|
|
950d04a418
|
services/traefik: target alloy scrape directly on access log
|
2025-10-15 18:54:50 -07:00 |
|
|
|
a6a6b77d6f
|
services/traefik: conditionally add alloy to traefik group
|
2025-10-15 18:50:49 -07:00 |
|
|
|
a48ffaa979
|
services/traefik: conditionally add alloy to traefik group
|
2025-10-15 18:49:08 -07:00 |
|
|
|
3467638f24
|
hosts/lax-01: add mac ssh key
|
2025-10-15 13:24:10 -07:00 |
|
|
|
8f90f804e8
|
services/traefik: log traefik access logs to file
|
2025-10-15 13:20:07 -07:00 |
|
|
|
8fe74f9a99
|
services/traefik: restructure accessLog config in accordance with traefik example
|
2025-10-15 13:17:51 -07:00 |
|
|
|
acfa1cf94f
|
services/traefik: modify ReadWritePaths scope
|
2025-10-15 13:07:54 -07:00 |
|
|
|
26edbbef72
|
Merge branch 'services.crowdsec' into services
|
2025-10-15 12:56:12 -07:00 |
|
|
|
0cc92f555d
|
services/traefik: enable alloy collection for traefik access logs
|
2025-10-15 12:55:15 -07:00 |
|
|
|
8bd1dc8751
|
services/traefik: enable access logging for traefik
|
2025-10-15 10:28:30 -07:00 |
|
|
|
c7adadba48
|
services/crowdsec: add traefik WAF config
|
2025-10-15 10:22:17 -07:00 |
|
|
|
69929254da
|
services/crowdsec: set up acquisitions for traefik, gitea, and authentik
|
2025-10-15 10:22:17 -07:00 |
|
|
|
3b38e810ec
|
services/traefik: mkif -> mkIf
|
2025-10-12 22:14:15 -07:00 |
|
|
|
2e641fb37d
|
hosts/lax-01,nbg-01: redirect http traffic to https
|
2025-10-12 22:11:32 -07:00 |
|
|
|
782bf9ead0
|
services/traefik: add opt for redirecting HTTPS
|
2025-10-12 22:09:24 -07:00 |
|
|
|
e93a46fc4c
|
services/traefik: fix incorrect advertisedPort opt
|
2025-10-12 21:51:58 -07:00 |
|
|
|
1c6cb102e1
|
services/traefik: add set of middlewares as default for entryPoints
|
2025-10-12 21:42:02 -07:00 |
|
|
|
8501a8da53
|
roles/dbserver-postgresql: disable alloy config
|
2025-10-12 21:20:58 -07:00 |
|
|
|
988853cd79
|
base/base: add nethogs and btop diag programs
|
2025-10-12 21:16:41 -07:00 |
|
|
|
1d1c1caab3
|
Merge branch 'services.crowdsec' into services
|
2025-10-12 21:13:53 -07:00 |
|
|
|
f9575f7714
|
services/crowdsec: add note about capi_credentials file
|
2025-10-12 21:08:46 -07:00 |
|
|
|
ec0095276c
|
services/crowdsec: simplify credentials file paths
|
2025-10-12 21:04:07 -07:00 |
|
|
|
c1522cf538
|
Revert "services/crowdsec: use statedir for credentials files"
This reverts commit 75361b6112.
|
2025-10-12 21:03:41 -07:00 |
|
|
|
adc3119d5c
|
services/crowdsec: remove daemonize opt from api.server
|
2025-10-12 21:00:46 -07:00 |
|
|
|
1a50fb4802
|
services/crowdsec: remove prometheus config
|
2025-10-12 20:59:53 -07:00 |
|
|
|
9459d24a49
|
hosts/log-01: add capi enroll token
|
2025-10-12 20:58:09 -07:00 |
|
|
|
1a5f1708d2
|
hosts/log-01: add capi enroll token
|
2025-10-12 20:56:18 -07:00 |
|
|
|
f7552470bb
|
services/crowdsec: add opt for tokenFile
|
2025-10-12 20:53:41 -07:00 |
|
|
|
fb9aeb7f8f
|
secrets/log-01: add crowdsec console enroll token
|
2025-10-12 20:51:23 -07:00 |
|
|
|
a19cee331a
|
services/crowdsec: explicitly define listening port for lapi
|
2025-10-12 20:42:59 -07:00 |
|
|
|
15976b7b81
|
services/crowdsec: move settings block one block up
|
2025-10-12 20:38:06 -07:00 |
|
|
|
9875b48a69
|
services/crowdsec: re-enable api.server config
|
2025-10-12 20:32:41 -07:00 |
|
|
|
75361b6112
|
services/crowdsec: use statedir for credentials files
|
2025-10-12 20:32:17 -07:00 |
|
|
|
db06ce0147
|
services/crowdsec: misc settings cleanup, add api.client
|
2025-10-12 20:24:29 -07:00 |
|
|
|
27017b1f3a
|
services/crowdsec: explicitly unset db_path
|
2025-10-12 18:29:31 -07:00 |
|
|
|
1f36cbea3e
|
services/crowdsec: remove logging directives except for log_level
|
2025-10-12 18:28:49 -07:00 |
|
|
|
c7ad84673b
|
secrets/log-01_crowdsec.env: change type of port to int
|
2025-10-12 18:15:24 -07:00 |
|
|
|
c67902c13a
|
services/crowdsec: fix formatting of db envs
|
2025-10-12 18:12:17 -07:00 |
|
|
|
f7d22c3f06
|
hosts/log-01: add secrets file to crowdsec service env
|
2025-10-12 18:09:01 -07:00 |
|
|
|
a9a20d6fe4
|
services/crowdsec: combine appSec and parser sections into collections
|
2025-10-12 18:04:45 -07:00 |
|
|
|
96e108c11d
|
services/crowdsec: set dir for credentialsFiles in /etc/crowdsec
|
2025-10-12 17:54:18 -07:00 |
|
|
|
45b534497b
|
hosts/log-01: enable CROWDSEC_SECRETS
|
2025-10-12 17:46:16 -07:00 |
|
|
|
8d6a8166ae
|
hosts/log-01: enable crowdsec and postgresql for log-01
|
2025-10-12 17:36:34 -07:00 |
|
|
|
568582762b
|
secrets/log-01_crowdsec.env: add crowdsec db pass
|
2025-10-12 17:35:30 -07:00 |
|
|
|
a6766bcdbd
|
.sops.yaml: enable .env secret files for log-01
|
2025-10-12 17:35:09 -07:00 |
|
|
|
ffd1c4a7bf
|
services/crowdsec.nix: re-hardcode acquisitions config
|
2025-10-12 16:07:55 -07:00 |
|
|
|
1e84c59e9a
|
Revert "services/crowdsec: change localConfig.parsers to module opt"
This reverts commit f65172dda5.
|
2025-10-12 16:01:40 -07:00 |
|
|
|
9e04267da5
|
Revert "Reapply "services/crowdsec: change hub configuration to hubConfig opt""
This reverts commit 19d8a0d61f.
|
2025-10-12 15:59:36 -07:00 |
|
|
|
e2d95b493d
|
services/crowdsec: opt hubConfig -> hub
|
2025-10-12 15:57:24 -07:00 |
|
|
|
19d8a0d61f
|
Reapply "services/crowdsec: change hub configuration to hubConfig opt"
This reverts commit 62d087998f.
|
2025-10-12 15:57:12 -07:00 |
|