Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | refactor(system/services/rust-motd): Migrate to `by-name` | Benedikt Peetz | 3 days |
| | |||
* | refactor(modules/impermanence): Migrate to by-name while distributing mods | Benedikt Peetz | 4 days |
| | |||
* | style(treewide): Format | Benedikt Peetz | 5 days |
| | |||
* | fix(system/services/mastodon): Update char patch to v4.3 | Benedikt Peetz | 7 days |
| | |||
* | refactor(system/services/libreddit): Migrate to `by-name` | Benedikt Peetz | 8 days |
| | | | | This also includes a rename into `redlib` because of upstream changes. | ||
* | build(system/services/taskserver/certs/generate): Convert to `nix-shell` | Benedikt Peetz | 9 days |
| | | | | Lix does not support the newer `nix shell` shebang. | ||
* | fix(system/services/invidious-router): remove_no_ratio = false HEAD main | Silas Schöffel | 2024-12-06 |
| | |||
* | fix(system/services/libreddit): Use unstable `redlib` version | Benedikt Peetz | 2024-11-16 |
| | | | | | The current stable version has a bug with regard to parsing the current reddit json responses. | ||
* | docs(system/services/matrix): Fix typos in comment | Benedikt Peetz | 2024-11-03 |
| | |||
* | feat(taskserver/certs/ca.certs.pem): Regenerate certificate taskd | Benedikt Peetz | 2024-10-05 |
| | |||
* | refactor(taskserver/certs): Format scripts and allow selecting which certs ↵ | Benedikt Peetz | 2024-10-05 |
| | | | | to generate | ||
* | chore(taskserver/certs/ca.key.pem.gpg): reencrypt with new keys as recipients | Silas Schöffel | 2024-10-05 |
| | |||
* | fix(system/services/invidious-router): Use the unstable pkg update | Benedikt Peetz | 2024-10-04 |
| | | | | | This has been updated to provide a means to send the user to YouTube, if no invidious instances are available. | ||
* | fix(system/services/invidious-router): Set health check path to a video URL | Benedikt Peetz | 2024-09-18 |
| | | | | | The main page does sometimes load, but videos are still not playable. This new path really checks, whether the instance works. | ||
* | fix(services/matrix/mautrix-whatsapp): Disable to remove libolm | Benedikt Peetz | 2024-09-06 |
| | | | | | Libolm is marked as insecure and must thus be removed from the system closure. | ||
* | fix(system/services/invidious-router): Stop filtering regions | Silas Schöffel | 2024-08-19 |
| | | | | | | Filtering regions limits our possible instance selection without actually providing great value. Let's stop discriminating based on server location. | ||
* | feat(system/services/mastodon): Apply patch to increase the message length mastodon | Benedikt Peetz | 2024-08-16 |
| | |||
* | refactor(nixos/openssh): Migrate from `system/services` | Benedikt Peetz | 2024-08-02 |
| | |||
* | refactor(nixos/{nginx, nix-sync}): Migrate from `system/services` | Benedikt Peetz | 2024-08-02 |
| | | | | | Nix-sync was sort-of mixed into the nginx configuration, thus separating it completely seemed reasonable. | ||
* | fix(nginx): add gallery.s-schoeffel.de | Silas Schöffel | 2024-07-11 |
| | |||
* | style(system/services/mastodon): Remove forgotten `pkgs-unstable` | Benedikt Peetz | 2024-06-28 |
| | |||
* | fix(peertube): Activate smtp support | Benedikt Peetz | 2024-06-28 |
| | |||
* | fix(nix-sync): Change last occurrences of `repo.path` to `repoPath` | Benedikt Peetz | 2024-06-15 |
| | | | | | | | Using `repo.path` (with the slash on the end) results in operations on the directory, which is the symlink target. Using `repoPath` (without the slash) instead results in the intended operations on the symlink itself. | ||
* | refactor(modules/etesync): Move to a complete module | Benedikt Peetz | 2024-06-13 |
| | |||
* | fix(libreddit): Remove manual module override | Benedikt Peetz | 2024-06-11 |
| | | | | The fixes have been up streamed into `nixpkgs` by now. | ||
* | fix(etesync-server): Re-activate | Benedikt Peetz | 2024-06-11 |
| | |||
* | fix(fail2ban): increase max retry number to 7 | Silas Schöffel | 2024-06-05 |
| | |||
* | fix(nix-sync): Don't try to exit in a subshell | Benedikt Peetz | 2024-06-05 |
