1
1
Fork 1
mirror of https://github.com/oddlama/nix-config.git synced 2025-10-10 23:00:39 +02:00
Commit graph

310 commits

Author SHA1 Message Date
oddlama
da1db65104
feat: add radiacle stable uid 2023-12-22 03:00:10 +01:00
oddlama
4cdf17e2ab
feat: add radicale 2023-12-22 02:37:14 +01:00
oddlama
61375199e5
fix: update microvm definitions to new combined guests option 2023-12-21 21:18:08 +01:00
oddlama
9496d8eb3f
feat: use new host pubkeys for containers 2023-12-20 01:05:23 +01:00
oddlama
c94084496a
feat: use configurable link name in containers 2023-12-19 17:57:09 +01:00
oddlama
336f648275
feat: put impermanence for services next to service definitions 2023-12-18 01:01:24 +01:00
oddlama
8f28273b65
feat: allow multiple zfs dataset definitions for container 2023-12-18 00:32:20 +01:00
oddlama
b4c7fbd0e8
chore: use macvlan for container guests 2023-12-17 20:56:42 +01:00
oddlama
32ce7fe25d
feat: finish new container backend 2023-12-17 17:26:10 +01:00
oddlama
abb8330d86
feat: wip: add container backend to guests 2023-12-17 02:04:20 +01:00
oddlama
76a8f6e247
feat: wip: begin modularizing microvm definitions to allow for other
guest types like containers
2023-12-16 22:19:54 +01:00
oddlama
8d734287e2
feat(kroma): enable bluetooth 2023-12-16 17:49:00 +01:00
oddlama
b7378d38de
feat(ward): local snapshotting via zrepl 2023-12-04 22:31:20 +01:00
oddlama
2085054136
chore: cleanup 2023-12-03 15:11:45 +01:00
oddlama
c2e05c374f
fix(ward): set correct gateway 2023-10-18 00:57:49 +02:00
oddlama
26d3f17451
chore(zackbiene): update wan ip 2023-10-17 21:50:11 +02:00
oddlama
1f9a28c3db
feat(nftables): update to new nftables firewall branch 2023-10-15 14:10:06 +02:00
oddlama
f32a2641b7
chore: exclude microvms in minimal config 2023-10-02 20:06:41 +02:00
oddlama
4dae9408a5
chore: switch to static ip on ward 2023-10-02 20:05:36 +02:00
oddlama
562d1dffb3
chore: run deadnix 2023-09-04 22:01:47 +02:00
oddlama
55b51ea631
chore: try enabling oidc in forgejo, but there is an issue with token endpoint authentication 2023-08-28 00:22:50 +02:00
oddlama
7f2315fc1d
chore: configure kanidm provisioning passwords 2023-08-27 16:46:49 +02:00
oddlama
8ad13ec0bf
chore: typos 2023-08-27 16:22:26 +02:00
oddlama
9891a0743d
feat: actually enable kanidm provisioning 🚀 2023-08-27 16:05:27 +02:00
oddlama
e5d8c1f74a
fix: missing repo in secret attribute path 2023-08-27 01:30:09 +02:00
oddlama
7c48e51320
feat: use kanidm secret provisioning 2023-08-27 01:17:11 +02:00
oddlama
522de920bb
feat: switch to upstreamed influxdb2 provisioning, add kanidm provisioning module 2023-08-26 20:25:38 +02:00
oddlama
fbfbcf78b8
fix: adjust loki lifecycler address to use localhost 2023-08-17 17:27:18 +02:00
oddlama
f29318a5ac
feat: preferably bind to 0.0.0.0 in vms to remove issues with wireguard
coming up late; also increase default vm memory to 2G
2023-08-17 17:10:14 +02:00
oddlama
ad0164c787
fix: ensure that influxdb2 is restarted for token manipulation 2023-08-17 01:40:29 +02:00
oddlama
5eacb319db
chore: remove unused secrets 2023-08-17 00:03:57 +02:00
oddlama
c494c66f5a
fix: propagate influxdb token secrets properly and simplify distributed configuration implementation (repo.nodes) 2023-08-16 23:51:13 +02:00
oddlama
0ed8f2041d
feat: use declarative influxdb token for grafana 2023-08-16 22:43:50 +02:00
oddlama
377da23c0d
feat: automatically provision tokens for telegraf 2023-08-16 01:16:19 +02:00
oddlama
37f77eed3d
chore(forgejo): show login by default 2023-08-03 00:36:32 +02:00
oddlama
8be9646d1a
feat: add paperless 2023-08-03 00:35:20 +02:00
oddlama
d577fb1d1a
fix(forgejo): use correct group for secret 2023-08-01 02:10:10 +02:00
oddlama
a975cc1f7f
feat: add forgejo 2023-08-01 02:01:43 +02:00
oddlama
788e7e3fa7
chore: move generated secrets to separate directory 2023-07-31 12:42:46 +02:00
oddlama
b2b2e60725
feat(zackbiene): start clean; add kea instead of dhcpcd
chore: switch to hosts.toml
2023-07-25 18:48:42 +02:00
oddlama
4175ce3cf7
chore: update to main nixpkgs, include my temporary switch-to-configuration changes 2023-07-24 21:42:01 +02:00
oddlama
94cce37bc4
revert: back to flux for grafana and influxdb, influxql is not supported properly. Guess we'll have some work to do on influxdb v3 then. 2023-07-06 22:36:29 +02:00
oddlama
861257933b
chore: don't use Flux as influxdb query lang (discouraged by maintainers, future will remove support) 2023-07-06 15:45:07 +02:00
oddlama
e076aca5a0
chore: also disable per link DNS for ipv6 (dhcp, RA) on servers 2023-07-06 15:09:33 +02:00
oddlama
836cd7c6c2
chore: dont use adguardhome for servers 2023-07-06 14:49:37 +02:00
oddlama
13d9baedc1
chore: disable access logs for uninteresting high volume endpoint (telegraf write api), and internal nginx_status 2023-07-06 12:38:20 +02:00
oddlama
554d25d94b
chore: persist adguardhome state 2023-07-06 02:49:32 +02:00
oddlama
3f6286ef31
feat(adguardhome): bind only external interface 2023-07-06 02:34:07 +02:00
oddlama
e1e7516e1a
refactor: add lib extensions to nixpkgs.lib as overlays 2023-07-02 00:08:17 +02:00
oddlama
11ba487bf0
fix: set new vm secret paths 2023-07-01 01:20:17 +02:00