Commit graph

335 commits

Author SHA1 Message Date
magic_rb c4dfdf5f47
Add second disk encrypted into omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-05-04 21:45:44 +02:00
magic_rb f8a0aef1ef
Clean up omen netfilter rules
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-05-04 21:41:54 +02:00
magic_rb 020ba95061
Limit the impact of chaotic-nyx, by only using the mesa module
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-27 22:12:41 +02:00
magic_rb dab6cb7594
Buildbot fully working with Gitea
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-27 22:10:15 +02:00
magic_rb f255049bb9
Persist more Arma3 things
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-23 13:02:52 +02:00
magic_rb ee654f2d06
Add buildbot
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-21 19:38:47 +02:00
magic_rb e45cb64f8e
Re-add acme-sh but standalone
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-20 15:01:41 +02:00
magic_rb 91675272a2
Disable stable mesa specialisation on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-19 14:07:44 +02:00
magic_rb a6c1a424ef
Cleanup buggy omen networking
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-19 14:05:59 +02:00
magic_rb d4f898fa61
Disable chaotic nyx cache
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-19 13:47:30 +02:00
magic_rb 372b4dadbe
More k8s enablement.
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-14 00:19:00 +02:00
magic_rb f47cbd1801
Setup blowhole to heater arma forwarding
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-13 19:39:19 +02:00
magic_rb ac5403501f
Move arma 3 server over to heater
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-13 19:38:04 +02:00
magic_rb 91eb3eab5c
Make arma3 module functional
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-12 18:22:33 +02:00
magic_rb 2e2f63ac5a
blowhole: Always add k3s to systemPackages and mount /etc/rancher
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-07 13:35:38 +02:00
magic_rb 066ea797a5
Setup uk3s.nix on blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-07 13:24:38 +02:00
magic_rb 6a7adefd8e
Switch blowhole to uk3s.nix module
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-07 10:37:17 +02:00
magic_rb 49e8237b61
Utilize new helmCharts NixOS option
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-06 19:20:08 +02:00
magic_rb d44b4d1d16
Defer container eval to Terraform plan time
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-06 16:15:47 +02:00
magic_rb b2370d4147
Switch to new uterranix version
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-04-06 14:31:51 +02:00
magic_rb 61862bda34
Lock down SSH access from outside
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-30 23:09:27 +01:00
magic_rb 5a66d049ed
Persist acme dir on altra
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-30 23:09:16 +01:00
magic_rb 70916fc587
Utilize actual host volume for Hydra
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-30 20:36:36 +01:00
magic_rb 6f18aa5f55
Fixup heater, prepare for compute rig
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-30 14:52:58 +01:00
magic_rb ba29bd0730
Lower current for extruder stepper and disable stealthchop
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-23 08:32:43 +01:00
magic_rb 789d57a936
Disable setting smooth time in klipper
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-23 08:32:28 +01:00
magic_rb e0ec4be761
More arma3 enablement
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-23 08:31:33 +01:00
magic_rb f1337b04de
Update omen kernel
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-20 12:34:49 +01:00
magic_rb e745a71c39
Slightly adjust rotation_distance for printer
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-13 12:18:47 +01:00
magic_rb 3f114b7925
Bump omen's kernel to 6.7.9
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-12 23:25:20 +01:00
magic_rb 4226badadc
Flip 3d printer extruder direction ufter switching to direct drive
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-12 23:24:59 +01:00
magic_rb 269a809843
Fix omen's proprietary NVidia driver specialization
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-12 23:24:31 +01:00
magic_rb 7a76730241
Persist PrusaSlicer on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-10 11:48:39 +01:00
magic_rb 5955a6d4af
Switch to nouveau by default on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-09 17:10:12 +01:00
magic_rb 9f6f8394bd
Add specialisation for omen on the nouveau driver
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-08 21:58:44 +01:00
magic_rb 3ca5d0387a
Switch arma IP again
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-06 14:49:52 +01:00
magic_rb d89deacd3e
Cleanup omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 23:09:25 +01:00
magic_rb ad899971d6
Add thingiverse-downloader to heater
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 22:39:07 +01:00
magic_rb aff0158ef7
Reformat the whole flake using alejandra
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 22:17:03 +01:00
magic_rb 97be6885a6
Random stuff I cannot be bothered anymore
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 22:00:09 +01:00
magic_rb 7e225d0111
Testing omen uk3s setup
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:59:18 +01:00
magic_rb 8e492c9450
Testing blowhole kubernetes setup
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:59:03 +01:00
magic_rb 74b2892653
Random stuff in omen default.nix
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:57:21 +01:00
magic_rb 4e549e10d0
Firewall changes on blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:56:49 +01:00
magic_rb e8d7047549
Microvm nftable changes on blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:56:30 +01:00
magic_rb 6554cc6e89
Increase user watch limits on blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:55:59 +01:00
magic_rb 4a76762457
Reformat klipper.nix on blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:55:23 +01:00
magic_rb 7a3eb83855
Make use of ifstate on omen in microvm.nix
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:54:46 +01:00
magic_rb 4b8ef0d6db
Reformat omen impermenance
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:49:42 +01:00
magic_rb 3a2db36829
Rollback omen kernel to 6.6 due to kernel panics
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:48:28 +01:00
magic_rb 1401b7e042
