Commit graph

  • 967c771b3e
    Add searx host fi 2023-10-16 11:22:48 +02:00
  • d18a4ee24b Use OpenSSH config from CCCHH nix-infra repo yuri 2023-10-10 16:43:51 +02:00
  • 3708003da6
    Use OpenSSH config from CCCHH nix-infra repo fi 2023-10-10 16:43:51 +02:00
  • 87170d4e9e flake.lock: Update yuri 2023-10-10 16:05:47 +02:00
  • 578abdf26e
    flake.lock: Update fi 2023-10-10 16:05:47 +02:00
  • 27a6513e84 Use stable channel and use helper function for acme challenge proxy yuri 2023-10-10 15:21:16 +02:00
  • 8f63afc43b
    Use stable channel and use helper function for acme challenge proxy fi 2023-10-10 15:21:16 +02:00
  • 9c0398a3c1 Update element-web and clean up configuration yuri 2023-10-10 14:19:35 +02:00
  • 15963fd37e
    Update element-web and clean up configuration fi 2023-10-10 14:19:35 +02:00
  • e2ed2de11e flake.lock: Update yuri 2023-10-10 04:19:46 +02:00
  • 406a23a01f
    flake.lock: Update fi 2023-10-10 04:19:46 +02:00
  • a8ecf3d683 Remove nextcloud.grzb.de mapping yuri 2023-10-10 04:16:27 +02:00
  • 09a6abcae6
    Remove nextcloud.grzb.de mapping fi 2023-10-10 04:16:27 +02:00
  • 6b447c40aa Migrate Mastodon to NixOS yuri 2023-10-10 04:14:29 +02:00
  • c347478e96
    Migrate Mastodon to NixOS fi 2023-10-10 04:14:29 +02:00
  • db63ad370d flake.lock: Update yuri 2023-10-08 00:36:36 +02:00
  • 7055927848
    flake.lock: Update fi 2023-10-08 00:36:36 +02:00
  • c20c0e5a85 flake.lock: Update yuri 2023-10-05 23:38:17 +02:00
  • 52d59ef814
    flake.lock: Update fi 2023-10-05 23:38:17 +02:00
  • 67c5a733ab Increase worker_connections and set worker_processes to auto yuri 2023-10-07 02:42:26 +02:00
  • 8f8860390e
    Increase worker_connections and set worker_processes to auto fi 2023-10-07 02:42:26 +02:00
  • f0368c9a61 Set locations priority for matrix reverse proxy yuri 2023-10-07 02:42:00 +02:00
  • 16ec762847
    Set locations priority for matrix reverse proxy fi 2023-10-07 02:42:00 +02:00
  • 8bb1c5853b Enable sliding-sync for matrix-synapse yuri 2023-10-07 01:40:56 +02:00
  • c273c7184c
    Enable sliding-sync for matrix-synapse fi 2023-10-07 01:40:56 +02:00
  • 9ac8327798 flake.lock: Update yuri 2023-10-07 01:39:07 +02:00
  • c55d5da5c6
    flake.lock: Update fi 2023-10-07 01:39:07 +02:00
  • 05883ca9a6 Also listen on "::1" yuri 2023-10-05 23:35:00 +02:00
  • 9a64012393
    Also listen on "::1" fi 2023-10-05 23:35:00 +02:00
  • 5813640e73 Enable dehydrated device feature for element-web client yuri 2023-09-28 05:03:41 +02:00
  • ab8a9c39dc
    Enable dehydrated device feature for element-web client fi 2023-09-28 05:03:41 +02:00
  • ffa09f900b Change Content-Security-Policy "frame-ancestors" from "none" to "self" yuri 2023-09-28 04:58:38 +02:00
  • 35119a2a8e
    Change Content-Security-Policy "frame-ancestors" from "none" to "self" fi 2023-09-28 04:58:38 +02:00
  • 131fc871b7 Set real IP from local proxy yuri 2023-09-28 04:57:17 +02:00
  • e8427dc81d
