Commit Graph

990 Commits

Author SHA1 Message Date
848e4d0d09 base/borg-config: change default values of MariaDB and PostgreSQL db opt 2025-12-05 13:05:49 -08:00
b769d60a26 base/borg-config: don't configure database dumps unless opt is used 2025-12-04 23:03:44 -08:00
486efbf6e7 services/traefik: remove redundant serviceConfig.workingDirectory option 2025-12-03 18:16:02 -08:00
ed1d1de76c services/crowdsec*.nix: remove duplicate nixos-imports 2025-12-03 17:53:17 -08:00
d922bbffea flake: bump stable version 25.05 to 25.11 2025-12-01 15:40:59 -08:00
e6a8cb45b3 flake.lock: update 2025-12-01 2025-12-01 15:40:25 -08:00
f4062cac55 hosts/hel-01: add mac ssh key 2025-11-25 11:04:04 -08:00
a3326e2b35 hosts/gms-01: add Watut mod 2025-11-23 19:16:28 -08:00
94f13879ca hosts/app-01: disable stirling-pdf service 2025-11-22 21:12:28 -08:00
24373e2857 flake.lock: update 2025-11-22 2025-11-22 20:04:00 -08:00
e4d4626622 Merge branch 'services' 2025-11-16 22:01:09 -08:00
405d104ae2 services/miniflux: set createDatabaseLocally opt to false 2025-11-16 22:00:44 -08:00
ec3c6c3985 Merge branch 'services' 2025-11-16 17:12:18 -08:00
fe3e14bdc8 Revert "services/crowdsec: enable crowdsec autoUpdateService"
This reverts commit e725e52516.
2025-11-16 17:12:07 -08:00
e725e52516 services/crowdsec: enable crowdsec autoUpdateService 2025-11-16 17:07:43 -08:00
7722eb0a7d base/chrony: add note about node_timex_sync_status 2025-11-13 20:00:47 -08:00
149d10bf92 hosts/hel-01: temporarily disable crowdsec-firewall-bouncer 2025-11-13 19:53:55 -08:00
2415895979 base/chrony: disable rtc trimming, enable rtcsync 2025-11-13 19:25:03 -08:00
23fb152dcc base/chrony: use nixpkgs-unstable version of chrony 2025-11-13 10:17:11 -08:00
34e3a947cb base/chrony: remove time.apple.com ntp server from default opt 2025-11-12 23:06:49 -08:00
7698f61967 base/chrony: disable NTS opt 2025-11-12 23:05:29 -08:00
6170beee68 base/network-static: remove timeServers opt 2025-11-12 22:28:30 -08:00
fd64776f11 base/chrony: add cloudflare, apple, and nist time servers 2025-11-12 22:22:17 -08:00
40172e81b6 base/chrony: add opt for ntpServers, set default 2025-11-12 22:07:17 -08:00
1678abcf78 base/chrony: add opt for ntpServers, set default 2025-11-12 22:04:15 -08:00
923ee385d9 base/chrony: split chrony into separate module 2025-11-12 22:01:08 -08:00
7e3d7d600b services/miniflux: subdomain miniflux -> reader 2025-11-12 20:43:08 -08:00
447353019f hosts/app-01: don't set owner of MINIFLUX_SECRETS 2025-11-12 20:37:30 -08:00
dc283c9f7d services/miniflux: remove CREATE_ADMIN opt 2025-11-12 20:36:35 -08:00
460f3af8b5 hosts/app-01: add config for miniflux 2025-11-12 20:35:19 -08:00
d3b97d2806 Merge branch 'services' into services.miniflux 2025-11-10 23:06:04 -08:00
2a4246e866 secrets: update all yml files with radon sops key 2025-11-10 23:05:39 -08:00
0f73e2b575 services: initial miniflux module 2025-11-10 23:05:11 -08:00
6c7bb2b2a9 hosts/gms-01: enable crowdsec-firewall-bouncer 2025-11-10 15:37:09 -08:00
73f1f93e69 .sops.yaml: add radon host 2025-11-10 08:52:32 -08:00
afc111a983 hosts/test-nixos: disable crowdsec-firewall-bouncer 2025-11-09 20:14:20 -08:00
0be7d44784 hosts: enable crowdsec-firewall-bouncer for hel-01 and nbg-01 2025-11-09 18:55:24 -08:00
0397c89918 secrets/lax-01: fix secret for wafLapiKey 2025-11-09 18:47:49 -08:00
bc69a69ddb hosts/lax-01: fix reference to fwBouncerLapiKey 2025-11-09 18:22:29 -08:00
7d131891f2 hosts/lax-01: configure crowdsec-firewall-bouncer 2025-11-09 18:18:49 -08:00
649eb8d1d9 Merge branch 'services' into services.crowdsec-firewall-bouncer 2025-11-09 18:04:16 -08:00
77da55d4d3 flake.lock: update 2025-11-09 2025-11-09 18:03:35 -08:00
3c5d81ef4c services/crowdsec-firewall-bouncer: turn lapiHost into URI 2025-11-09 18:01:55 -08:00
e7d2ffd852 services/crowdsec-firewall-bouncer: fix reference of module in config 2025-11-09 18:00:03 -08:00
0314578c32 hosts/test-nixos: use path attr of secret for apiKeyFile 2025-11-09 17:58:48 -08:00
227effc5bd secrets/test-nixos: add secret for crowdsec-firewall-bouncer 2025-11-09 17:47:53 -08:00
35485dda87 hosts/test-nixos: enable crowdsec-firewall-bouncer 2025-11-09 17:47:43 -08:00
89eb890905 Merge branch 'main' into services.crowdsec-firewall-bouncer 2025-11-09 17:44:40 -08:00
8a018fa982 .sops.yaml: add entry and key for test-nixos 2025-11-09 17:44:21 -08:00
a382452507 services/crowdsec-firewall-bouncer: initial implementation 2025-11-09 17:39:01 -08:00