Commit Graph

272 Commits

Author SHA1 Message Date
bde21798b5 c3d2: add fixed-hosts 2021-06-16 19:58:40 +02:00
a896652436 lib/salt-support/expand-template: fix for nix/pkgs/ap.sh 2021-06-16 14:02:44 +02:00
0cdef19a7c nix/pkgs/ap.sh: fix switchnum 2021-06-16 13:49:55 +02:00
efe6bf342a nixos-module/*/network: enable LLDP 2021-06-14 22:00:06 +02:00
ff6933fa1a nixos-module/network: disable IPv6AcceptRA by default 2021-06-14 21:56:58 +02:00
6d0c99c6ce c3d2: enable dhcp 2021-06-09 22:11:46 +02:00
58047f565e nixos-module/server/lxc-containers: check and shorten ifnames more 2021-06-09 21:37:21 +02:00
46ca027d80 priv17-gw-up3: init 2021-06-09 21:28:54 +02:00
e192781d2a nixos-module/defaults: enable unstable zfs 2021-06-09 18:43:40 +02:00
994b00bf96 pkgs/ap.sh: use dnscache 2021-06-07 02:17:15 +02:00
96da13020f allowedUpstreams: remove upstream2, use upstream1 for anon1 2021-06-02 23:45:10 +02:00
41a7f05c50 pkgs/dns-slaves: DRY masterAddrs 2021-06-02 23:44:02 +02:00
ee0c996ddc nix/lib/dns: update to up4 ipv6 addrs 2021-06-02 20:07:56 +02:00
45174545f2 nixos-module/container/bird: disable radvd in c3d2-gw{1,2} 2021-06-02 20:02:31 +02:00
aba5796a57 IPv6 renumbering 2021-06-02 19:56:24 +02:00
9c485db8c3 partially revert ec5bed6
speedtest-cli is already installed by ../defaults.nix
2021-06-01 19:28:42 +02:00
0cf9122ce0 upstream4: copy forwardPorts from upstream1 2021-06-01 19:27:00 +02:00
Daniel Poelzleithner
ec5bed6e65 Add more packages, speedtest-cli on upstreams 2021-05-31 13:44:28 +02:00
8b2d329067 nixos-module/container/bird: fix syntax 2021-05-31 01:03:51 +02:00
ac4b28f1e3 nixos-module/server/server2: modprobe pppoe 2021-05-31 00:51:14 +02:00
bd795b270a nixos-module/container/upstream/pppoe: init 2021-05-31 00:41:38 +02:00
b87b73d358 nixos-module/server/lxc-containers: update permissions 2021-05-31 00:40:19 +02:00
24b36568ca options: add physicalInterfaces 2021-05-31 00:06:56 +02:00
280292b631 nixos-module/container/bird: enable radvd for c3d2-gw* 2021-05-28 16:49:36 +02:00
762a9df69c nixos-module/collectd: add execUser workaround 2021-05-28 02:02:21 +02:00
78e528d024 duplicate c3d2-gw into c3d2-gw{1,2,3} 2021-05-27 15:17:45 +02:00
9e16a4284f nixos-module/collectd/default: fix user 2021-05-27 03:47:14 +02:00
4f42b64b18 nixos-module/collectd/default: fix user 2021-05-27 03:41:22 +02:00
31334c4149 nixos-module/collectd/default: rm TODO 2021-05-27 03:40:56 +02:00
92f3be552d nixos-module/collectd/default: restore ping plugin 2021-05-27 03:25:45 +02:00
57df325207 allowedUpstreams: add anon1 everywhere
because ipv4/ipv6 are configured together but switch independently,
anon1 can be working when upstream* has broken ipv6.
