|
30aa03f07f
|
nixos-module/server/lxc-containers: make container startup conditional
preparing for cold failover
|
2021-08-20 21:39:00 +02:00 |
|
|
8434dcad0f
|
ap.sh: configure local graylog target
lefover
|
2021-08-20 21:38:25 +02:00 |
|
|
cf3d9b4891
|
config: don't use location to select server for lxc containers
|
2021-08-20 21:37:43 +02:00 |
|
|
c2b1a2f183
|
nix/lib/dns: fix reverseZone6Size to /56
|
2021-08-13 01:18:59 +02:00 |
|
|
2059c22c98
|
c3d2: enable dyndns
|
2021-07-16 19:36:41 +02:00 |
|
|
440ec18e71
|
upstream4: add ssh port forwarding for leon's web-deploy
|
2021-07-16 19:36:13 +02:00 |
|
|
dbca546593
|
nixos-module/server/lxc-containers: sysctl only when enabled
|
2021-07-14 19:01:24 +02:00 |
|
|
0cee77c2b4
|
nixos-module/container/dhcp-server: fix
|
2021-06-18 21:41:03 +02:00 |
|
|
7253ae6b17
|
nixos-module/container/dhcp-server: fix
|
2021-06-18 21:39:35 +02:00 |
|
|
13334f087c
|
netboot: support efi netboot
|
2021-06-18 21:31:17 +02:00 |
|
|
0e07293692
|
nixos-module/container/netboot: switch from xinetd to atftpd
|
2021-06-18 20:45:52 +02:00 |
|
|
250089b22f
|
nixos-module/server/lxc-containers: bump kernel limits
|
2021-06-18 20:20:04 +02:00 |
|
|
6b679e1b22
|
nixos-module/container/dhcp-server: fix next-server option
|
2021-06-18 20:13:07 +02:00 |
|
|
7d7c89ddb1
|
server2: disable vga modesetting
|
2021-06-18 20:09:22 +02:00 |
|
|
a85c25b0e2
|
server2: openssh.permitRootLogin=prohibit-password
|
2021-06-18 19:59:09 +02:00 |
|
|
7c0205f47e
|
netboot: init
|
2021-06-18 19:56:49 +02:00 |
|
|
bde21798b5
|
c3d2: add fixed-hosts
|
2021-06-16 19:58:40 +02:00 |
|
|
a896652436
|
lib/salt-support/expand-template: fix for nix/pkgs/ap.sh
|
2021-06-16 14:02:44 +02:00 |
|
|
0cdef19a7c
|
nix/pkgs/ap.sh: fix switchnum
|
2021-06-16 13:49:55 +02:00 |
|
|
efe6bf342a
|
nixos-module/*/network: enable LLDP
|
2021-06-14 22:00:06 +02:00 |
|
|
ff6933fa1a
|
nixos-module/network: disable IPv6AcceptRA by default
|
2021-06-14 21:56:58 +02:00 |
|
|
6d0c99c6ce
|
c3d2: enable dhcp
|
2021-06-09 22:11:46 +02:00 |
|
|
58047f565e
|
nixos-module/server/lxc-containers: check and shorten ifnames more
|
2021-06-09 21:37:21 +02:00 |
|
|
46ca027d80
|
priv17-gw-up3: init
|
2021-06-09 21:28:54 +02:00 |
|
|
e192781d2a
|
nixos-module/defaults: enable unstable zfs
|
2021-06-09 18:43:40 +02:00 |
|
|
994b00bf96
|
pkgs/ap.sh: use dnscache
|
2021-06-07 02:17:15 +02:00 |
|
|
96da13020f
|
allowedUpstreams: remove upstream2, use upstream1 for anon1
|
2021-06-02 23:45:10 +02:00 |
|
|
41a7f05c50
|
pkgs/dns-slaves: DRY masterAddrs
|
2021-06-02 23:44:02 +02:00 |
|
|
ee0c996ddc
|
nix/lib/dns: update to up4 ipv6 addrs
|
2021-06-02 20:07:56 +02:00 |
|
|
45174545f2
|
nixos-module/container/bird: disable radvd in c3d2-gw{1,2}
|
2021-06-02 20:02:31 +02:00 |
|
|
aba5796a57
|
IPv6 renumbering
|
2021-06-02 19:56:24 +02:00 |
|
|
9c485db8c3
|
partially revert ec5bed6
speedtest-cli is already installed by ../defaults.nix
|
2021-06-01 19:28:42 +02:00 |
|
|
0cf9122ce0
|
upstream4: copy forwardPorts from upstream1
|
2021-06-01 19:27:00 +02:00 |
|
Daniel Poelzleithner
|
ec5bed6e65
|
Add more packages, speedtest-cli on upstreams
|
2021-05-31 13:44:28 +02:00 |
|
|
8b2d329067
|
nixos-module/container/bird: fix syntax
|
2021-05-31 01:03:51 +02:00 |
|
|
ac4b28f1e3
|
nixos-module/server/server2: modprobe pppoe
|
2021-05-31 00:51:14 +02:00 |
|
|
bd795b270a
|
