Vegard Bieker Matthey
7c4439dbc0
bekkalokk: pull rendered map from gluttony
2026-05-24 08:37:31 +02:00
Vegard Bieker Matthey
cbb587f79c
gluttony: bluemap export to bekkern
2026-05-24 08:37:31 +02:00
Vegard Bieker Matthey
eeab3b8fa6
gluttony: setup bluemap
2026-05-24 08:37:25 +02:00
Vegard Bieker Matthey
6cca1db3b3
bekkalokk: fix permissions for mediawiki secrets
2026-05-22 20:21:24 +02:00
Vegard Bieker Matthey
bfd83c4c64
uptime-kuma: wants to use /var/lib/private for state
2026-05-22 17:58:00 +02:00
h7x4
9a6fdecb03
kommode/gitea/dump: only keep a single dump at a time
2026-05-22 18:27:57 +09:00
h7x4
82ab97fb45
bekkalokk/roundcube: restart service on changed sops secrets
2026-05-22 18:10:44 +09:00
h7x4
543fd19f8d
bekkalokk/vaultwarden: restart service on changed sops secrets
2026-05-22 18:10:40 +09:00
h7x4
6f99fa575d
bekkalokk/vaultwarden: render environment_file as sops template
2026-05-22 18:02:13 +09:00
h7x4
3141b1f76b
bekkalokk/vaultwarden: remove redundant hardening
...
This has already been upstreamed
2026-05-22 17:51:03 +09:00
h7x4
475f6a8c9b
bekkalokk/vaultwarden: add rsa key to sops
2026-05-22 17:49:31 +09:00
h7x4
9c1687f8f2
bekkalokk/vaultwarden: use envvar keys
...
It seems like the nixpkgs module is compensating for previous config
that might've ended up in a file, which are now being turned into
screaming snake case environment variables. Let's just name them as they
are supposed to be named instead of having the upstream module translate
them.
2026-05-22 17:08:31 +09:00
h7x4
0f53bcd731
bekkalokk/roundcube: add des_key to sops
2026-05-22 17:08:31 +09:00
h7x4
5745648f87
bicep/postgres/repack: use local unix socket
2026-05-22 15:59:59 +09:00
h7x4
2c34a93abf
bicep/postgres/repack: don't kill connections on timeout
2026-05-22 15:57:57 +09:00
h7x4
9ebc947eab
ustetind: bai bai 👋
2026-05-22 15:41:28 +09:00
h7x4
5d6c153007
kommode/gitea: fix dump command
2026-05-21 17:54:54 +09:00
h7x4
8b483a92f8
ildkule: set fsType for bindmounts
2026-05-21 17:52:47 +09:00
h7x4
0d7f05e56d
bicep/postgres: add cleanup timers
2026-05-21 04:14:34 +09:00
Daniel Olsen
4a67eddf52
bicep/matrix/livekit: open the rtc ports
2026-05-20 20:04:33 +02:00
Vegard Bieker Matthey
9c227f3022
update gluttony IPs and boot device
2026-05-20 06:07:41 +02:00
Felix Albrigtsen
69fdf709d7
grr: fix the heccin quotes
2026-05-19 16:38:34 +02:00
Adrian G L
30ec70fa5f
fix: ildkule grub duplicated devices, format nix files
2026-05-19 16:26:36 +02:00
Adrian G L
1024b428ac
feat: ildkule disco config
2026-05-19 12:16:39 +02:00
Adrian G L
1e6b692fbf
fix: updated ildkule config and ips to match trd1 new setup
2026-05-19 11:37:05 +02:00
h7x4
33297b0436
treewide: lib.cli.toGNUCommandLineShell -> lib.cli.toCommandLineShellGNU
2026-05-11 23:09:50 +09:00
h7x4
be33c95c83
bekkalokk/website: more logging, specify timeouts, ban spooky funcs, fake sendmail
2026-05-11 21:14:08 +09:00
h7x4
9c142fd56f
kommode/gitea: remove deprecated config options
2026-05-11 16:00:51 +09:00
Øystein Tveit
b98e8679e6
temmie/userweb: set same phpOptions for env and apache
2026-05-11 14:54:56 +09:00
h7x4
ea092ec0b3
temmie/userweb: pass userdir user to sendmail through custom envvar
2026-05-11 14:26:47 +09:00
h7x4
5e50b617fb
temmie/userweb: switch from postfix to nullmailer
2026-05-11 13:52:58 +09:00
h7x4
258c5a7b25
temmie/userweb: set up sendmail wrapper
2026-05-11 12:26:39 +09:00
h7x4
b9eda3dc56
temmie/userweb: reduce package list
2026-05-11 10:17:09 +09:00
h7x4
b009da31af
temmie/userweb: deny a bunch of spooky directories by default
...
It should still be possible for the user to re-enable these with
`.htaccess`
2026-05-10 03:33:43 +09:00
h7x4
e9a267e2a3
temmie/userweb: ignore collisions in fhs env
2026-05-10 03:02:27 +09:00
h7x4
338c2f2531
temmie/userweb: adjust perl and php env
...
This adds and removes a few packages to make the environments closer to
how they are on tom
2026-05-10 03:02:26 +09:00
8db3034baf
Run shellcheck
2026-05-08 09:31:35 +02:00
Felix Albrigtsen
0d41326d9f
bakke: rest of the owl
2026-05-08 03:06:06 +02:00
7baf3ffcb4
bakke: uninit
2026-05-08 03:06:06 +02:00
Daniel Olsen
ebd8b871f4
skrott: yeetus deletus
2026-05-08 01:08:48 +02:00
h7x4
eee7e9ad7b
lupine/gitea-runner: register docker images for alpine v3.23 and ubuntu 26.04
2026-04-23 21:05:23 +09:00
h7x4
23355317d6
lupine-3: update hardware config
2026-04-19 01:26:25 +09:00
h7x4
f52cf697cc
lupine-5: update hardware config
2026-04-19 00:38:32 +09:00
h7x4
6dce8bac0e
lupine-4: re-enable gitea runner
2026-04-19 00:22:30 +09:00
h7x4
e2abbf224b
lupine-{1,2,4}: update hardware config
2026-04-18 23:58:53 +09:00
Vegard Bieker Matthey
1bfd4fe595
avoid using lupine-4 for gitea actions
2026-03-26 06:05:41 +01:00
h7x4
6ef02bd485
kommode/gitea: allow me to go fork myself
2026-03-10 14:50:56 +09:00
Vegard Bieker Matthey
b5fecc94a7
hosts: add skrot
...
Co-authored-by: System administrator <root@skrot.pvv.ntnu.no >
Reviewed-on: https://git.pvv.ntnu.no/Drift/pvv-nixos-config/pulls/124
Co-authored-by: Vegard Bieker Matthey <VegardMatthey@protonmail.com >
Co-committed-by: Vegard Bieker Matthey <VegardMatthey@protonmail.com >
2026-02-14 18:53:54 +01:00
h7x4
b327582236
kommode/gitea: use redis for sessions and queue
2026-02-13 18:55:42 +09:00
h7x4
7e39bf3ba2
bicep/matrix/ooye: add rsync pull target for principal backups
2026-02-13 18:26:55 +09:00