Commit graph

89 commits

Author SHA1 Message Date
c8a1985d96
Merge branch 'master' of git.federez.net:federez/nix 2025-07-06 23:05:03 +02:00
495f51725b
monitoring: fix typo + increase threshold for load5 alert 2025-07-06 23:03:08 +02:00
4e6513466f
monitoring: add support for Alert list visualisation in Grafana 2025-07-06 23:02:21 +02:00
0a264a34ec Merge pull request 'Forgejo profile & gitlab fix' (#2) from gitlab-upgrade-phase2 into master
Reviewed-on: #2
2025-07-06 21:22:38 +02:00
00312a3ffb use colmena name instead of networking.hostName 2025-07-05 18:53:44 +02:00
Sic mundus creatus est
873479d893 more generic approach, but stills limited to vogon, for the forgejo profile 2025-07-01 22:26:25 +02:00
ea4d89eedc increase client body limit to 1GB 2025-06-23 22:35:37 +02:00
19b2eb37e5 dual ip for forgejo, remove nft 2025-06-23 00:45:00 +02:00
18c721bd99 rekey, fix some forgejo issue 2025-06-22 21:28:12 +02:00
972693e5eb add forgejo conf 2025-06-22 20:04:01 +02:00
89e4672f15 add forgejo 2025-06-22 20:03:08 +02:00
f429a85598 add .age files 2025-06-22 01:16:07 +02:00
1ce8f529ee add some secrets & asyncnomi key to sysadmin 2025-06-22 01:15:31 +02:00
a1c4879a38
sysadmin: add asyncnomi's ssh key 2025-06-21 23:39:03 +02:00
b8a6cbfeb5
bug: fix borgmatic when no pgsql + vogon wg secret path 2025-06-21 23:14:39 +02:00
9b61f7e9b5
secrets: rekey for asyncnomi 2025-06-21 18:00:01 +02:00
e2801c3ef7
npins: update 2025-06-21 12:27:25 +02:00
5c4df54d2c
Merge branch 'master' of gitlab2.federez.net:federez/nix 2025-06-21 12:00:25 +02:00
a13930e3cc
secrets: add jargon + niangon 2025-06-21 11:58:39 +02:00
e29b562898 Merge branch 'asyncnomi-keys-and-gitlab-link' into 'master'
Add gitlab links to point to its fqdn and not its hostname, add asyncnomi keys for agenix

See merge request federez/nix!1
2025-06-21 09:57:26 +00:00
10f55b04ca
refactor host/guest profiles + add niangon 2025-06-21 11:55:11 +02:00
698bde5856
monitoring: refactoring + blackbox 2025-06-21 11:51:39 +02:00
267b8d94c8 unstable-small version bump to update gitlab 2025-06-19 22:28:27 +02:00
342b9a17c6 me cannot see 2025-06-19 21:29:22 +02:00
9517f24d6f add gitlab url to point to its fqdn, add asyncnomi keys for agenix 2025-06-19 21:11:12 +02:00
59789595d1
monitoring: cleanup rules + NodeLastBorgmaticTooOld 2025-04-07 20:29:09 +02:00
c7b9a8d839
fix(infra): typo enabled → enable 2025-04-07 20:29:09 +02:00
8129b26c4c
add backups + fix appservice-irc media proxy 2025-04-07 20:29:05 +02:00
d672a1d1ee
gitlab: store secrets in age
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:27:02 +02:00
a64b34810d
wip: nixpkgs versions + infra network + monitoring
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:26:29 +02:00
01b5a0fe25
Bump version + minor cleanups
Signed-off-by: jeltz@federez.net
2025-04-05 21:25:28 +02:00
09d82c6b88
wip: add vogon + many other things
Added lots of things done in a hurry following the dodecagon failure.

Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:22:50 +02:00
a184d18f4b
WIP: add grafana & victoriametrics 2025-04-05 21:19:37 +02:00
a8e3c97ef4
Add host 'martagon'
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:36 +02:00
dfc05aad4a
indico: use upstream qTip2
See https://github.com/indico/qTip2/pull/1

Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:36 +02:00
5d32735063
indico: use systemd-creds
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:36 +02:00
6c627daa51
secrets: remove \n at the end of indico password files
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:36 +02:00
6b529aeb16
indico: I'm dumb
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:35 +02:00
b1039a6859
indico: slightly better socket/unit config
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:35 +02:00
e47358876e
indico: update profile with age passwords
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:35 +02:00
cfc5775ba5
secrets: add indico passwords
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:35 +02:00
2f93570ac4
indico: use files for passwords
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:34 +02:00
dd2afc2cfb
indico: wip: add LDAP support
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:34 +02:00
0a8ae58334
indico: wip: main pkg is almost working
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:34 +02:00
abbafb082d
indico: wip: create module
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:34 +02:00
d75eba0b8e
indico: add package react-jsx-i18n
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:33 +02:00
5dbe2bd6d1
indico: add package flask-url-map-serializer
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:33 +02:00
a0fe0fdd34
Relax hatch version requirement in flask-multipass
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:33 +02:00
43f5d686cc
Update npins
The update is necessary in particular because npmConfigHook now supports git+https:// URLs, which was not the case with the version in the old nixpkgs.

Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:33 +02:00
d12f9d91d1
WIP: Add indico profile + required packages
Signed-off-by: Jeltz <jeltz@federez.net>
2025-04-05 21:19:32 +02:00