Commit Graph

53 Commits

Author SHA1 Message Date
7bc535ab31 actions-runner: also drop swap and privileged instructions
All checks were successful
build / test (push) Successful in 8s
2023-07-13 14:54:46 +02:00
4bd83a8f11 Merge pull request 'actions-runner: apply systemd hardening' (#5) from test into main
All checks were successful
build / test (push) Successful in 8s
Reviewed-on: #5
2023-07-13 12:46:06 +00:00
a5ac121a1f actions-runner: apply systemd hardening
All checks were successful
build / test (push) Successful in 8s
2023-07-13 14:44:48 +02:00
b34dafa8eb Merge pull request 'test' (#4) from test into main
All checks were successful
build / test (push) Successful in 7s
Reviewed-on: #4
2023-07-13 12:19:35 +00:00
e55c9f06ed gitea-runner: dont leak token
All checks were successful
build / test (push) Successful in 7s
2023-07-13 14:17:43 +02:00
fb47aaeb20 Merge pull request 'switch to native nix gitea action' (#3) from test into main
All checks were successful
build / test (push) Successful in 7s
Reviewed-on: #3
2023-07-13 12:02:28 +00:00
809520c03b switch to native nix gitea action
All checks were successful
build / test (push) Successful in 7s
gitea: check runner label

flake.lock: Update

Flake lock file updates:

• Updated input 'disko':
    'github:nix-community/disko/15c4d57b41b6b57024aec015e5d30a4ed4713034' (2023-07-04)
  → 'github:nix-community/disko/68eb09b1833301d729ae6e89583173b6ceaade1c' (2023-07-13)
• Updated input 'homepage':
    'git+https://git.clan.lol/clan/clan-homepage?ref=refs/heads/main&rev=ffe31cffbdcc22fbf92bde02beda9b17aebe6a82' (2023-07-05)
  → 'git+https://git.clan.lol/clan/clan-homepage?ref=refs/heads/main&rev=b1573761fd03b6d6ae2170211953e08a2f430b8c' (2023-07-11)
• Updated input 'nixpkgs':
    'github:Mic92/nixpkgs/9e9bef88786414db7178ad610e7874730d21c5bb' (2023-07-13)
  → 'github:Mic92/nixpkgs/76873846521e9f2eacc3d2db7c3643b222e22a59' (2023-07-13)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/5ed3c22c1fa0515e037e36956a67fe7e32c92957' (2023-07-02)
  → 'github:Mic92/sops-nix/88b964df6981e4844c07be8c192aa6bdca768a10' (2023-07-12)
• Updated input 'srvos':
    'github:numtide/srvos/c9fa5cf4b6014807655bf8356b3cddc86f741b7a' (2023-07-03)
  → 'github:numtide/srvos/e8ae8c0ac816b6388199a475bd6188943e47f5b9' (2023-07-13)
• Updated input 'treefmt-nix':
    'github:numtide/treefmt-nix/df3f32b0cc253dfc7009b7317e8f0e7ccd70b1cf' (2023-06-29)
  → 'github:numtide/treefmt-nix/f1dca68b908f3dd656b923b9fb62f7d755133662' (2023-07-13)

flake.lock: Update

Flake lock file updates:

• Updated input 'nixpkgs':
    'github:Mic92/nixpkgs/76873846521e9f2eacc3d2db7c3643b222e22a59' (2023-07-13)
  → 'github:Mic92/nixpkgs/21d75bf07c3cd8c10aea2e86e7d683e12b8bc5c4' (2023-07-13)

flake.lock: Update

Flake lock file updates:

• Updated input 'nixpkgs':
    'github:Mic92/nixpkgs/21d75bf07c3cd8c10aea2e86e7d683e12b8bc5c4' (2023-07-13)
  → 'github:Mic92/nixpkgs/dc54601ce60a6e7b427d124550d43067ee605b53' (2023-07-13)
2023-07-13 14:01:44 +02:00
5d496726ff Merge pull request 'test' (#2) from test into main
All checks were successful
build / test (push) Successful in 1m13s
Reviewed-on: #2
2023-07-13 09:37:56 +00:00
52c4cdb006 make ci check a bit less verbose
All checks were successful
build / test (push) Successful in 1m15s
2023-07-13 11:37:15 +02:00
fd0b984d61 treefmt
All checks were successful
build / test (push) Successful in 1m15s
2023-07-13 11:29:21 +02:00
6d22fd0c35 flake: fix evaluation 2023-07-13 11:29:07 +02:00
93ebc92c9e README: minor update
Some checks failed
build / test (push) Failing after 1m9s
2023-07-13 11:19:48 +02:00
448a368491 gitea: also set APP_DATA_PATH 2023-07-13 11:18:05 +02:00
5adf44c23e set up gitea actions runner 2023-07-13 11:05:07 +02:00
ed9bb9b9e9 test official zerotier-tcp-proxy 2023-07-12 10:56:39 +02:00
14a39f207d package zerotier tcp proxies 2023-07-11 20:25:13 +02:00
64ef6eda56 redeploy web01 2023-07-11 17:37:23 +02:00
07a2d1e4aa modules zerotier: use settings style networkd syntax 2023-07-11 17:21:20 +02:00
a63abe676e make mdns iptables rules work 2023-07-11 16:44:30 +02:00
34bb2fd13f enable mdns for zerotier 2023-07-11 16:30:35 +02:00
6f82a31db9 fix harmonia config 2023-07-05 17:38:01 +02:00
ba3af50dd5 deploy binary cache 2023-07-05 17:27:07 +02:00
84dbe47895 add sops-nix 2023-07-05 17:19:22 +02:00
c36ecde876 modules: split zerotier into it's own directory, document it a bit 2023-07-05 16:57:17 +02:00
c0eba3683d update website 2023-07-05 16:54:04 +02:00
845521c49d flake.lock: Update
Flake lock file updates:

• Updated input 'homepage':
    'git+https://git.clan.lol/clan/clan-homepage?ref=refs/heads/main&rev=6945dec58540309022103516bd4d12ce3810e0a3' (2023-07-05)
  → 'git+https://git.clan.lol/clan/clan-homepage?ref=refs/heads/main&rev=ffe31cffbdcc22fbf92bde02beda9b17aebe6a82' (2023-07-05)
2023-07-05 16:51:02 +02:00
ec5c2fd33b web01: add zerotier-ctrl service 2023-07-05 16:49:02 +02:00
2135c50160 add README on how to use repo 2023-07-05 16:10:04 +02:00
952322b3ce gitea: link to bot-check 2023-07-05 16:09:53 +02:00
f8a2c60d3b update website 2023-07-05 16:09:24 +02:00
6b91e2bb25 flake.lock: Update
Flake lock file updates:

• Updated input 'homepage':
    'git+https://git.clan.lol/clan/clan-homepage?ref=refs/heads/main&rev=444f075e1d1c5cf9f8433434e9df44aaed1c3f46' (2023-07-05)
  → 'git+https://git.clan.lol/clan/clan-homepage?ref=refs/heads/main&rev=6945dec58540309022103516bd4d12ce3810e0a3' (2023-07-05)
2023-07-05 16:02:38 +02:00
4b563a2292 add poor-mans captcha 2023-07-05 15:22:57 +02:00
1bae0c1b62 web01: deploy homepage from clan-homepage 2023-07-05 14:39:05 +02:00
70bafcb31f re-encrypt state with lassulus keys 2023-07-05 14:32:23 +02:00
fc0bfa55b4 sops: add lassulus 2023-07-05 14:30:05 +02:00
c30add1848 tf.sh: no longer ignore sops decryption errors 2023-07-05 13:51:59 +02:00
0c657360bf add license 2023-07-05 13:50:52 +02:00
6138ea5f44 add envrc 2023-07-05 13:50:48 +02:00
93ae0e86e3 drop unused recipents.txt 2023-07-05 13:04:45 +02:00
98ae84e075 drop obsolete git-agecrypt 2023-07-05 12:55:35 +02:00
8ce66ea44f integrate postfix into gitea 2023-07-05 12:52:45 +02:00
8f7963368d apply treefmt 2023-07-05 11:13:05 +02:00
7b74fb1f54 add gitea 2023-07-04 19:56:58 +02:00
c01feb7583 add homepage 2023-07-04 19:40:45 +02:00
5eacd27511 cloud-init: xfs now defaults to false 2023-07-04 19:29:04 +02:00
79c7ac2ed3 flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:Mic92/nixpkgs/8d0b85d15ab430cff31ecef7a7f2c42e9246863b' (2023-07-04)
  → 'github:Mic92/nixpkgs/6f404ed21403960e252d1f9fffbb3db43301e30b' (2023-07-04)
2023-07-04 19:28:05 +02:00
35e4182f08 web01: increase instance size 2023-07-04 19:10:37 +02:00
e9fa02ade5 fix cloud-init 2023-07-04 19:09:37 +02:00
e46d942c4f web01: update terraform 2023-07-04 18:10:01 +02:00
1987362368 single-disk: fix module 2023-07-04 18:09:53 +02:00