8fa7bd4df5
Add a default
deployment containing everything
2025-01-31 15:24:41 +01:00
9c85431a22
Move everything into common
with better names
2025-01-31 15:22:28 +01:00
dedd70dc0e
Make vm*/default.nix
resources
2025-01-31 15:19:55 +01:00
4f761bfc1f
Start building a procolixVm
resource module
2025-01-31 15:08:47 +01:00
1d05993127
Bump NixOps4
...
in particular, follow the split of `nixops4-nixos` to its own
repository.
2025-01-31 14:11:46 +01:00
1f2ea73e69
Clean up resource definition
2025-01-31 14:03:37 +01:00
232680c9bf
Document failure when running NixOps4 not from the repo's root
2025-01-31 12:15:27 +01:00
d121cd6a5b
Remove vm02117
...
Machine was running on the old supervisor and was decommissioned manually.
2025-01-31 11:06:23 +01:00
873a1c9177
Automatically git root
access to all contributors
2025-01-31 10:59:36 +01:00
5522595296
Factorise the deployment definition
2025-01-30 12:57:11 +01:00
34eb7263cc
Factorise the resource definition
2025-01-30 09:53:45 +01:00
d4e1760c70
vm02117 is not the web server anymore
2025-01-29 15:34:48 +01:00
f475b1f56c
Move web server definition to infra
2025-01-29 15:34:48 +01:00
49a98c6066
Make fedi300 a CI runner
2024-12-16 13:46:21 +01:00
ba08f3cf49
Enter fedi300
2024-12-16 13:46:21 +01:00
f1f0611bbc
Discontinue two old actions runners
2024-12-16 13:46:08 +01:00
732760bc0c
Move Nix options to common
2024-12-16 12:57:02 +01:00
a9f9d4f1a0
Enable mailing for Mediawiki
2024-12-13 13:17:01 +01:00
21e8c962bf
s/x_fediversity/fediversity/
2024-12-13 12:37:25 +01:00
9407af8ac8
Use secrets module to clean up configurations
2024-12-13 00:26:43 +01:00
f753422295
Use shared keys attrset in infra/
2024-12-13 00:26:43 +01:00
36b5351f0a
Handle Forgejo's secrets cleanly
2024-12-12 12:38:20 +01:00
32378d917d
Make token secret for actions runners
2024-12-12 12:38:20 +01:00
89d25fa7a5
Set up mailing for Forgejo
2024-11-27 17:34:05 +01:00
80f38ff7bc
Move the Proxmox architecture document to infra/
2024-11-27 12:20:33 +01:00
746fddcbbb
Forgejo: enable Git LFS
2024-11-26 13:57:27 +01:00
b04b3c457f
Fix typo
2024-11-22 17:37:15 +01:00
5bc7f954bd
Consolidate config for vm02187
2024-11-21 12:13:34 +01:00
e4c891b284
Consolidate config for vm02186
2024-11-21 12:13:34 +01:00
104827746a
Consolidate config for vm02179
2024-11-21 12:13:34 +01:00
2beb64af83
Consolidate config for vm02116
2024-11-21 12:13:31 +01:00
fca563a987
nix.settings.trusted-users
2024-11-21 12:06:35 +01:00
9f471327df
environment.systemPackages
2024-11-21 12:04:59 +01:00
0749bda96c
networking.useDHCP
2024-11-21 12:04:02 +01:00
9888ae0d07
nixpkgs.hostPlatform
2024-11-21 12:04:02 +01:00
dbba09de45
system.stateVersion
2024-11-21 12:04:00 +01:00
17611b7e53
Timezone and locale
2024-11-21 12:03:12 +01:00
8a075bb837
Keep vm02116's specificities documented
2024-11-21 11:57:26 +01:00
7c8b26c07c
Factorise hardware config of vm02187 into infra/common
2024-11-21 11:55:02 +01:00
40ae3db164
Factorise hardware config of vm02186 into infra/common
2024-11-21 11:55:02 +01:00
6d0c8caf57
Factorise hardware config of vm02179 into infra/common
2024-11-21 11:55:01 +01:00
ba8c1d9d9c
Move hardware config of vm02116 to infra/common
2024-11-21 11:55:01 +01:00
67eddccc40
Apply @kevin 's recommendations
...
- Remove `root`'s password; SSH password authentication is already
removed for all users.
- Enable password-less sudo for `wheel` group.
- Add a note about removing `root` SSH connection altogether.
- Add `niols` user with sudo capabilities.
2024-11-21 11:44:53 +01:00
4bef70a2ab
Factorise users config of vm02187 into infra/common
2024-11-21 11:44:53 +01:00
6efe45a88b
Factorise users config of vm02186 into infra/common
2024-11-21 11:44:53 +01:00
09764eeab9
Factorise users config of vm02179 into infra/common
2024-11-21 11:44:53 +01:00
6e7e0e5ef7
Move users config of vm02116 to infra/common
2024-11-21 11:44:53 +01:00
60ec9aab2a
Follow @kevin 's recommendations
2024-11-21 11:32:48 +01:00
18559dab54
Move nftables ruleset to separate file
2024-11-20 15:58:07 +01:00
f56c00eb59
Factorise networking config of vm02187 into infra/common
2024-11-20 15:58:06 +01:00