nixos-module/container/upstream/pppoe: init
|
2021-05-31 00:41:38 +02:00 |
|
|
b87b73d358
|
nixos-module/server/lxc-containers: update permissions
|
2021-05-31 00:40:19 +02:00 |
|
|
24b36568ca
|
options: add physicalInterfaces
|
2021-05-31 00:06:56 +02:00 |
|
|
280292b631
|
nixos-module/container/bird: enable radvd for c3d2-gw*
|
2021-05-28 16:49:36 +02:00 |
|
|
762a9df69c
|
nixos-module/collectd: add execUser workaround
|
2021-05-28 02:02:21 +02:00 |
|
|
78e528d024
|
duplicate c3d2-gw into c3d2-gw{1,2,3}
|
2021-05-27 15:17:45 +02:00 |
|
|
9e16a4284f
|
nixos-module/collectd/default: fix user
|
2021-05-27 03:47:14 +02:00 |
|
|
4f42b64b18
|
nixos-module/collectd/default: fix user
|
2021-05-27 03:41:22 +02:00 |
|
|
31334c4149
|
nixos-module/collectd/default: rm TODO
|
2021-05-27 03:40:56 +02:00 |
|
|
92f3be552d
|
nixos-module/collectd/default: restore ping plugin
|
2021-05-27 03:25:45 +02:00 |
|
|
57df325207
|
allowedUpstreams: add anon1 everywhere
because ipv4/ipv6 are configured together but switch independently,
anon1 can be working when upstream* has broken ipv6.
|
2021-05-27 03:01:09 +02:00 |
|
|
74dc00961b
|
nixos-module/container/bird: enable authentication for OSPFv3
|
2021-05-27 02:14:26 +02:00 |
|
|
97bd7bc7d5
|
nixos-module/server/lxc-containers: revert lxc to 4.0.6
|
2021-05-27 01:54:54 +02:00 |
|
|
5267e4ab32
|
nixos-module/container/anon: fix wireguard network
|
2021-05-27 00:19:04 +02:00 |
|
|
51df2155de
|
dnscache: update unbound settings for nixos-21.05
|
2021-05-26 23:32:11 +02:00 |
|
|
14f377248b
|
pkgs/starlink: fix convert.rb
|
2021-05-23 23:28:09 +02:00 |
|
|
ef371b32c4
|
nixos-module/collectd: add starlink-stats
|
2021-05-23 23:16:28 +02:00 |
|
|
e6ba05d34c
|
nixos-module/defaults: install speedtest-cli
|
2021-05-23 22:45:07 +02:00 |
|
|
cfb062063a
|
nixos-module/container/upstream: fix DHCP for upstream3, upstream4
|
2021-05-22 01:19:16 +02:00 |
|
|
68afa61ca1
|
lxc-containers: prepare upstream3, upstream4
|
2021-05-22 01:02:01 +02:00 |
|
|
33a4e65f69
|
nixos-module/container/upstream: catch failures
|
2021-05-14 18:56:38 +02:00 |
|
|
b23b687dfb
|
nixos-module/container/upstream: add proper networking.nat.extraStopCommands
|
2021-05-14 18:37:45 +02:00 |
|
|
5d97e85bf6
|
nixos-module/container/dns: add ns.spaceboyz.net over dn42 to slaves
|
2021-05-07 17:38:23 +02:00 |
|
|
73868f2f34
|
lib/dns: fix reverseZones4 to be complete
|
2021-05-07 17:37:52 +02:00 |
|
|
90c9c9dd13
|
nixos-module/container/dns: set notify-source for zone xfer
|
2021-05-06 18:00:47 +02:00 |
|
|
27571cff72
|
nixos-module/container/dns, pkgs/dns-slaves: add explicit addresses for zone xfers
|
2021-05-06 17:52:49 +02:00 |
|
|
88e67c827b
|
pkgs/dns-slaves: init
|
2021-05-06 17:42:26 +02:00 |
|
|
4d41e241b3
|
lib/dns: refactor localZones
|
2021-05-06 16:25:10 +02:00 |
|
|
4bb81fe044
|
nixos-module/container/dns: must use extraOptions
|
2021-05-06 15:51:58 +02:00 |
|
|
a9abf3d365
|
nixos-module/container/dns: create initial records in dynamic zones
|
2021-05-06 15:46:37 +02:00 |
|
|
8bc0ce6e15
|
nixos-module/container/dns: allow underscores in dynamic hostnames
|
2021-05-06 15:46:16 +02:00 |
|
|
3e2d8ef2fc
|
lib/config: enable site.net.pub.dynamicDomain
|
2021-05-06 15:01:39 +02:00 |
|
|
e141a0fc5a
|
nixos-module/defaults: install iftop
|
2021-05-06 03:27:35 +02:00 |
|
|
fd267085bc
|
