magic_rb
|
ec32e1c1a9
|
Add rolling_dataset overlay to omen
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:50:25 +02:00 |
|
magic_rb
|
cf4e2472cd
|
Add experimental numen stuff into omen
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:49:56 +02:00 |
|
magic_rb
|
52d2b22844
|
Use path instead of export in nftables service on blowhole
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:47:29 +02:00 |
|
magic_rb
|
ca4775b49e
|
Move firewall and test microvm out into seperate files on omen
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:45:51 +02:00 |
|
magic_rb
|
985d7ea696
|
Switch the dhcp server on blowhole to kea
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:44:42 +02:00 |
|
magic_rb
|
f59ae5dc71
|
Make use of rolling_datasets on omen
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:43:51 +02:00 |
|
magic_rb
|
85db381a7e
|
Fixup altra's mountpoints
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:40:28 +02:00 |
|
magic_rb
|
e49ef5e713
|
Disable monitoring on blowhole
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 22:29:46 +02:00 |
|
magic_rb
|
efeb5579db
|
Persist .password-store on omen
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 20:59:19 +02:00 |
|
magic_rb
|
8db1c182ef
|
Update blowhole
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-07 15:45:26 +02:00 |
|
magic_rb
|
b8f01a4d15
|
Persist more things on omen
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-06 15:07:13 +02:00 |
|
magic_rb
|
40245f35ca
|
Update flake
Signed-off-by: magic_rb <richard@brezak.sk>
|
2023-10-06 15:01:20 +02:00 |
|
MagicRB
|
5490245849
|
Persist mre stuff, mostly caches
Signed-off-by: MagicRB <richard@brezak.sk>
|
2023-10-04 00:08:03 +02:00 |
|
MagicRB
|
d9161d3b7d
|
Persist SchildiChat
Signed-off-by: MagicRB <richard@brezak.sk>
|
2023-10-03 23:49:15 +02:00 |
|
MagicRB
|
245e6d891b
|
Matlab, ew, stuff
Signed-off-by: MagicRB <richard@brezak.sk>
|
2023-10-03 23:49:04 +02:00 |
|
MagicRB
|
260a917558
|
Add omen impermenance
Signed-off-by: MagicRB <richard@brezak.sk>
|
2023-10-03 16:55:14 +02:00 |
|
Magic_RB
|
580fec0979
|
Update flake.lock
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-28 14:42:44 +02:00 |
|
Magic_RB
|
34bb23c67f
|
Initial implementation of microvm-extras
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-28 10:31:25 +02:00 |
|
Magic_RB
|
6a36890077
|
Add matlab...
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-16 16:42:21 +02:00 |
|
Magic_RB
|
61bab3a8bf
|
Fix backup issue on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-16 16:41:41 +02:00 |
|
Magic_RB
|
9b371b8662
|
Add InfluxDB provisioning script
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-03 18:03:00 +02:00 |
|
Magic_RB
|
410b6c0838
|
Expose some services to semi wan
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-02 23:19:01 +02:00 |
|
Magic_RB
|
5f9b37a2ca
|
Add a ~s0ix~ test script to the ~liveusb~ system
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-02 16:43:44 +02:00 |
|
Magic_RB
|
36120abf6b
|
Update filesystems for omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-09-02 16:43:30 +02:00 |
|
Magic_RB
|
fd2ce42d15
|
Setup grok parsing for apache and nginx
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-28 20:06:11 +02:00 |
|
Magic_RB
|
b7cdd44967
|
Increase dnscrypt-proxy cache size to 32768
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-28 14:34:00 +02:00 |
|
Magic_RB
|
9268fe52af
|
Allow more ports for synapse-proxy apache
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-28 00:23:33 +02:00 |
|
Magic_RB
|
6bb313137b
|
Allow more workers for synapse-proxy apache
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-28 00:23:16 +02:00 |
|
Magic_RB
|
16d3d01c23
|
Tune dnscrypt-proxy2 a tiny bit
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-28 00:22:54 +02:00 |
|
Magic_RB
|
fabd23d92d
|
Fix dns zone for in.redalder.org
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-27 22:36:47 +02:00 |
|
Magic_RB
|
3dd66e0a9b
|
Add altra to DNS
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-27 21:04:21 +02:00 |
|
Magic_RB
|
6a4cbd9e81
|
