Commit graph

309 commits

Author SHA1 Message Date
64c290bbfd
forgot to enable hostapd 2022-04-24 22:01:17 +01:00
0e17a59abb
make the cache key a secret 2022-04-24 21:54:48 +01:00
f7b1c750aa
add hostapd support 2022-04-24 21:20:53 +01:00
6e95290303
Track node_exporter for the nas 2022-04-24 16:10:12 +01:00
6b6d7281e0
Add a backups group 2022-04-24 13:14:47 +01:00
102234539e
fix eval for nas 2022-04-24 13:12:12 +01:00
1c39d0ccf1
Add host keys for initrd ssh 2022-04-24 09:50:26 +01:00
3cbb1e3024
Add ssh access in initrd 2022-04-24 09:43:57 +01:00
80544d5c7c
add the most basic-ass rspamd config possible 2022-04-21 08:47:28 +01:00
4e0152ba06
Re-add hydra.int.chir.rs.
This is because there is no reason for me to be accessing hydra over my
publically accessible server and be limited to maybe 100kB/s
2022-04-20 09:24:42 +01:00
529ade54ea
use nutty-noon.int.chir.rs instead of the removed hydra.int.chir.rs 2022-04-17 09:59:59 +01:00
74ddd61227
Enable autofetch
this is because the constant authorization spam is no longer an issue
2022-04-16 20:37:58 +01:00
5d75d2fca8
Allow static.darkkirb.de 2022-04-16 13:23:59 +01:00
bcfa70d341
fix the allowed uris list 2022-04-16 12:04:10 +01:00
034a6f7046
remove superseeded autodeploy 2022-04-15 19:34:35 +01:00
ffdc2b4059
The github token needs Bearer apparently 2022-04-15 18:48:34 +01:00
22cdfc034d
fix github username 2022-04-15 18:48:33 +01:00
2106e4b847
remove superseeded nix-cache 2022-04-15 18:48:32 +01:00
5e8fc3cce9
now 2022-04-15 09:59:11 +01:00
9afa666c9f
please 2022-04-15 09:54:28 +01:00
61e545a979
??? 2022-04-15 09:49:48 +01:00
55b9ef55e2
set host to proxy host when reverse-proxying 2022-04-15 09:36:46 +01:00
d56b8c4e11
try to publish hydra 2022-04-15 09:28:02 +01:00
f9efdc24c3
Add githubstatus reporting 2022-04-15 09:12:37 +01:00
eebea1e3de
use more agressive compression options 2022-04-14 06:29:42 +01:00
a18cafdc94
Upload to backblaze 2022-04-13 13:39:43 +01:00
7d72b3662e
Use aws credentials 2022-04-13 13:39:43 +01:00
0d7c79d659
Add signing for nix-serve once again 2022-04-12 13:18:20 +01:00
d11f5975fa
Don’t upload hydra results to s3 2022-04-12 10:38:53 +01:00
1c5dd90edc
remove signing once again 2022-04-12 10:37:45 +01:00
a815c86cd1
remove owner for nix-serve secret 2022-04-12 10:35:14 +01:00
01ae3eaa04
add nix-serve signing 2022-04-12 10:34:04 +01:00
4b84f6f241
add missing lib 2022-04-12 09:00:35 +01:00
ed25df7369
add nix-serve 2022-04-12 08:56:19 +01:00
74843e79de
add github_token 2022-04-10 13:08:05 +01:00
1117e2b2ab
set buffer size to maximum? 2022-04-09 12:26:09 +01:00
61ce2cdffc
add some rt stuff 2022-04-09 12:22:14 +01:00
b851765359
fix username and uuid 2022-04-01 19:05:29 +01:00
7ce6d30cfe
feat: Move over the darkkirb.de zone 2022-03-20 10:13:37 +01:00
989285330f
fix: Make the clean-s3-cache timer actually work 2022-03-20 07:49:22 +01:00
fe438e8a90
feat: Add neo-layout git to allowed URIs
this is for the rewrite
2022-03-19 20:05:04 +01:00
9edb1dd015
feat: Add cache cleanup script
This fixes #77
2022-03-16 20:35:15 +01:00
303ec1e4a9
feat: Add rpz.int.chir.rs zone
fix #68
2022-03-12 22:04:01 +01:00
e5406d318f
fix: Use the main dns server instead of the copy
fix #67
2022-03-12 13:41:22 +01:00
9f73713f4e
Revert "fix: Allow the dns tkey for darkkirb.de"
This reverts commit 60373d3042.
2022-03-12 13:39:19 +01:00
60373d3042
fix: Allow the dns tkey for darkkirb.de
fix #67
2022-03-12 11:25:56 +01:00
eb0042cd81
feat: Expose hydra to the local network
fix #64
2022-03-12 10:45:11 +01:00
097ff2d4b6
feat: Do hydra builds against the cache directly
Also adds automated signing