nixos-module/container/{dns, dhcp-server}: implement internal ipv4 dyndns
|
2021-05-06 03:22:18 +02:00 |
|
|
bc61849e4d
|
nixos-module/network: try to make resolv.conf more compatible
|
2021-05-06 02:30:44 +02:00 |
|
|
0d25ccf0da
|
nix/key: add dyndnsKey
|
2021-05-06 02:05:26 +02:00 |
|
|
4402d724bb
|
nixos-module/container/anon: make nat, iproute2 config optional
|
2021-05-06 01:09:09 +02:00 |
|
|
0aa4169dcb
|
nixos-module/container/anon: make core flags optional
|
2021-05-06 01:08:01 +02:00 |
|
|
01f3685d9b
|
nixos-module/server/lxc-containers: add shortenNetName
|
2021-05-06 00:50:24 +02:00 |
|
|
5bda3ab775
|
nixos-module/defaults: let journald log to volatile storage
|
2021-05-06 00:45:18 +02:00 |
|
|
16d60e0dd3
|
nixos-module/container/dnscache: fix local forward-zones
|
2021-05-06 00:43:37 +02:00 |
|
|
c70cb80a78
|
nixos-module/container/dnscache: remove more domain-insecure definitions
|
2021-05-06 00:43:28 +02:00 |
|
|
b2e8fab30e
|
nixos-module/container/dnscache: disable c3d2 reverse zone
|
2021-05-05 23:28:26 +02:00 |
|
|
1eeb24a2e2
|
nixos-module/container/dnscache: use all the dn42 ns
|
2021-05-05 23:21:33 +02:00 |
|
|
911cd33a1c
|
nixos-module/container/dnscache: extend domain-insecure, remove all local-zone
|
2021-05-05 23:21:12 +02:00 |
|
|
a45fb3c484
|
nixos-module/container/dnscache: use data from config.site.dns.localZones
|
2021-05-05 23:20:39 +02:00 |
|
|
b800691dad
|
nixos-module/container/dns: factor zones out into config.site.dns.localZones
|
2021-05-05 23:19:41 +02:00 |
|
|
20c8821823
|
nixos-module/container/bird: don't redistribute bgp into ospf
|
2021-05-05 21:01:23 +02:00 |
|
|
bf0a185ed5
|
nixos-module/server/lxc-containers: decrease RestartSec
|
2021-05-05 20:23:56 +02:00 |
|
|
5f8203d901
|
nixos-module/container/bird: add check-upstream services
|
2021-05-05 17:35:44 +02:00 |
|
|
d89c373dfe
|
nixos-module/container/dns: add ipv6 reverse zones
|
2021-05-03 03:44:00 +02:00 |
|
|
187c657080
|
nixos-module/container/dns: add ipv4 reverse zones
|
2021-05-03 02:15:27 +02:00 |
|
|
8c896c31b8
|
nixos-module/container/dns: init
|
2021-05-03 01:26:57 +02:00 |
|
|
c15f716dd1
|
nixos-module/container/bird: fix ospf priority
|
2021-05-02 20:01:59 +02:00 |
|
|
f99d05c42d
|
nixos-module/container/bird: become designated router for ospf instances when adveritising upstream
|
2021-05-02 19:52:00 +02:00 |
|
|
df5fee8f69
|
nixos-module/container/bird: style
|
2021-05-02 19:51:48 +02:00 |
|
|
93d312c26c
|
nixos-module/server/lxc-containers: switch back to using ConditionPathExists
much more graceful to systemd
|
2021-05-01 03:07:28 +02:00 |
|
|
aa5c7377c7
|
nixos-module/server/lxc-containers: add restart on failed reload
|
2021-05-01 03:04:14 +02:00 |
|
|
03f755f841
|
nixos-module/container/upstream: provide NAT6 with noNat.subnets6
|
2021-05-01 01:14:54 +02:00 |
|
|
38da586d49
|
nixos-module/container/bird: disable ospfv3 auth again for ZW6_upstream*
upstream2 is still not migrated
|
2021-05-01 00:55:41 +02:00 |
|
|
d72789c35a
|
/nixos-module/container/bird: use ospf instances not areas for sharing upstream
|
2021-04-30 23:55:16 +02:00 |
|
|
003a948ce2
|
lib/config: remove ospf.networks[46]
|
2021-04-30 23:37:53 +02:00 |
|
|
268e16999f
|
nixos-module/container/bird: remove useless network declarations
|
2021-04-30 23:35:54 +02:00 |
|
|
eda2bc3b55
|
nixos-module/container/bird: simplify filters
|
2021-04-30 23:02:31 +02:00 |
|