|
|
2b71a3f01f
|
hosts/print-01: change serverAlias to loopback IP, not localhost
|
2025-10-24 16:03:51 -04:00 |
|
|
|
241674cb83
|
hosts/lax-01: Hostsni -> HostSNI
|
2025-10-24 11:53:22 -04:00 |
|
|
|
46e4aa90de
|
hosts/lax-01: add iPhone ssh key
|
2025-10-24 08:12:22 -04:00 |
|
|
|
e7845c4800
|
hosts/lax-01: enable tailscale exit node
|
2025-10-20 10:01:39 -07:00 |
|
|
|
35eac0db2e
|
hosts/hel-01: add config and credentials for borg backups
|
2025-10-19 11:36:44 -07:00 |
|
|
|
4af5feb6c8
|
hosts/nbg-01: use correct repo path for borg backups
|
2025-10-19 11:31:27 -07:00 |
|
|
|
638f1d61fe
|
hosts/nbg-01: add borgmatic config
|
2025-10-19 11:27:43 -07:00 |
|
|
|
69bb2a900f
|
hosts/lax-01: add int port for db in container
|
2025-10-19 08:01:37 -07:00 |
|
|
|
2e4027f09b
|
hosts: cleanup formatting for sops.secrets blocks
|
2025-10-19 07:56:07 -07:00 |
|
|
|
a5952afb88
|
hosts/lax-01: enable sops credentials for borg
|
2025-10-19 07:53:05 -07:00 |
|
|
|
3658b6dd0d
|
hosts/lax-01: add borgmatic config
|
2025-10-19 07:46:14 -07:00 |
|
|
|
0fe2de0826
|
hosts/borg-01: add keys for hel-01,lax-01,nbg-01
|
2025-10-19 07:28:24 -07:00 |
|
|
|
b2d590a899
|
hosts: enable crowdsec-firewall-bouncer module for web-exposed hosts
|
2025-10-18 22:48:16 -07:00 |
|
|
|
cd1c09f28e
|
hosts/nbg-01: add config for crowdsec traefik bouncer
|
2025-10-18 15:23:22 -07:00 |
|
|
|
6fc106abad
|
hosts/lax-01: set permission for bouncer key to traefik
|
2025-10-18 15:08:55 -07:00 |
|
|
|
a373364c25
|
hosts/lax-01: enable crowdsec-traefik-bouncer module
|
2025-10-18 13:52:24 -07:00 |
|
|
|
a55d163bae
|
hosts/log-01: consolidate sops.secrets blocks
|
2025-10-18 13:50:37 -07:00 |
|
|
|
1d54f46eb5
|
services/crowdsec: move EnvironmentFile opt into module
|
2025-10-18 12:39:56 -07:00 |
|
|
|
a628d97de1
|
hosts/log-01: disable postgres database
|
2025-10-15 21:55:52 -07:00 |
|
|
|
3467638f24
|
hosts/lax-01: add mac ssh key
|
2025-10-15 13:24:10 -07:00 |
|
|
|
2e641fb37d
|
hosts/lax-01,nbg-01: redirect http traffic to https
|
2025-10-12 22:11:32 -07:00 |
|
|
|
1c6cb102e1
|
services/traefik: add set of middlewares as default for entryPoints
|
2025-10-12 21:42:02 -07:00 |
|
|
|
9459d24a49
|
hosts/log-01: add capi enroll token
|
2025-10-12 20:58:09 -07:00 |
|
|
|
1a5f1708d2
|
hosts/log-01: add capi enroll token
|
2025-10-12 20:56:18 -07:00 |
|
|
|
f7d22c3f06
|
hosts/log-01: add secrets file to crowdsec service env
|
2025-10-12 18:09:01 -07:00 |
|
|
|
45b534497b
|
hosts/log-01: enable CROWDSEC_SECRETS
|
2025-10-12 17:46:16 -07:00 |
|
|
|
8d6a8166ae
|
hosts/log-01: enable crowdsec and postgresql for log-01
|
2025-10-12 17:36:34 -07:00 |
|
|
|
8289331497
|
hosts/lax-01: enable ntfy service
|
2025-10-11 21:00:55 -07:00 |
|
|
|
a4b28c393b
|
hosts/nbg-01: place authentik@file in middlewares block
|
2025-10-11 16:43:07 -07:00 |
|
|
|
da48ce46e3
|
services/traefik: open ports 80 and 443 by default
|
2025-10-11 16:34:38 -07:00 |
|
|
|
9235b6d713
|
hosts/nbg-01: add authentik middleware
|
2025-10-11 16:27:52 -07:00 |
|
|
|
4913580f19
|
hosts/lax-01,nbg-01: open UDP/443
|
2025-10-11 16:26:51 -07:00 |
|
|
|
9860ce8a68
|
hosts/lax-01: set environmentFile for healthchecks module
|
2025-10-11 10:01:22 -07:00 |
|
|
|
46aff62bff
|
hosts/lax-01: add secrets file for healthchecks
|
2025-10-11 09:59:13 -07:00 |
|
|
|
9eef892da2
|
hosts/lax-01: enable healthchecks service
|
2025-10-11 09:56:03 -07:00 |
|
|
|
26795b0c35
|
hosts/lax-01: remove duplicate dockerserver.enable
|
2025-10-11 09:02:52 -07:00 |
|
|
|
d46731ba38
|
merge redundant role appserver into dockerserver
|
2025-10-09 12:43:07 -07:00 |
|
|
|
9787785359
|
Merge branch 'main' into uptimekuma
|
2025-10-08 22:17:17 -07:00 |
|
|
|
073cd2ab6e
|
hosts/nbg-01: enable uptime kuma
|
2025-10-08 22:17:08 -07:00 |
|
|
|
b3f6435493
|
services/traefik: consolidate traefik certificateResolvers
|
2025-10-08 21:21:26 -07:00 |
|
|
|
3aa7e25f4b
|
hosts/lax-01: enable postgresql server
|
2025-10-05 19:05:30 -07:00 |
|
|
|
26322eb8d6
|
hosts/borg-01: update lax-01 host key
|
2025-10-05 18:39:50 -07:00 |
|
|
|
11227831f0
|
hosts/lax-01: use partlabel identifier for root
|
2025-10-05 18:33:36 -07:00 |
|
|
|
6b676c3463
|
hosts/lax-01: update root uuid
|
2025-10-05 18:28:54 -07:00 |
|
|
|
738d527150
|
hosts/lax-01: remove duplicate http.middlewares,
http.middlewares.limiter
|
2025-10-05 18:26:35 -07:00 |
|
|
|
af9047b9b8
|
hosts/lax-01: update hardware-configuration.nix
|
2025-10-05 18:23:32 -07:00 |
|
|
|
643334a3b9
|
hosts/lax-01: don't use . on its-et.me traefik router
|
2025-10-05 18:20:52 -07:00 |
|
|
|
dd3c3b8912
|
default.nix: fix incorrect config section
|
2025-10-06 00:30:01 +00:00 |
|
|
|
0a36dea65b
|
hosts/lax-01: add hardware-configuration.nix
|
2025-10-05 22:44:09 +00:00 |
|
|
|
0e8bd54b27
|
hosts/lax-01: switch disko to use /dev/sda
|
2025-10-05 22:43:42 +00:00 |
|