Add nvidia-offload command to omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-27 21:02:56 +02:00 |
|
Magic_RB
|
6099b301cd
|
Fixup altra http proxy for synapse
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-27 21:00:09 +02:00 |
|
Magic_RB
|
262a2fba32
|
Setup wireguard on altra
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-27 20:58:53 +02:00 |
|
Magic_RB
|
f79b6fea76
|
Attempt to setup a forward proxy with nginx on altra
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-26 22:09:05 +02:00 |
|
Magic_RB
|
bd556bcc11
|
Reduce watchdog reboot time to 3 minutes
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-20 12:35:50 +02:00 |
|
Magic_RB
|
369b6ddadf
|
Enable Serial over Lan on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-20 12:35:34 +02:00 |
|
Magic_RB
|
d27a09b0ab
|
Enable connecting to blowhole over IPMI on gooseberry
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-19 01:50:41 +02:00 |
|
Magic_RB
|
5d516e080b
|
Add new Minecraft modules and containers
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-19 00:37:47 +02:00 |
|
Magic_RB
|
74d928eb7e
|
Add gooseberry
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-18 20:40:57 +02:00 |
|
Magic_RB
|
0f0ebf822a
|
Fix wrong interface on nomad on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-18 11:47:43 +02:00 |
|
Magic_RB
|
c763d66183
|
Enable docker compat for podman on omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-18 11:45:37 +02:00 |
|
Magic_RB
|
686582722c
|
Fix wrong mount for vault on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-18 11:45:01 +02:00 |
|
Magic_RB
|
361e6b2065
|
Add ipmi_watchdog to blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-18 11:44:48 +02:00 |
|
Magic_RB
|
cbc32aef09
|
Disable wlan on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-18 11:44:27 +02:00 |
|
Magic_RB
|
f0cf4e1a54
|
Move Consul and Vault onto ZFS on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-10 23:36:07 +02:00 |
|
Magic_RB
|
a5075271b4
|
Update inputs
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-10 23:35:56 +02:00 |
|
Magic_RB
|
9bc92124ed
|
Adjust firewall on blowhole to new motherboard
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-09 23:54:19 +02:00 |
|
Magic_RB
|
de00d86dc4
|
Accept wireguard on the WAN interface
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-07-09 23:44:15 +02:00 |
|
Magic_RB
|
005cfe5eb1
|
Disable hostapd on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 21:53:17 +02:00 |
|
Magic_RB
|
a64b46e61a
|
Make vault-agent not freak out on failed service restarts
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 21:52:45 +02:00 |
|
Magic_RB
|
06d8b381c4
|
Remove udp2tcp
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:46:42 +02:00 |
|
Magic_RB
|
eb1dc094f1
|
More Wireguard
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:45:27 +02:00 |
|
Magic_RB
|
39742dc4a2
|
Mark camera mount as nofail
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:25:51 +02:00 |
|
Magic_RB
|
e73ff8a96a
|
Remove wacky NAS mounts, they're handled by ZFS natively now
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:25:16 +02:00 |
|
Magic_RB
|
8cfde06cdd
|
Switch jellyfin to a host volume and add new share for media
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:25:00 +02:00 |
|
Magic_RB
|
004cfb039b
|
Harden blowhole agains sealed Vault
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:23:08 +02:00 |
|
Magic_RB
|
8b2321dde4
|
Reenable emulated systems on omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:22:27 +02:00 |
|
Magic_RB
|
a96f79171a
|
Fix bluetooth not working on omen properly
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:22:11 +02:00 |
|
Magic_RB
|
b0eaa7929d
|
Wireguard
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:21:54 +02:00 |
|
Magic_RB
|
8fb752ae01
|
Initial altra configuration
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-28 14:17:17 +02:00 |
|
Magic_RB
|
b1cafd8f81
|
Fix Docker DNS on toothpick
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-22 17:19:47 +02:00 |
|
Magic_RB
|
134082a1da
|
Fix mainsail http path