2021-05-27 03:01:09 +02:00
74dc00961b nixos-module/container/bird: enable authentication for OSPFv3 2021-05-27 02:14:26 +02:00
97bd7bc7d5 nixos-module/server/lxc-containers: revert lxc to 4.0.6 2021-05-27 01:54:54 +02:00
5267e4ab32 nixos-module/container/anon: fix wireguard network 2021-05-27 00:19:04 +02:00
51df2155de dnscache: update unbound settings for nixos-21.05 2021-05-26 23:32:11 +02:00
14f377248b pkgs/starlink: fix convert.rb 2021-05-23 23:28:09 +02:00
ef371b32c4 nixos-module/collectd: add starlink-stats 2021-05-23 23:16:28 +02:00
e6ba05d34c nixos-module/defaults: install speedtest-cli 2021-05-23 22:45:07 +02:00
cfb062063a nixos-module/container/upstream: fix DHCP for upstream3, upstream4 2021-05-22 01:19:16 +02:00
68afa61ca1 lxc-containers: prepare upstream3, upstream4 2021-05-22 01:02:01 +02:00
33a4e65f69 nixos-module/container/upstream: catch failures 2021-05-14 18:56:38 +02:00
b23b687dfb nixos-module/container/upstream: add proper networking.nat.extraStopCommands 2021-05-14 18:37:45 +02:00
5d97e85bf6 nixos-module/container/dns: add ns.spaceboyz.net over dn42 to slaves 2021-05-07 17:38:23 +02:00
73868f2f34 lib/dns: fix reverseZones4 to be complete 2021-05-07 17:37:52 +02:00
90c9c9dd13 nixos-module/container/dns: set notify-source for zone xfer 2021-05-06 18:00:47 +02:00
27571cff72 nixos-module/container/dns, pkgs/dns-slaves: add explicit addresses for zone xfers 2021-05-06 17:52:49 +02:00
88e67c827b pkgs/dns-slaves: init 2021-05-06 17:42:26 +02:00
4d41e241b3 lib/dns: refactor localZones 2021-05-06 16:25:10 +02:00
4bb81fe044 nixos-module/container/dns: must use extraOptions 2021-05-06 15:51:58 +02:00
a9abf3d365 nixos-module/container/dns: create initial records in dynamic zones 2021-05-06 15:46:37 +02:00
8bc0ce6e15 nixos-module/container/dns: allow underscores in dynamic hostnames 2021-05-06 15:46:16 +02:00
3e2d8ef2fc lib/config: enable site.net.pub.dynamicDomain 2021-05-06 15:01:39 +02:00
e141a0fc5a nixos-module/defaults: install iftop 2021-05-06 03:27:35 +02:00
fd267085bc nixos-module/container/{dns, dhcp-server}: implement internal ipv4 dyndns 2021-05-06 03:22:18 +02:00
bc61849e4d nixos-module/network: try to make resolv.conf more compatible 2021-05-06 02:30:44 +02:00
0d25ccf0da nix/key: add dyndnsKey 2021-05-06 02:05:26 +02:00
4402d724bb nixos-module/container/anon: make nat, iproute2 config optional 2021-05-06 01:09:09 +02:00
0aa4169dcb nixos-module/container/anon: make core flags optional 2021-05-06 01:08:01 +02:00
01f3685d9b nixos-module/server/lxc-containers: add shortenNetName 2021-05-06 00:50:24 +02:00
5bda3ab775 nixos-module/defaults: let journald log to volatile storage 2021-05-06 00:45:18 +02:00
16d60e0dd3 nixos-module/container/dnscache: fix local forward-zones 2021-05-06 00:43:37 +02:00
c70cb80a78 nixos-module/container/dnscache: remove more domain-insecure definitions 2021-05-06 00:43:28 +02:00
b2e8fab30e nixos-module/container/dnscache: disable c3d2 reverse zone 2021-05-05 23:28:26 +02:00
1eeb24a2e2 nixos-module/container/dnscache: use all the dn42 ns 2021-05-05 23:21:33 +02:00
911cd33a1c nixos-module/container/dnscache: extend domain-insecure, remove all local-zone 2021-05-05 23:21:12 +02:00
a45fb3c484 nixos-module/container/dnscache: use data from config.site.dns.localZones 2021-05-05 23:20:39 +02:00
b800691dad nixos-module/container/dns: factor zones out into config.site.dns.localZones 2021-05-05 23:19:41 +02:00