    Set real IP from local proxy fi 2023-09-28 04:57:17 +02:00
  • ce5e907ed8 Setup paperless host and reverse proxy for acme http challange yuri 2023-09-25 01:35:11 +02:00
  • c1e74a4494
    Setup paperless host and reverse proxy for acme http challange fi 2023-09-25 01:35:11 +02:00
  • 4c918ad074 Set resolv.conf file manually for uptime-kuma container due to a bug yuri 2023-09-21 23:14:19 +02:00
  • a2855162eb
    Set resolv.conf file manually for uptime-kuma container due to a bug fi 2023-09-21 23:14:19 +02:00
  • eba7c018ed Use only snake case for element-web config since camel case is deprecated yuri 2023-09-19 17:56:36 +02:00
  • 440251d2fc
    Use only snake case for element-web config since camel case is deprecated fi 2023-09-19 17:56:36 +02:00
  • 21c0b67ac2 Configure TLS settings on mail relay yuri 2023-09-19 17:13:36 +02:00
  • d036d4a167
    Configure TLS settings on mail relay fi 2023-09-19 17:13:36 +02:00
  • eb84404a10 Enable TLS on mail relay yuri 2023-09-19 16:49:00 +02:00
  • 9815afffdb
    Enable TLS on mail relay fi 2023-09-19 16:49:00 +02:00
  • cae1284094 Forward port 80 to mail servers for the http acme challange yuri 2023-09-19 16:48:17 +02:00
  • 91bd9f3c1d
    Forward port 80 to mail servers for the http acme challange fi 2023-09-19 16:48:17 +02:00
  • 6c6cfb6da8 Use snat rule instead if masquerade for wireguard nat yuri 2023-09-19 15:58:42 +02:00
  • 215065aa6c
    Use snat rule instead if masquerade for wireguard nat fi 2023-09-19 15:58:42 +02:00
  • 74d5abdfe2 Use a less generic nftables table name yuri 2023-09-19 00:09:41 +02:00
  • 0d820c58af
    Use a less generic nftables table name fi 2023-09-19 00:09:41 +02:00
  • cd938d5020 Use another subnet for WireGuard tunnel as is conflicts with the openstack internal subnet yuri 2023-09-19 00:07:23 +02:00
  • e3b6c9a2bc
    Use another subnet for WireGuard tunnel as is conflicts with the openstack internal subnet fi 2023-09-19 00:07:23 +02:00
  • f9971c842e Add tcpdump to default packages yuri 2023-09-19 00:06:12 +02:00
  • 4538bfb375
    Add tcpdump to default packages fi 2023-09-19 00:06:12 +02:00
  • 3723b4edf2 Fix WireGuard nat rules yuri 2023-09-18 03:38:09 +02:00
  • e7fe3707ee
    Fix WireGuard nat rules fi 2023-09-18 03:38:09 +02:00
  • e0d1e17bbb Change mail-1 wireguard port as it is already used for STS setup yuri 2023-09-18 03:05:53 +02:00
  • f67a75b07d
    Change mail-1 wireguard port as it is already used for STS setup fi 2023-09-18 03:05:53 +02:00
  • b359ec8644 Use host resolv.conf in container yuri 2023-09-18 02:40:09 +02:00
  • a30fd6d361
    Use host resolv.conf in container fi 2023-09-18 02:40:09 +02:00
  • d1f2b13232 Add missing wireguard-tools dependency yuri 2023-09-17 21:04:22 +02:00
  • ef036a6a18
    Add missing wireguard-tools dependency fi 2023-09-17 21:04:22 +02:00
  • 03719f5bf8 Pass libnftables.so.1 path into python script yuri 2023-09-17 21:03:18 +02:00
  • de66b5931c