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-19 02:40:50 +02:00 |
|
Magic_RB
|
9c0c892050
|
Fix blowhole nomad network
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-19 02:05:35 +02:00 |
|
Magic_RB
|
c38b7e1918
|
Allow communication between containers
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-19 01:10:07 +02:00 |
|
Magic_RB
|
ca2f480255
|
Fix incorrect flake host
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-19 00:55:05 +02:00 |
|
Magic_RB
|
637dc2877f
|
Permit unsupported envoy version
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-19 00:30:07 +02:00 |
|
Magic_RB
|
de385c1d60
|
Fix nomad on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-18 23:20:10 +02:00 |
|
Magic_RB
|
64db0229c0
|
Fix failed evaluation without secrets in blowhole/firewall.nix
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-18 20:08:35 +02:00 |
|
Magic_RB
|
3b5a09f9cb
|
Enable the extension of lib
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-18 20:07:47 +02:00 |
|
Magic_RB
|
fed32ecfca
|
Possibly functional blowhole configuration
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-16 16:08:09 +02:00 |
|
Magic_RB
|
519d7b3841
|
Fill out omen, toothpick and heater
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-16 16:08:01 +02:00 |
|
Magic_RB
|
b673fb12c1
|
Clean out the repository
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-06-10 10:34:14 +02:00 |
|
Magic_RB
|
8ce216d3f3
|
Add second DoH endpoint to proxy
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 16:14:30 +02:00 |
|
Magic_RB
|
6fdfe3511a
|
Rename stubby to dnscrypt-proxy2 in nftables comment on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:51:14 +02:00 |
|
Magic_RB
|
1b63b0aa1a
|
Allow containers in Nomad to reach Nomad
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:50:39 +02:00 |
|
Magic_RB
|
6bab5c1707
|
Switch out stubby for dnscrypt-proxy2
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:48:13 +02:00 |
|
Magic_RB
|
2b707885ab
|
Fixup klipper container
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:47:48 +02:00 |
|
Magic_RB
|
602b194cf8
|
Fix restarting of monitoring proxies by vault-agent
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:47:20 +02:00 |
|
Magic_RB
|
6f2ed9250a
|
Fix vault-agent restart on blowhole breaking klipper
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:46:56 +02:00 |
|
Magic_RB
|
a34b2e3c7b
|
Reenable primeOffload on omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:46:43 +02:00 |
|
Magic_RB
|
d8dce01fc1
|
Add nomad and matrix to internal DNS
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-28 12:46:27 +02:00 |
|
Magic_RB
|
9bd3b12c4a
|
Increase watchdog times on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-03 12:12:47 +02:00 |
|
Magic_RB
|
eaa22d8e4c
|
Take logs from Docker
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-03 12:12:13 +02:00 |
|
Magic_RB
|
9a50d57305
|
Include extra labels in Docker from Nomad
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-03 12:11:43 +02:00 |
|
Magic_RB
|
afa6ce6247
|
Fix hostapd mac address passwords
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-02 14:44:15 +02:00 |
|
Magic_RB
|
19fb889ade
|
Enable fwupd and emergency on omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-02 14:44:07 +02:00 |
|
Magic_RB
|
30ba25f277
|
Enable InfluxDB provider and provision Grafana
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-05-02 14:41:55 +02:00 |
|
Magic_RB
|
0804d717fc
|
consul on blowhole change loglevel go INFO
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-23 23:23:06 +02:00 |
|
Magic_RB
|
22a76d6274
|
Fix klipper envoy tokens on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-16 11:57:22 +02:00 |
|
Magic_RB
|
a4dc73f311
|
Repin nixpkgs for hashicorp things
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-16 11:47:53 +02:00 |
|
Magic_RB
|
eec8f409d6
|
Don't block outgoing DoT traffic, iifname doesn't work in output
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-04 00:41:25 +02:00 |
|
Magic_RB
|
d2374ad9f6
|
Revert "Add codespace container"
This reverts commit 48066a7e0d .
