domain names for backend IPv4 connections 2021-06-07 23:30:49 +02:00
4fdf88ac18 IPv6 renumbering 2021-06-02 21:37:18 +02:00
1369154dbb dnscache: remove 2021-06-02 21:35:04 +02:00
d77639d9a7 matemat: specify port for mail.c3d2.de 2021-05-28 04:54:26 +02:00
0f9193d874 freifunk, yggdrasil: enlarge core network from /26 to /25 2021-05-27 01:35:38 +02:00
31b643e2e0 kibana: flakify 2021-05-10 00:28:27 +02:00