    Pass libnftables.so.1 path into python script fi 2023-09-17 21:03:18 +02:00
  • ea11e41005 Add wireguard-nat-nftables python script yuri 2023-09-17 04:50:07 +02:00
  • 299d04142f
    Add wireguard-nat-nftables python script fi 2023-09-17 04:50:07 +02:00
  • 34b8dcef9c Add valkyrie host yuri 2023-09-16 20:05:33 +02:00
  • 667b1c256b
    Add valkyrie host fi 2023-09-16 20:05:33 +02:00
  • f3385b48a2 Enable firewall yuri 2023-09-14 15:34:58 +02:00
  • 9cf5bd0469
    Enable firewall fi 2023-09-14 15:34:58 +02:00
  • 4a802ab44d Setup mail server and restructure some things yuri 2023-09-14 14:43:49 +02:00
  • ba93d164cf
    Setup mail server and restructure some things fi 2023-09-14 14:43:49 +02:00
  • fa3db3bad6 Update flake.lock yuri 2023-09-03 19:23:56 +02:00
  • 4c382e629d
    Update flake.lock fi 2023-09-03 19:23:56 +02:00
  • 1c268bbea6 Just do the nginx proxy_protocol listen in extraConfig and use stable packages yuri 2023-09-03 17:43:41 +02:00
  • 1d8697b70a
    Just do the nginx proxy_protocol listen in extraConfig and use stable packages fi 2023-09-03 17:43:41 +02:00
  • 7283b50b39 Bump element-web to v1.11.40 yuri 2023-09-03 16:56:05 +02:00
  • cc93674cc4
    Bump element-web to v1.11.40 fi 2023-09-03 16:56:05 +02:00
  • 685daabdd2 Bump flake.lock yuri 2023-08-29 16:11:51 +02:00
  • 5f61e963a8
    Bump flake.lock fi 2023-08-29 16:11:51 +02:00
  • 4d7c667c45 Add matrix-synapse host yuri 2023-08-29 16:10:22 +02:00
  • e93c605ebb
    Add matrix-synapse host fi 2023-08-29 16:10:22 +02:00
  • b50f8c615c Only run pipeline when specific RUN_JOB variable value is set yuri 2023-08-07 22:24:43 +02:00
  • b7864a6798
    Only run pipeline when specific RUN_JOB variable value is set fi 2023-08-07 22:24:43 +02:00
  • fd9952e9f2 Bump flake.lock yuri 2023-08-07 22:24:29 +02:00
  • 1ab6eb6c94
    Bump flake.lock fi 2023-08-07 22:24:29 +02:00
  • 909a2ac6c1 Rename nixos-coturn to coturn and finish config yuri 2023-08-07 22:12:36 +02:00
  • 8b6d09def8
    Rename nixos-coturn to coturn and finish config fi 2023-08-07 22:12:36 +02:00
  • fc2c69dbb7 Add metrics host with Grafana and Prometheus yuri 2023-08-07 00:58:45 +02:00
  • d625f3f887
    Add metrics host with Grafana and Prometheus fi 2023-08-07 00:58:45 +02:00
  • acdff7a0cc WIP grafana yuri 2023-08-06 17:53:50 +02:00
  • b7bae9e9de
    WIP grafana fi 2023-08-06 17:53:50 +02:00
  • b1015f627a Increase opcache.interned_strings_buffer PHP option yuri 2023-08-05 20:36:14 +02:00
  • 0fa4ca7521
    Increase opcache.interned_strings_buffer PHP option fi 2023-08-05 20:36:14 +02:00
  • dc7c5225ad Enable proxyprotocol for nitter host yuri 2023-08-05 06:49:48 +02:00
  • 70eb8625bc
    Enable proxyprotocol for nitter host fi 2023-08-05 06:49:48 +02:00
  • d314976135 Add netbox host yuri 2023-08-05 04:47:14 +02:00
  • a4f3e68aac
    Add netbox host fi 2023-08-05 04:47:14 +02:00
  • 8968d11075 Fix hostname yuri 2023-08-04 22:51:16 +02:00