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 18:40:20 +02:00 |
|
Magic_RB
|
48066a7e0d
|
Add codespace container
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 18:37:57 +02:00 |
|
Magic_RB
|
41874fde15
|
Disable NVidia modeset on omen as it causes failed suspends
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 18:06:16 +02:00 |
|
Magic_RB
|
8e3b1fc69d
|
Add monitoring container PoC
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 17:54:35 +02:00 |
|
Magic_RB
|
a38cad8913
|
Add more GPG related things to recovery USB
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 17:45:43 +02:00 |
|
Magic_RB
|
8b5c787b8a
|
Move klipper into NixOS container
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 17:45:14 +02:00 |
|
Magic_RB
|
dfe57b87da
|
Fix hostapd with per mac address psk
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 13:23:10 +02:00 |
|
Magic_RB
|
f8bbdc9a54
|
Use tf in blowhole uterranix config
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 02:12:16 +02:00 |
|
Magic_RB
|
cdc6d1b263
|
Use nixpkgs-hashicorp for vault and vault-agent
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 02:11:08 +02:00 |
|
Magic_RB
|
566db22374
|
Fix internal nomad interface on toothpick to wg
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:35:33 +02:00 |
|
Magic_RB
|
ba73eb214f
|
Switch nixinate host to domain for blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:33:20 +02:00 |
|
Magic_RB
|
0bd739cab7
|
Add watchdog to blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:32:57 +02:00 |
|
Magic_RB
|
0328cac478
|
Fix ipv6 issues on blowhole which break adb
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:32:36 +02:00 |
|
Magic_RB
|
661c32b1fe
|
Remove 25565 from allowed ports on deck
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:32:01 +02:00 |
|
Magic_RB
|
a55613fefa
|
Add tmpfiles configuration to hashicorp-vault-agent on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:31:37 +02:00 |
|
Magic_RB
|
807f776c35
|
Add new uterranix config
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:29:47 +02:00 |
|
Magic_RB
|
1877d128b3
|
Add domain for influx
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:28:33 +02:00 |
|
Magic_RB
|
0bd14910e3
|
Fix consul and nomad reload on toothpick
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:28:14 +02:00 |
|
Magic_RB
|
3f7585af77
|
Use specific nixpkgs pin for Hashicorp stuff
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-04-03 01:26:58 +02:00 |
|
Magic_RB
|
2fffbad037
|
minor formatting
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-03-28 12:26:21 +02:00 |
|
Magic_RB
|
eae03c9699
|
fix DNS
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-03-28 00:06:49 +02:00 |
|
Magic_RB
|
27f1978d23
|
Make module imports in blowhole relative
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-03-06 00:32:20 +01:00 |
|
Magic_RB
|
bbe1a2a6ad
|
Move secrets templates out of vault-agent module
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-03-06 00:30:29 +01:00 |
|
Magic_RB
|
abad79541e
|
Simplify DNS zones
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-03-06 00:29:03 +01:00 |
|
Magic_RB
|
a0a3ae2656
|
Get rid off the wireguard RestartSec hack
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-19 01:11:03 +01:00 |
|
Magic_RB
|
f923362537
|
Update inputs
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-19 01:03:49 +01:00 |
|
Magic_RB
|
ceb38b807f
|
omen: fix network manager dispatcher scripts
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-16 14:47:04 +01:00 |
|
Magic_RB
|
084eb2edb6
|
fixup network mounting on omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-16 14:46:20 +01:00 |
|
Magic_RB
|
648e6cf8c1
|
basic hostap config
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-14 20:18:11 +01:00 |
|
Magic_RB
|
5643d663cd
|
Allow mounting certain shares from omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-10 00:31:50 +01:00 |
|
Magic_RB
|
45df9165a1
|