20c8821823 nixos-module/container/bird: don't redistribute bgp into ospf 2021-05-05 21:01:23 +02:00
bf0a185ed5 nixos-module/server/lxc-containers: decrease RestartSec 2021-05-05 20:23:56 +02:00
5f8203d901 nixos-module/container/bird: add check-upstream services 2021-05-05 17:35:44 +02:00
d89c373dfe nixos-module/container/dns: add ipv6 reverse zones 2021-05-03 03:44:00 +02:00
187c657080 nixos-module/container/dns: add ipv4 reverse zones 2021-05-03 02:15:27 +02:00
8c896c31b8 nixos-module/container/dns: init 2021-05-03 01:26:57 +02:00
c15f716dd1 nixos-module/container/bird: fix ospf priority 2021-05-02 20:01:59 +02:00
f99d05c42d nixos-module/container/bird: become designated router for ospf instances when adveritising upstream 2021-05-02 19:52:00 +02:00
df5fee8f69 nixos-module/container/bird: style 2021-05-02 19:51:48 +02:00
93d312c26c nixos-module/server/lxc-containers: switch back to using ConditionPathExists
much more graceful to systemd
2021-05-01 03:07:28 +02:00
aa5c7377c7 nixos-module/server/lxc-containers: add restart on failed reload 2021-05-01 03:04:14 +02:00
03f755f841 nixos-module/container/upstream: provide NAT6 with noNat.subnets6 2021-05-01 01:14:54 +02:00
38da586d49 nixos-module/container/bird: disable ospfv3 auth again for ZW6_upstream*
upstream2 is still not migrated
2021-05-01 00:55:41 +02:00
d72789c35a /nixos-module/container/bird: use ospf instances not areas for sharing upstream 2021-04-30 23:55:16 +02:00
003a948ce2 lib/config: remove ospf.networks[46] 2021-04-30 23:37:53 +02:00
268e16999f nixos-module/container/bird: remove useless network declarations 2021-04-30 23:35:54 +02:00
eda2bc3b55 nixos-module/container/bird: simplify filters 2021-04-30 23:02:31 +02:00
692e12f07d nixos-module/container/bird: start using multiple ospf instances 2021-04-30 22:39:56 +02:00
1f06e90cfc nixos-module/defaults: enable boot.tmpOnTmpfs 2021-04-30 22:39:24 +02:00
5c8fa22ca8 nixos-module/server/lxc-containers: add prebuilt containers 2021-04-30 22:38:57 +02:00
2f02f474b9 flake.nix: switch zentralwerk-network-key input from nix to master branch 2021-04-30 18:39:41 +02:00
6b6f3d5598 nixos-module/container/bird: simplify filter operations 2021-04-30 00:16:00 +02:00
67acfb140b nix/nixos-module/container/anon: change wireguardMark to an actually unused value 2021-04-29 23:26:58 +02:00
8b59a9a921 lib/config/legacy: setup allowedUpstreams for many containers 2021-04-29 23:09:13 +02:00
c4fe62ebeb nixos-module/container/bird: export default routes on upstream*/anon* 2021-04-29 22:47:44 +02:00
0350826bc5 nixos-module/container/{anon,bird}: route wireguard with policy routing over default routes learned from OSPF 2021-04-29 22:46:03 +02:00
a467699f48 libx/config/default: remove dup warnings output 2021-04-29 22:43:46 +02:00
1330ba94d2 ap.sh: copy to nix/, change ping addr to mgmt-gw 2021-04-29 02:38:11 +02:00
257e6686b9 nixos-module/container/bird: implement upstream failover 2021-04-29 01:44:48 +02:00
ce49c22d2e pkgs/device-templates: make executable and wrap scripts 2021-04-29 01:39:21 +02:00
02de036ba7 nixos-module/container/upstream: update DHCPv6PrefixDelegation configuration 2021-04-29 01:34:33 +02:00
c6d2879d93 lib/config/default: fix warnings 2021-04-29 01:34:05 +02:00
60758b448a nix/pkgs: add ap_install_collectd.sh 2021-04-25 23:53:38 +02:00