Commit Graph

519 Commits

Author SHA1 Message Date
oysteikt 3141b1f76b bekkalokk/vaultwarden: remove redundant hardening
This has already been upstreamed
2026-05-22 17:51:03 +09:00
oysteikt 475f6a8c9b bekkalokk/vaultwarden: add rsa key to sops 2026-05-22 17:49:31 +09:00
oysteikt 9c1687f8f2 bekkalokk/vaultwarden: use envvar keys
It seems like the nixpkgs module is compensating for previous config
that might've ended up in a file, which are now being turned into
screaming snake case environment variables. Let's just name them as they
are supposed to be named instead of having the upstream module translate
them.
2026-05-22 17:08:31 +09:00
oysteikt 0f53bcd731 bekkalokk/roundcube: add des_key to sops 2026-05-22 17:08:31 +09:00
oysteikt 5745648f87 bicep/postgres/repack: use local unix socket 2026-05-22 15:59:59 +09:00
oysteikt 2c34a93abf bicep/postgres/repack: don't kill connections on timeout 2026-05-22 15:57:57 +09:00
oysteikt 9ebc947eab ustetind: bai bai 👋 2026-05-22 15:41:28 +09:00
oysteikt 5d6c153007 kommode/gitea: fix dump command 2026-05-21 17:54:54 +09:00
oysteikt 8b483a92f8 ildkule: set fsType for bindmounts 2026-05-21 17:52:47 +09:00
oysteikt 0d7f05e56d bicep/postgres: add cleanup timers 2026-05-21 04:14:34 +09:00
danio 4a67eddf52 bicep/matrix/livekit: open the rtc ports 2026-05-20 20:04:33 +02:00
vegardbm 9c227f3022 update gluttony IPs and boot device 2026-05-20 06:07:41 +02:00
felixalb 69fdf709d7 grr: fix the heccin quotes 2026-05-19 16:38:34 +02:00
adriangl 30ec70fa5f fix: ildkule grub duplicated devices, format nix files 2026-05-19 16:26:36 +02:00
adriangl 1024b428ac feat: ildkule disco config 2026-05-19 12:16:39 +02:00
adriangl 1e6b692fbf fix: updated ildkule config and ips to match trd1 new setup 2026-05-19 11:37:05 +02:00
oysteikt 33297b0436 treewide: lib.cli.toGNUCommandLineShell -> lib.cli.toCommandLineShellGNU 2026-05-11 23:09:50 +09:00
oysteikt be33c95c83 bekkalokk/website: more logging, specify timeouts, ban spooky funcs, fake sendmail 2026-05-11 21:14:08 +09:00
oysteikt 9c142fd56f kommode/gitea: remove deprecated config options 2026-05-11 16:00:51 +09:00
oysteikt b98e8679e6 temmie/userweb: set same phpOptions for env and apache 2026-05-11 14:54:56 +09:00
oysteikt ea092ec0b3 temmie/userweb: pass userdir user to sendmail through custom envvar 2026-05-11 14:26:47 +09:00
oysteikt 5e50b617fb temmie/userweb: switch from postfix to nullmailer 2026-05-11 13:52:58 +09:00
oysteikt 258c5a7b25 temmie/userweb: set up sendmail wrapper 2026-05-11 12:26:39 +09:00
oysteikt b9eda3dc56 temmie/userweb: reduce package list 2026-05-11 10:17:09 +09:00
oysteikt b009da31af temmie/userweb: deny a bunch of spooky directories by default
It should still be possible for the user to re-enable these with
`.htaccess`
2026-05-10 03:33:43 +09:00
oysteikt e9a267e2a3 temmie/userweb: ignore collisions in fhs env 2026-05-10 03:02:27 +09:00
oysteikt 338c2f2531 temmie/userweb: adjust perl and php env
This adds and removes a few packages to make the environments closer to
how they are on tom
2026-05-10 03:02:26 +09:00
felixalb 8db3034baf Run shellcheck 2026-05-08 09:31:35 +02:00
felixalb 0d41326d9f bakke: rest of the owl 2026-05-08 03:06:06 +02:00
felixalb 7baf3ffcb4 bakke: uninit 2026-05-08 03:06:06 +02:00
danio ebd8b871f4 skrott: yeetus deletus 2026-05-08 01:08:48 +02:00
oysteikt eee7e9ad7b lupine/gitea-runner: register docker images for alpine v3.23 and ubuntu 26.04 2026-04-23 21:05:23 +09:00
oysteikt 23355317d6 lupine-3: update hardware config 2026-04-19 01:26:25 +09:00
oysteikt f52cf697cc lupine-5: update hardware config 2026-04-19 00:38:32 +09:00
oysteikt 6dce8bac0e lupine-4: re-enable gitea runner 2026-04-19 00:22:30 +09:00
oysteikt e2abbf224b lupine-{1,2,4}: update hardware config 2026-04-18 23:58:53 +09:00
vegardbm 1bfd4fe595 avoid using lupine-4 for gitea actions 2026-03-26 06:05:41 +01:00
oysteikt 6ef02bd485 kommode/gitea: allow me to go fork myself 2026-03-10 14:50:56 +09:00
vegardbm b5fecc94a7 hosts: add skrot
Co-authored-by: System administrator <root@skrot.pvv.ntnu.no>
Reviewed-on: Drift/pvv-nixos-config#124
Co-authored-by: Vegard Bieker Matthey <VegardMatthey@protonmail.com>
Co-committed-by: Vegard Bieker Matthey <VegardMatthey@protonmail.com>
2026-02-14 18:53:54 +01:00
oysteikt b327582236 kommode/gitea: use redis for sessions and queue 2026-02-13 18:55:42 +09:00
oysteikt 7e39bf3ba2 bicep/matrix/ooye: add rsync pull target for principal backups 2026-02-13 18:26:55 +09:00
oysteikt 5bb0cd0465 kommode/gitea: set default theme 2026-02-13 14:32:36 +09:00
oysteikt 9efda802cb kommode/gitea: move ui configuration to customization 2026-02-13 14:23:48 +09:00
oysteikt 3c08be3d73 kommode/gitea: configure redis cache 2026-02-13 03:50:21 +09:00
oysteikt b1a2836b5d kommode/gitea: custom emoji 2026-02-13 03:38:45 +09:00
oysteikt ba1f30f737 kommode/gitea: configure more meta fields 2026-02-13 03:13:49 +09:00
danio c455c5a7e3 bicep/matrix/livekit: fix matrix domain in livekit, allow dan's server as well 2026-02-11 22:58:19 +01:00
oysteikt daa4b9e271 bekkalokk/mediawiki: adjust umask 2026-02-07 01:46:55 +09:00
oysteikt 12eb0b3f53 bekkalokk/mediawiki: allow uploading more filetypes 2026-02-07 00:56:38 +09:00
oysteikt 02bdb8d45b kommode/gitea/web: use default login shell 2026-02-05 13:25:06 +09:00