Increase file limit for nfs-mountd
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-10 00:31:23 +01:00 |
|
Magic_RB
|
dd50adb45f
|
Switch to the 4port intel NIC
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-10 00:30:41 +01:00 |
|
Magic_RB
|
328c8b472c
|
Implement udp2tcp on/off based on WiFi network name
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-05 17:26:35 +01:00 |
|
Magic_RB
|
065bfdf651
|
Create secrets folder for vault-agent
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-02 19:00:04 +01:00 |
|
Magic_RB
|
103152b700
|
Fixup wireguard on UDP blocked networks
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-02 14:56:27 +01:00 |
|
Magic_RB
|
707716597a
|
Pin the registry on omen
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-02 10:19:00 +01:00 |
|
Magic_RB
|
0f2139f5e5
|
Make a dummy interface on blowhole until I get a physical one
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-02 10:13:40 +01:00 |
|
Magic_RB
|
ef04a738ab
|
Pin Nomad network interface on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-02 10:13:15 +01:00 |
|
Magic_RB
|
47b1335adc
|
Fix font in xmobar and make fields fixed-width
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2023-02-02 10:08:37 +01:00 |
|
main
|
b1381511dd
|
Setup static IP support in dhcpd
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-21 23:19:13 +01:00 |
|
main
|
0756c15c56
|
Move bind directory to somewhere persistent
Fixs bind breaking on reboot, according to
https://github.com/NixOS/nixpkgs/issues/204391
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-18 23:48:43 +01:00 |
|
main
|
240d6de3e8
|
Unblock YouTube, I think I solved my addiction but I need it for music
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-18 23:26:18 +01:00 |
|
main
|
3e23308bf3
|
Fix Wireguard not being brought up after boot due to DNS failure
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-18 22:27:17 +01:00 |
|
main
|
2d3fe86f3f
|
Open port 80 on blowhole to vpn
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-07 23:01:44 +01:00 |
|
main
|
2f818f2963
|
Hopefully make the relmount happen on boot on blowhole
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-03 16:47:33 +01:00 |
|
main
|
6cb4ed2050
|
Enable sshdEmacs for blowhole
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-03 16:47:18 +01:00 |
|
main
|
7ecbeb6c98
|
Improvements to UDP blockade bypass
Signed-off-by: main <magic_rb@redalder.org>
|
2022-12-02 18:58:03 +01:00 |
|
main
|
b2ed5e07bc
|
Add a udp2tcp udp blocking bypass
Signed-off-by: main <magic_rb@redalder.org>
|
2022-11-28 16:41:33 +01:00 |
|
main
|
03c3647edf
|
Add secret override to tweedledee and tweedledum
Signed-off-by: main <magic_rb@redalder.org>
|
2022-11-28 01:35:45 +01:00 |
|
main
|
99eaf02dfb
|
Make toothpick behave closer to blowhole
Signed-off-by: main <magic_rb@redalder.org>
|
2022-11-28 01:35:33 +01:00 |
|
main
|
4154559032
|
Fix GRUB installation
Signed-off-by: main <magic_rb@redalder.org>
|
2022-11-27 20:22:12 +01:00 |
|
main
|
51c3c162bc
|
Fix wireguard failing to start due to DNS being late
Signed-off-by: main <magic_rb@redalder.org>
|
2022-11-27 20:21:53 +01:00 |
|
main
|
8b700b61cc
|
Make sure everything evaluates and builds even without secrets
Signed-off-by: main <magic_rb@redalder.org>
|
2022-11-23 20:48:59 +01:00 |
|
Magic_RB
|
98da1998a6
|
Disable containerd on toothpick
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-11-03 00:24:03 +01:00 |
|
Magic_RB
|
dccb75934a
|
Get rid of containerd on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-10-30 15:45:41 +01:00 |
|
Magic_RB
|
cf77bf433f
|
utillinux -> util-linux
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-10-30 15:28:04 +01:00 |
|
main
|
8f713ccc5b
|
Add PostgreSQL for Matrix
Signed-off-by: main <magic_rb@redalder.org>
|
2022-10-30 15:13:02 +01:00 |
|
main
|
cc3eaff12f
|
Add database for home assistant
Signed-off-by: main <magic_rb@redalder.org>
|
2022-10-27 13:27:21 +02:00 |
|
main
|
60086123f3
|