Update Nomads docker forcefully to avoid runc CVE
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-03-02 21:48:07 +01:00
magic_rb b87986d6d7
Accept blowhole minecraft port
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-11 16:21:25 +01:00
magic_rb 7de31b611c
Add thingiverse-downloader
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-11 01:08:33 +01:00
magic_rb 990c6cb222
Increase stepper current
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-11 01:06:12 +01:00
magic_rb ee7fee6595
Trying to make Hydra work
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-10 17:56:56 +01:00
magic_rb 9f4c8832db
Use bypassed consul for klipper too
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-09 20:04:51 +01:00
magic_rb 216ad9b677
Omen firewall updates
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-09 20:03:02 +01:00
magic_rb b86de7ccf5
Properly bypass Hashicorp stuff being non-free now
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-09 19:38:04 +01:00
magic_rb e1eef717b0
Allow non-free consul for now
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-02-09 15:40:00 +01:00
magic_rb 4cc46ade9a
Klipper adjustments
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-31 15:30:30 +01:00
magic_rb b78b4ce5be
Fix evaluation due to usage of optinal secrets in blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-22 10:00:14 +01:00
magic_rb 1ea62e80e2
Fix up klipper
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-22 00:44:41 +01:00
magic_rb d925c68f58
Add service to deploy home-assistant pyscript scripts
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-22 00:44:17 +01:00
magic_rb b7d82b950c
Disable vault agent kodi mount
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-22 00:43:34 +01:00
magic_rb b71e57e8af
Disable specialisations for omen, makes eval too long
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-20 22:59:44 +01:00
magic_rb 843047ea40
Fixed wrongly picked changes in omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-18 21:13:36 +01:00
magic_rb f111b87b14
Statically pin podman default network subnet on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-18 14:10:57 +01:00
magic_rb 53e7c51b94
Restore podman iptable rules after nftable restart on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2024-01-18 14:09:59 +01:00
magic_rb 39d36d5457
Add ssh-remote-access
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-30 19:42:55 +01:00
magic_rb 9413748603
Add no-nvidia and nouveau specialization on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-24 17:01:41 +01:00
magic_rb 69eb47c2a1
Add PrismLauncher to impermenance on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-24 17:01:15 +01:00
magic_rb 6331357b45
Add login notify module
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-23 20:01:59 +01:00
magic_rb 680004abdf
Unblock altra ZFS version
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-10 16:01:50 +01:00
magic_rb 843357e9ab
Bump altra's kernel to latest
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-10 15:28:28 +01:00
magic_rb 1d39c23d0b
Bump toothpicks kernel to latest
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-10 15:28:06 +01:00
magic_rb ad6a5f6784
Add disk monitoring to blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-12-03 20:00:10 +01:00
magic_rb 89afaf89c1
Disable a thing in ZFS which can cause file corruption
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-25 17:59:27 +01:00
magic_rb 0ca5e9e4aa
Fix creation of /dev/ttyZigbee on blowhole
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-25 17:50:38 +01:00
magic_rb 52faaea7ac
Add output sync config for omen (works REALLY badly f you NVidia)
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-24 15:24:06 +01:00
magic_rb 1955d32b7c
Omen no longer needs weird NFS patch
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-20 09:59:06 +01:00
magic_rb 8cb85d620f Merge branch 'flake-update' 2023-11-19 23:18:38 +01:00
magic_rb e3312566ba
Clean up imports on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-19 12:30:53 +01:00
magic_rb 2ca3b3f6d1
Apparently IWD doesn't do DHCP by default because who needs DHCP
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-19 12:26:10 +01:00
magic_rb 82369662a4 Remove boot.loader.grub.version on toothpick as it does nothing
Signed-off-by: magic_rb <richard@brezak.sk>
2023-11-18 13:55:50 +01:00
magic_rb 0d37adfb9b Disable scripted DHCP on omen completely
Signed-off-by: magic_rb <richard@brezak.sk>
2023-11-18 13:55:50 +01:00
magic_rb eba5c967ca Add NixOS state version for omen microvm
Signed-off-by: magic_rb <richard@brezak.sk>
2023-11-18 13:55:50 +01:00
magic_rb 705eeea37d Fix deprecated usage of nix.allowedUsers on altra
Signed-off-by: magic_rb <richard@brezak.sk>
2023-11-18 13:55:15 +01:00
magic_rb 37af8fca1e Update state version on omen
Signed-off-by: magic_rb <richard@brezak.sk>
2023-11-18 13:55:15 +01:00
magic_rb 26b1be45a2 Fix incorrect usages of getExe
Signed-off-by: magic_rb <richard@brezak.sk>
2023-11-18 13:55:15 +01:00
magic_rb e8a2007a29
Rip out Matlab
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-03 20:23:05 +01:00
magic_rb c54d257319
Make use of /nix/tmp on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-03 20:12:56 +01:00
magic_rb 366e2c34a3
Apply kernel patch for NFSv4 SELinux issue
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-03 20:12:03 +01:00
magic_rb fd97d611f6
Fix usage of rolling_datasets on omen
Signed-off-by: magic_rb <magic_rb@redalder.org>
2023-11-03 20:11:43 +01:00
magic_rb 2b11913dc9
Better pin zigbee dongle serial device
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-23 23:30:38 +02:00
magic_rb 671aff30e4
Delete ical2org completely
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-22 16:56:31 +02:00
magic_rb e59817b20f
Persist more stuff on omen
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-22 00:34:04 +02:00
magic_rb 880ffeec87
Fix evaluation without secrets
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-21 17:46:17 +02:00
magic_rb 23c7002368
Mount old versions of home on omen
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-18 14:30:17 +02:00
magic_rb 60622f12cc
Add hledger to omen
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-16 14:57:43 +02:00
magic_rb 9e3c0ff11f
Fix path to secrets on altra
Signed-off-by: magic_rb <richard@brezak.sk>
2023-10-10 14:11:58 +02:00