Commit graph

446 commits

Author SHA1 Message Date
581241e860
vps-monitor: Fix variable name 2026-01-20 08:53:44 +01:00
ca35081ddc
vps-monitor: Expose ntfy completely publicly again 2026-01-19 21:34:31 +01:00
4ddc49c001
gatus: Include the whole domain in the endpoint name 2026-01-17 22:01:09 +01:00
9299842ce0
vps-monitor: Only allow writes to ntfy over vpn 2026-01-15 22:21:25 +01:00
d73e3744a8
vps-public: Only allow access to radicale's login page over vpn 2026-01-15 22:20:48 +01:00
7b8435a555
Expose radicale publicly 2026-01-14 21:06:58 +01:00
f3ad654ad3
vps-public: Remove unneeded crowdsec secret 2026-01-12 20:59:32 +01:00
2ae08dc9c5
grafana: Enable datasources and dashboards intelligently 2026-01-12 20:57:16 +01:00
81a08c60a0
vps-monitor: Disable grafana's crowdsec dashboard 2026-01-12 20:38:15 +01:00
55c0eb01be
Expose ntfy publicly 2026-01-12 01:42:30 +01:00
b1a827580d
vps-public: Disable crowdsec 2026-01-12 00:57:33 +01:00
79da1f6644
vps-*: Fix nebula option name 2026-01-11 21:33:00 +01:00
2b5bc47384
laptop: Fix dns by enabling networkd 2026-01-11 19:14:40 +01:00
252abe9443
Create networking abstraction on top of nebula 2026-01-11 19:13:30 +01:00
6804112df6
Disable any ipv6 functionality 2026-01-11 14:34:53 +01:00
3cf75dc7e1
Remove all traces of tailscale 2026-01-11 00:17:51 +01:00
ccac4395a2
Finally disable tailscale on clients 2026-01-11 00:10:08 +01:00
2acd61d67e
vps-monitor: Switch completely to nebula 2026-01-11 00:07:24 +01:00
6069bd4b06
vps-public: Switch completely to nebula 2026-01-10 23:27:36 +01:00
b7a2598ebe
vps-private: Switch completely to nebula 2026-01-10 23:25:13 +01:00
c6b56d87ff
gc: Enable on servers with gcroot cleanup only 2026-01-10 14:37:44 +01:00
ac3b43a952
nebula: Add DNS support by configuring unbound 2026-01-09 19:43:19 +01:00
dc3fc4d5ad
Enable localsend on clients 2026-01-09 16:15:31 +01:00
1c61682e5a
tailscale: Disable ssh for all hosts 2026-01-07 20:51:50 +01:00
ef6cdd8e22
nebula: Roll out to all hosts 2026-01-06 21:33:46 +01:00
61f5c54196
nebula: Enable firewall and restrict ssh access by role 2026-01-03 00:41:13 +01:00
94ac7bbca3
vps-public: Disable forgejo's ssh server 2025-12-31 19:19:04 +01:00
02846ab16f
Refactor web services to use a unified web-services namespace 2025-12-28 19:33:56 +01:00
308ee43ec4
vps-public: Disable stirling-pdf 2025-12-28 19:12:08 +01:00
10362bd42b
sops: Read age public-keys from files 2025-12-25 20:23:12 +01:00
c8db179bda
nebula: Add laptop to network 2025-12-24 01:10:51 +01:00
435a70a4e9
nebula: Test with desktop and vps-private 2025-12-23 14:43:18 +01:00
8cd27cac05
Increase min-free threshold 2025-12-22 22:37:27 +01:00
8199296c5c
Install comma 2025-12-13 20:31:29 +01:00
25f4536bb3
hosts/*: Update tailscale service-auth-keys 2025-12-09 13:28:48 +01:00
ed9e6ab5ef
hosts/vps-public: Remove unused forgejo secret 2025-12-09 12:55:11 +01:00
b5e13cea54
hosts/vps-public: Remove unused porkbun secrets 2025-12-09 12:53:58 +01:00
cd54a6628a
desktop: Disable folding at home 2025-12-05 21:57:32 +01:00
094393879b
vps-monitor: Remove ssh-gatus-endpoint 2025-11-26 21:15:21 +01:00
3155b96ce1
laptop: Fix renamed options 2025-11-26 20:16:32 +01:00
d5174f8c40
vps-public: Reinstall with xfs /nix 2025-11-23 01:07:51 +01:00
b4241e4e23
vps-public: Rename host 2025-11-21 10:29:38 +01:00
f3c74bb477
Refactor min/max-free to use byte values 2025-11-20 23:10:27 +01:00
adc086043e
Increase min- and max-free 2025-11-14 22:51:14 +01:00
1fe43f5802
persistence: Rename module
`impermanence` -> `persistence`
2025-11-11 15:29:17 +01:00
59d2a732a0
crowdsec: Auto enable sources when appropriate 2025-11-09 21:41:30 +01:00
c9f05a040e
caddy: Configure virtual hosts inside each web-service's module instead of in the host configs 2025-11-08 22:52:01 +01:00
0ee45e2672
Revert "Increase min- and max-free"
This reverts commit a42478b852.
2025-11-06 10:25:45 +01:00
ccdf26ea94
vps-private: Reinstall with xfs /nix 2025-11-05 23:48:33 +01:00
bffbc4a1a0
vps-monitor: Reinstall with xfs /nix 2025-11-05 22:49:14 +01:00