Commit Graph

67 Commits

Author SHA1 Message Date
oysteikt 8a42e97014 tsuki/monitoring: misc:
- Secure grafana better, it had secrets in the nix store
- Set up prometheus exporters for nginx and php-fpm
- Add urls for dashboards
- Disable automatic updates
2023-07-12 02:06:39 +02:00
oysteikt 25b6f0f3e9 tsuki/vaultwarden: add vaultwarden, password manager 2023-07-12 02:06:38 +02:00
oysteikt 40e95ce030 tsuki/borg: set up borgbackup 2023-07-12 02:06:37 +02:00
oysteikt 0e3a4c35d2 tsuki/atuin: set up atuin server 2023-07-12 02:06:16 +02:00
oysteikt fc0e4f6c52 tsuki/nginx/www: real website dead, add temporary website 2023-07-12 02:04:57 +02:00
oysteikt 949f228c97 tsuki/hydra: put all services below system-hydra.slice 2023-07-12 02:04:56 +02:00
oysteikt 7f8d60057d tsuki/headscale: fix oauth2, and set up tailscale 2023-07-12 02:04:53 +02:00
oysteikt 3267e5f687 tsuki/headscale: start working on oidc login 2023-05-08 02:36:17 +02:00
oysteikt cc03b64376 common: use machinevars to determine whether to use x11 2023-05-08 02:36:15 +02:00
oysteikt 58061df4ab tsuki: set up nextcloud, without enabling it 2023-05-08 02:36:14 +02:00
oysteikt 32885239c3 tsuki/pgadmin: misc
- The pgadmin config has grown, and as a result, it has been split from
    the postgres file.
- Setup OAuth
- Setup uWSGI and forward to nginx via socket
  (This last part is still a little borked, and the service is not
  functioning entirely just yet)
2023-05-08 02:36:13 +02:00
oysteikt 53dbedef2b tsuki/hedgedoc: small auth url improvement 2023-05-08 02:36:12 +02:00
oysteikt 7cdf122c58 tsuki: set up invidious 2023-05-08 02:36:10 +02:00
oysteikt df3aa7c10e tsuki: setup oauth2 for pgadmin
This commit also changes the pgadmin package from `22.11` to `unstable`
2023-03-17 01:28:33 +01:00
oysteikt 5e2a5a939b tsuki: move gitea postgres password to sops 2023-03-08 15:59:50 +01:00
oysteikt a82a3f95c0 tsuki: move hardware config to configuration file 2023-03-08 15:26:07 +01:00
oysteikt 7a0fcf7805 tsuki: configure wildcard certs for nginx 2023-03-08 14:54:43 +01:00
oysteikt ebd854a0ae gitea: set up oauth2 2023-03-08 14:54:42 +01:00
oysteikt dd6c99226e tsuki: set up hedgedoc
the dynmap subdomain was also renamed from "dyn" to "map" in this commit
2023-03-08 14:54:40 +01:00
oysteikt 2ad7b7b2c3 tsuki: remove keycloak 2023-03-07 23:15:20 +01:00
oysteikt 0df70d6c72 tsuki: add well-known autoconfig for thunderbird mail 2023-03-07 23:15:19 +01:00
oysteikt d5ae85092c tsuki: set up kanidm 2023-03-07 23:15:18 +01:00
oysteikt 7c3c830d6e tsuki: add recommended minecraft jvm flags 2023-02-25 21:15:35 +01:00
oysteikt 5b0dd71b4a tsuki: add some systemd constraints
Add some systemd constraints to some fix boottime service failures
2023-02-25 21:12:38 +01:00
oysteikt a08f6ce28e tsuki: add .well-known/matrix/client 2023-02-25 21:10:39 +01:00
oysteikt 1eefc118bf tsuki: add postgres to environment 2023-02-25 20:01:57 +01:00
oysteikt 45497aea2b tsuki: set up proper grafana infrastructure
- Set up a bunch of exporters
- Download matching dashboard declarations
- Remove influxdb
2023-01-20 19:55:52 +01:00
oysteikt e840a95ebe tsuki: use matrix-synapse-next module with workers 2023-01-20 19:52:04 +01:00
oysteikt 47d8aa7899 tsuki: add headscale 2023-01-16 17:16:42 +01:00
oysteikt b5030a7c06 tsuki: move grafana config into nondeprecated attrset 2023-01-16 17:16:40 +01:00
oysteikt 3820be9ef9 tsuki: update matrix stickers 2023-01-16 17:16:39 +01:00
oysteikt ef4f5d4dd4 tsuki: reduce amount of gitea backups, and move state dir 2023-01-16 16:11:28 +01:00
oysteikt eaa2e9bd1d tsuki: update matrix stickers 2023-01-16 16:10:12 +01:00
oysteikt 1b0ed26f15 tsuki: set up minecraft server 2023-01-16 16:06:34 +01:00
oysteikt c78b2a2c26 tsuki: add osuchan service 2023-01-04 14:32:11 +01:00
oysteikt 47f8183490 tsuki: move all datafiles/drives to TrueNAS NFS 2023-01-03 23:01:08 +01:00
oysteikt aea736c2df tsuki: remove a lot of unused services
Removed:
- dokuwiki (this was never properly set up)
- libvirt (this is already a virtual machine, double virtualization bad)
- openldap (this will become the responsibility of keycloak)
- openvpn (this will become the responsibility of head/tailscale)
- samba (this is now the responsibility of TrueNAS)
- searx (I never used this)
- gitlab (this has become the responsibility of gitea and hydra)
- syncthing (this was never properly set up)