Add Nomad-Docker Nix integration
Signed-off-by: main <magic_rb@redalder.org>
|
2022-10-27 13:23:08 +02:00 |
|
main
|
b12b58fb5d
|
Disable syncthing in omen
Signed-off-by: main <magic_rb@redalder.org>
|
2022-10-22 16:15:10 +02:00 |
|
Magic_RB
|
6425857776
|
Setup acme.sh for Vault
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-10-11 07:55:42 +02:00 |
|
main
|
e50e5b84df
|
Minor cleanup
Signed-off-by: main <magic_rb@redalder.org>
|
2022-10-07 22:05:56 +02:00 |
|
Magic_RB
|
50db004480
|
Nomad changes, reset and disabling of GPU
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-09-26 18:46:20 +02:00 |
|
Magic_RB
|
5ec1c33f60
|
DNS related networking changes
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-09-26 18:46:20 +02:00 |
|
Magic_RB
|
21c4058241
|
update NFS shares
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-09-26 18:46:20 +02:00 |
|
Magic_RB
|
3f835a36da
|
Block youtube.com
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-09-26 18:46:20 +02:00 |
|
Magic_RB
|
504c17a535
|
Initial deck support
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-09-17 12:00:01 +02:00 |
|
Magic_RB
|
cacd4ac151
|
Change DNS
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-09-17 11:55:51 +02:00 |
|
main
|
caab60ee5b
|
Modify ical2org to handle homework well
Signed-off-by: main <magic_rb@redalder.org>
|
2022-09-17 11:34:45 +02:00 |
|
Magic_RB
|
6616c4f9a2
|
NFS exports
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-27 23:21:15 +02:00 |
|
Magic_RB
|
180902ae52
|
Fork nixinate again and add secret override to the options
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-27 22:41:36 +02:00 |
|
Magic_RB
|
9cb7a01750
|
Fix a little DNS issue on blowhole
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-27 22:41:10 +02:00 |
|
Magic_RB
|
8e32993960
|
Enable internet access for Docker containers
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-27 22:40:29 +02:00 |
|
Magic_RB
|
06ffbac467
|
Add ical2org conversion for uni
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-27 22:37:52 +02:00 |
|
Magic_RB
|
2d342b2110
|
Firewall CNI compat
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-25 19:43:36 +02:00 |
|
Magic_RB
|
5446dd2549
|
Some more IP address updates
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-25 19:43:16 +02:00 |
|
Magic_RB
|
ecfbcc4517
|
Firewall stuff
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-25 16:07:57 +02:00 |
|
Magic_RB
|
bee31bea33
|
Firewall updates
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-25 16:07:57 +02:00 |
|
Magic_RB
|
2ad1383793
|
Better logging in bind9
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-25 16:07:57 +02:00 |
|
Magic_RB
|
58088e052b
|
Move blowhole to new IP
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-25 16:07:57 +02:00 |
|
Magic_RB
|
5294cd2714
|
Fix restic backup script cleanup operations
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-18 23:07:53 +02:00 |
|
Magic_RB
|
3fb5d945c0
|
stuff&things
Signed-off-by: Magic_RB <magic_rb@redalder.org>
|
2022-08-18 22:55:46 +02:00 |
|
main
|
a5a651dbb9
|
Large rework and cleanup
Signed-off-by: main <magic_rb@redalder.org>
|
2022-07-31 11:03:59 +02:00 |
|
Magic_RB
|
f7d95ee852
|
Reorganization
|
2021-02-28 18:14:01 +01:00 |
|
Magic_RB
|
d7bd7cd9bd
|
Add omen hostId
|
2021-02-26 10:32:26 +01:00 |
|
Magic_RB
|
c34924022a
|
Omen ZFS-ification
|
2021-02-26 10:25:54 +01:00 |
|
Magic_RB
|
d2f59d5e70
|
Separate wine, multimc and 3dprinting
|
2021-02-26 10:24:58 +01:00 |
|
Magic_RB
|
b603a0aebe
|
Emacs, Nomad, Concourse, nix
|
2021-02-24 12:32:22 +01:00 |
|
Magic_RB
|
ef755b8066
|
Blowhole hm-profile
|
2021-02-05 12:05:42 +01:00 |
|
Magic_RB
|
ea6c8635b1
|
MultiMC and base container
|
2021-02-05 11:53:30 +01:00 |
|
Magic_RB
|
e2222d2de3
|
Add emacs to edge
|
2021-02-02 20:36:21 +01:00 |
|
Magic_RB
|
e8407f072a
|
Fix edge
|
2021-02-02 20:35:29 +01:00 |
|
Magic_RB
|
f97ee14809
|
Completely custom module system and complete unification
|
2021-02-02 20:10:25 +01:00 |
|