aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* màj config giteaAlex Auvolat2023-06-026-8/+75
|
* tricot passthrough of external services at neptuneAlex Auvolat2023-05-241-0/+39
|
* added a note about forwarding to personal services in the readme (I ↵ADRN2023-05-231-1/+2
| | | | struggled to find where this was)
* staging: dev garage with fixed k2v double-urlencodingAlex Auvolat2023-05-191-1/+1
|
* Remove plume backup job (not usefull anymore)Alex Auvolat2023-05-161-46/+0
|
* Merge pull request 'prod: Plume with S3 storage backend' (#13) from plume-s3 ↵Alex2023-05-165-28/+35
|\ | | | | | | | | | | into main Reviewed-on: https://git.deuxfleurs.fr/Deuxfleurs/nixcfg/pulls/13
| * prod plume with s3 backendplume-s3Alex Auvolat2023-05-155-28/+35
| |
* | updated d53 on prodAlex Auvolat2023-05-161-1/+1
| |
* | Merge pull request 'Simplify network configuration' (#11) from ↵Alex2023-05-1643-832/+786
|\ \ | |/ |/| | | | | | | simplify-network-config into main Reviewed-on: https://git.deuxfleurs.fr/Deuxfleurs/nixcfg/pulls/11
| * use RA on orion as wellsimplify-network-configAlex Auvolat2023-05-161-5/+0
| |
| * Merge branch 'main' into simplify-network-configAlex Auvolat2023-05-1218-0/+25784
| |\
| * | deploy tricot at bespin, register gitea (not accessed yet)Alex Auvolat2023-05-093-18/+42
| | |
| * | Merge branch 'main' into simplify-network-configAlex Auvolat2023-05-0910-29/+41
| |\ \
| * | | different wgautomesh gossip ports for prod and stagingAlex Auvolat2023-05-042-1/+8
| | | |
| * | | make specifying an ipv6 fully optionnalAlex Auvolat2023-04-215-14/+22
| | | |
| * | | Diplonat on bespin, ipv6-onlyAlex Auvolat2023-04-211-1/+4
| | | |
| * | | break out core services into separate filesAlex Auvolat2023-04-215-258/+278
| | | |
| * | | Fix unbound; remove Nixos firewall (use only diplonat)Alex Auvolat2023-04-2110-17/+3
| | | |
| * | | Merge branch 'main' into simplify-network-configAlex Auvolat2023-04-214-81/+108
| |\ \ \
| * | | | diplonat with fixed iptables thingAlex Auvolat2023-04-203-59/+78
| | | | |
| * | | | increase diplonat ramAlex Auvolat2023-04-191-1/+1
| | | | |
| * | | | staging: fix consul server addressesAlex Auvolat2023-04-192-3/+3
| | | | |
| * | | | Merge branch 'main' into simplify-network-configAlex Auvolat2023-04-1912-22/+131
| |\ \ \ \
| * | | | | D53 with addresses from DiploNAT autodiscovery; diplonat fw opening for tricotAlex Auvolat2023-04-052-3/+3
| | | | | |
| * | | | | Adapt prod config to new parametersAlex Auvolat2023-04-0515-167/+98
| | | | | |
| * | | | | introduce back static ipv4 prefix lenght but with default valueAlex Auvolat2023-04-054-4/+9
| | | | | |
| * | | | | make script clearer and add documentationAlex Auvolat2023-04-051-14/+20
| | | | | |
| * | | | | Allow for IPv6 with RA disabled by manually providing gatewayAlex Auvolat2023-04-056-38/+59
| | | | | |
| * | | | | staging: ipv6-only diplonat for automatic address discoveryAlex Auvolat2023-04-051-3/+2
| | | | | |
| * | | | | remove obsolete directivesAlex Auvolat2023-03-311-3/+0
| | | | | |
| * | | | | Merge branch 'main' into simplify-network-configAlex Auvolat2023-03-242-2/+2
| |\ \ \ \ \
| * | | | | | refactor configuration syntaxAlex Auvolat2023-03-2412-185/+144
| | | | | | |
| * | | | | | greatly simplify ipv4 and ipv6 configurationAlex Auvolat2023-03-2412-79/+76
| | | | | | |
| * | | | | | Sanitize DNS configurationAlex Auvolat2023-03-245-32/+10
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - get rid of outside nameserver, unbound does the recursive resolving itself (and it checks DNSSEC) - remove CAP_NET_BIND_SERVICE for Consul as it is no longer binding on port 53 (was already obsolete) - make unbound config independant of LAN IPv4 address
* | | | | | | staging plume: cleanup and updateAlex Auvolat2023-05-158-104/+12
| |_|_|_|_|/ |/| | | | |
* | | | | | first plume on staging with S3 backendAlex Auvolat2023-05-1210-0/+360
| | | | | |
* | | | | | Export all Grafana dashboardsAlex Auvolat2023-05-098-0/+25424
| |_|_|_|/ |/| | | |
* | | | | Update telemetry stack appsMaximilien Richer2023-05-073-3/+3
| | | | |
* | | | | multi-zone matrixAlex Auvolat2023-05-041-11/+5
| | | | |
* | | | | orient SoGo and Synapse to closest psql-proxy; psql backup anywhereAlex Auvolat2023-05-044-11/+11
| | | | |
* | | | | multisite postgres, orient plume to correct dbAlex Auvolat2023-05-042-4/+11
| | | | |
* | | | | Add infinite restart policy for postgresqlBaptiste Jonglez2023-05-031-0/+7
| | | | |
* | | | | nix: allow wireguard + logsQuentin Dufour2023-04-281-0/+5
| |_|_|/ |/| | |
* | | | Garage backup to SFTP target hosted by MaxAlex Auvolat2023-04-204-81/+108
| |_|/ |/| |
* | | interface gestion site web guichetQuentin Dufour2023-04-192-1/+4
| | |
* | | allow memory overprovisionningQuentin Dufour2023-04-083-7/+14
| | |
* | | redeploy bagageQuentin Dufour2023-04-053-1/+91
| | |
* | | diplonat with ipv6 firewall support; email ipv6 addresses in dnsAlex Auvolat2023-04-042-5/+5
| | |
* | | added luxeylab to dkim signingtableAdrien2023-03-301-0/+1
| | |
* | | better classificationQuentin Dufour2023-03-271-4/+6
| | |