The nix cache nginx entry is also paused, as it wasn't functional.

In this commit and the previous commit, the nginx config for the
minecraft server was also taken down, as the whole host is deleted.
The plan is to set it up again, this time using tsuki.
2023-01-03 22:52:24 +01:00
oysteikt 3d088d73be tsuki: add maunium stickerpickers 2023-01-03 22:46:21 +01:00
oysteikt f2a89d7c82 grafana: split up configuration + postgres
- Move `services/grafana.nix` to `services/grafana/default.nix`
- Split up all data collectors into separate files under
  `services/grafana`
- Make grafana use postgres as its database
2022-11-26 17:16:04 +01:00
oysteikt f9280452fb nginx: fix failing hosts
- nani.wtf has changed flake structure
- jupyter need websockets
2022-11-08 14:28:59 +01:00
oysteikt 61a99fae7b postgres: add backup service, change initial mail 2022-11-08 14:20:33 +01:00
oysteikt b5de57fd01 Add config for jupyter 2022-11-05 22:49:54 +01:00
oysteikt 5d78680e82 Add dirty hack to fix gitea temporarily 2022-11-03 23:16:18 +01:00
oysteikt 4647c562ab Remove unused nginx.nix, which was renamed in 1881cb0 2022-10-14 00:06:00 +02:00
oysteikt db29ccddca Tweaked Gitea theme and config 2022-10-14 00:02:19 +02:00
oysteikt bdc8817eef Added nix builder config for tsuki and isvegg
- Also updated nix package name
2022-10-13 23:58:48 +02:00
oysteikt 1881cb0bca Extended nani.wtf/.well-known with some new stuff
- Added WKD openpgp key
- Added security.txt
- Added keybase.txt
2022-10-13 23:42:42 +02:00
oysteikt 1ff35d1c2d Add trusted matrix servers 2022-10-06 21:30:47 +02:00
oysteikt cf7c367416 Several gitea changes:
- Add monokai theme
- Set package to unstable
- Set landing page to explore
2022-10-06 21:27:20 +02:00
oysteikt fe3bdd4949 add 'https' to hydra link for proper website links 2022-09-22 01:58:26 +02:00