| | | | | | | | | The `(cmd1 && cmd2)` pattern works, but fails with commands like `exit` as the parentheses start a new subshell, which the `exit` command will then close instead of exiting the main shell. The curly brackets have the intended effect here, as they simply group the commands together. | ||
* | fix(nix-sync): Ensure that the `target` for `ln` never ends with a `/` | Benedikt Peetz | 2024-06-05 |
| | | | | Otherwise, `ln` tries to create the symlink _in_ the target directory. | ||
* | fix(nix-sync): Add code-path to create a repo's path, if absent | Benedikt Peetz | 2024-06-05 |
| | |||
* | fix(nix-sync): Ensure that the service can write to all needed paths | Benedikt Peetz | 2024-06-01 |
| | | | | | | | Previously, the generated service _could_ write to the directory, but wanted to create the directory, if it was absent. Creating this directory, requires to be able to write in the parent directory. This is fixed, by ensuring that the parent directories are included. | ||
* | fix(nix-sync): Explicitly set the `network-online.target` dependency | Benedikt Peetz | 2024-06-01 |
| | |||
* | feat(etebase)!: disable etebase-server | Silas Schöffel | 2024-06-01 |
| | | | | | | Sadly, it's author didn't manage to update to a newer version of django before the used version (3.2) reached EOL and was affected by CVE-2024-27351. It's unreasonable to continue using it. | ||
* | fix(system/services/invidious): set db.user to invidious | Silas Schöffel | 2024-06-01 |
| | | | | | This also changes the dbname to "invidious" which isn't mentioned in the commit message as it's the default in nixpkgs. | ||
* | fix(treewide): use invidious-router module provided by nixpkgs | Silas Schöffel | 2024-06-01 |
| | |||
* | feat(system/services/nginx)!: Change meaning of `root` key | Benedikt Peetz | 2024-06-01 |
| | | | | | | | | | | | | The `root` key was rather useless (it was always just the `/etc/.../<domain>` path.). This change gives it a real meaning. See the 'BREAKING CHANGE' section for more information. BREAKING CHANGE: Previously the `root` key denoted the _absolute_ root of a repository. Now it just denotes the root relative (i.e. a path within the built repository) to the repos cloning position. You should just remove the absolute part of the path (that, which is not an output in your built repository) | ||
* | feat(system/services/nginx): add wkd for sils.li | Silas Schöffel | 2024-05-26 |
| | |||
* | feat(system/services/nginx): add wkd for s-schoeffel.de | Silas Schöffel | 2024-05-26 |
| | |||
* | fix(system/services/nginx/hosts): Update trinitrix source git path | Benedikt Peetz | 2024-05-26 |
| | |||
* | feat(system/services/nginx): Add the trinitrix website | Benedikt Peetz | 2024-05-25 |
| | |||
* | feat(system/services/nginx): Add the GPG WKD | Benedikt Peetz | 2024-05-25 |
| | |||
* | feat(system/servies): remove snapper | Silas Schöffel | 2024-04-26 |
| | | | | We handle backups with restic | ||
* | feat(system/services/fail2ban): add postfix jail | Silas Schöffel | 2024-04-25 |
| | | | | | This bans IP Addresses which fail to login into postfix at least 3 times in 600 seconds. | ||
* | style(system/services/mastodon): format with alejandra | Silas Schöffel | 2024-04-25 |
| | |||
* | fix(system/services/mastodon): change back to stable package | Silas Schöffel | 2024-04-25 |
| | |||
* | fix(treewide): move former git-crypted files to correct location | Silas Schöffel | 2024-04-24 |
| | | | | They were accidentally added at the wrong location in dd4b6bcfc16c7c795b697195eb6703966352d9f4 | ||
* | fix(system/services/taskserver): Add required kernel settings | Soispha | 2024-04-02 |
| | | | | | | These are the defaults, but I think it is better to explicitly state them to ensure that we don't suffer from a mistake, when we think about changing them in the future. | ||
* | chore(git-crypt): Remove `git-crypt` and associated encrypted files | Soispha | 2024-03-29 |
| | |||
* | refactor(system/services/taskserver): Move away from git-crypt | Soispha | 2024-03-29 |
| | |||
* | fix(system/services/libreddit): correct binary location in systemd service | Silas Schöffel | 2024-03-28 |
| | | | | | | This is a manual fix until we get this merged into nixpkgs Co-authored-by: Benedikt Peetz <benedikt.peetz@b-peetz.de> |