fix #52
2022-03-08 20:18:16 +01:00
b2bfe70b64
fix: disable the derivation size limit in hydra
fix #51
2022-03-08 19:52:55 +01:00
2e60e56bd3
fix: Increase hydra limits
fix #51
2022-03-08 18:40:01 +01:00
7cd30c7b06
fix: Remove home protections for nginx
fix #46
2022-03-06 21:44:43 +01:00
ea38329dad
fix: Add acme cert for miifox
I thought this was automatic

fix #45
2022-03-06 21:34:23 +01:00
b37c784d10
feat: Move the int.chir.rs zone to nix
fix #43
2022-03-06 18:26:20 +01:00
86336e637f
fix: Allow phpfpm to access dovecot pw
fix #41
2022-03-06 14:43:10 +01:00
53607ccfc2
fix: Pass config file instead of config
fix #38
2022-03-06 12:05:23 +01:00
2bf4e84d27
fix: Missed the first argument to toYAML
fix #37
2022-03-06 11:50:56 +01:00
1729cd7957
fix: Use promtail config instead of deleted file
fix #36
2022-03-06 11:46:06 +01:00
22c5ff7adc
fix: Make loki work with multiple systems
fix #35
2022-03-06 11:44:08 +01:00
1f866df312
Revert "Disable Multiverse for now"
This reverts commit 90adb79e6b.
2022-03-05 17:57:00 +01:00
a1bcc25c83
enable multipart upload? 2022-03-03 19:41:23 +01:00
205f452250
Sign and upload to the new cache 2022-03-03 10:21:01 +01:00
3ea92074e8
make the cache internal-only 2022-03-02 21:36:18 +01:00
d228ef73d3
Add cache storj gateway 2022-03-02 20:56:15 +01:00
b397aa25e9
fix ggateway-st 2022-03-02 18:58:17 +01:00
2344b78ebd
switch to storj 2022-03-02 18:34:15 +01:00
19f2bdf21b
use nixFlakes instead of nixUnstable 2022-03-01 20:58:52 +01:00
90adb79e6b
Disable Multiverse for now
It appears that multiverse is extremely slow on this server
2022-03-01 20:58:42 +01:00
ec331e4713
feat: allow hand-selling
this fixes #19
2022-03-01 20:58:41 +01:00
686eaec80d
feat: add essentialsx signs
This commit fixes #17
2022-03-01 20:58:41 +01:00
0ecfee5edd
disable sell command in creative mode 2022-02-24 10:45:50 +01:00
d19688416f
disable gamemode bypass 2022-02-24 10:38:05 +01:00
f97f515add
Add other multiverse components 2022-02-24 10:17:10 +01:00
aa11729a04
Add multiverse 2022-02-24 10:00:57 +01:00
d07d60ad88
move the extra session commands to the zsh extrainit 2022-02-22 08:03:12 +01:00
960e259f0c
allowlist zap 2022-02-21 12:24:28 +01:00
51de516846
add permissions to the default group 2022-02-21 11:48:24 +01:00
589f999cd5
add worth yaml 2022-02-21 10:25:52 +01:00
193892d5e0
add config for essentialsx 2022-02-21 09:39:17 +01:00
9328ecedb6
Add essentialsx 2022-02-20 21:48:07 +01:00
3b61bf31eb
Add vault 2022-02-20 20:14:42 +01:00
a9485de722
groups -> parents 2022-02-20 18:59:24 +01:00
3426f6d102
add per-user permissions 2022-02-20 18:52:34 +01:00
e073319c16
listen on ipv4 only. death 2022-02-20 18:37:06 +01:00
7fe4bd4e52
Add declarative group configuration 2022-02-20 18:19:39 +01:00
a0f64e1be1
disable ops 2022-02-20 17:29:44 +01:00
a212b63548
Add luckperms 2022-02-20 16:30:12 +01:00
8cb413a221
optimize paper config 2022-02-20 12:25:45 +01:00
e8ebc51228
fix the destination of copy-to-cache 2022-02-19 21:22:36 +01:00
6a906d0fb9
Add whitelist entries 2022-02-19 15:37:50 +01:00
40d0903093
Add minecraft 2022-02-19 15:34:43 +01:00
206e911be3
force push to staging 2022-02-18 20:42:38 +01:00
ab42a116e0
this was the wrong filename 2022-02-18 20:39:18 +01:00
6b3db48a70
only run copy-to-cache on the hydra machine 2022-02-18 20:36:49 +01:00
e558743e12
fix the nix update more 2022-02-18 20:25:57 +01:00
c1615b09c5
add git to nix’s path 2022-02-18 20:17:23 +01:00
749c0da8eb
add missing backslashes 2022-02-18 20:15:22 +01:00
cd31b2a153
fix token name and actually add the secret 2022-02-18 20:13:36 +01:00
b34479b748
fix spelling of wantedby 2022-02-18 20:07:25 +01:00
91694fb6e3
Try to automatically update nixpkgs and deploy changes 2022-02-18 20:02:45 +01:00
52d6aa66d0
add the sops secret 2022-02-18 17:04:53 +01:00