Commit graph

422 commits

Author SHA1 Message Date
Alex 07f50f297a D53 with addresses from DiploNAT autodiscovery; diplonat fw opening for tricot 2023-04-05 16:30:28 +02:00
Alex c08bc17cc0 Adapt prod config to new parameters 2023-04-05 14:09:04 +02:00
Alex 16422d2809 introduce back static ipv4 prefix lenght but with default value 2023-04-05 14:04:11 +02:00
Alex bb25797d2f make script clearer and add documentation 2023-04-05 13:44:38 +02:00
Alex dec4ea479d Allow for IPv6 with RA disabled by manually providing gateway 2023-04-05 13:27:18 +02:00
Alex cb8d7e92d2 staging: ipv6-only diplonat for automatic address discovery 2023-04-05 10:25:22 +02:00
Alex a31c6d109e remove obsolete directives 2023-03-31 16:27:08 +02:00
Alex ecfab3c628 Merge branch 'main' into simplify-network-config 2023-03-24 15:35:27 +01:00
Alex 96566ae523 refactor configuration syntax 2023-03-24 15:26:39 +01:00
Alex e2aea648cf greatly simplify ipv4 and ipv6 configuration 2023-03-24 14:42:36 +01:00
Baptiste Jonglez 8ae9ec6514 Update piranha IP again 2023-03-24 13:01:24 +01:00
Alex a0db30ca26 Sanitize DNS configuration
- get rid of outside nameserver, unbound does the recursive resolving
  itself (and it checks DNSSEC)
- remove CAP_NET_BIND_SERVICE for Consul as it is no longer binding on
  port 53 (was already obsolete)
- make unbound config independant of LAN IPv4 address
2023-03-24 12:58:44 +01:00
Alex 76c8e8f0b0 Merge pull request 'Passer wgautomesh en prod' (#9) from wgautomesh into main
Reviewed-on: #9
2023-03-24 11:05:29 +00:00
Alex 53b9cfd838 wgautomesh actually on prod 2023-03-24 12:01:38 +01:00
Alex 5cd69a9ba1 Merge branch 'main' into wgautomesh 2023-03-24 11:29:14 +01:00
Alex 8e29ee3b0b backup memory 2023-03-24 11:29:07 +01:00
Quentin 4a56b3360f
upgrade matrix 2023-03-22 22:23:37 +01:00
Alex b7c4f94ebd Add Garage backup script running on Abricot 2023-03-20 16:47:22 +01:00
Alex 6ffaa0ed91 use nix enum type 2023-03-20 11:17:38 +01:00
Quentin eec09724fe
socat proxy 2023-03-20 10:45:40 +01:00
Quentin bebbf5bd8b
wip rsa-ecc proxy 2023-03-20 09:45:05 +01:00
Alex 90efd9155b wgautomesh variable log level (debug for staging) 2023-03-17 18:21:50 +01:00
Alex 39254cca0e keep wg-quick code as reference 2023-03-17 18:18:25 +01:00
Alex f629f4c171 wgautomesh from static binary hosted on gitea 2023-03-17 18:01:35 +01:00
Alex f9b94f0b47 update wgautomesh 2023-03-17 17:17:56 +01:00
Alex bb2660792f wgautomesh persist state to file 2023-03-17 17:17:56 +01:00
Alex 6664affaa0 wgautomesh gossip secret file 2023-03-17 17:17:56 +01:00
Alex a3edbb4100 document wgautomesh port 2023-03-17 17:17:56 +01:00
Alex baae97b192 sample deployment of wgautomesh on staging (dont deploy prod with this commit) 2023-03-17 17:17:56 +01:00
Alex 870511931a abricot fixed ipv6 2023-03-17 16:22:24 +01:00
Alex a6c791d342 remove email-in 2023-03-17 13:44:48 +01:00
Adrien 28e7503b27 virguuuule 2023-03-17 10:04:21 +01:00
adrien fd4f601ee0 Merge pull request 'configuration for imap.deuxfleurs.fr & smtp.deuxfleurs.fr as part of email service for d53 + convert tabs into spaces (couldn't help myself)' (#8) from feat/d53-email into main
Reviewed-on: #8
2023-03-17 08:53:27 +00:00
Quentin 551988c808
do not allow stale information reading 2023-03-16 17:01:17 +01:00
Quentin 6fe8ef6eed
update albatros 2023-03-16 16:53:16 +01:00
Quentin 8b67c48c52
Fix consul port 2023-03-16 16:19:35 +01:00
Quentin 7bf1467cb1
add albatros 2023-03-16 15:52:13 +01:00
Adrien fe2eda1702 configuration for imap.deuxfleurs.fr & smtp.deuxfleurs.fr as part of email service for d53 + convert tabs into spaces (couldn't help myself) 2023-03-16 15:48:52 +01:00
Alex 81d3c0e03a d53 for email-in.deuxfleurs.fr (A only, AAAA missing firewall) 2023-03-16 14:42:47 +01:00
Alex 1c623c796a update garage and let it use more ram 2023-03-16 14:18:59 +01:00
Adrien e4065dade8 added Consul Registration of personal services (for Adrien's personal stuff) 2023-03-15 18:55:09 +01:00
Adrien f7be968531 TODOs in deuxfleurs.nix because the old world is maybe mixing with the new 2023-03-15 18:19:01 +01:00
Adrien 1a2ff3f6b9 upgrade nixos 2023-03-15 17:50:06 +01:00
Alex 2a0eff07c0 fix cleanup of deploypass 2023-03-15 17:49:31 +01:00
Adrien f6c4576b6c added forgotten new files for scorpio/abricot 2023-03-15 17:30:35 +01:00
Adrien 85595a9205 there was a little problem 2023-03-15 17:27:26 +01:00
Adrien 031d029e10 added scorpio site and abricot node 2023-03-15 17:10:38 +01:00
Quentin c681f63222
alloc more mem 2023-03-14 18:37:28 +01:00
Quentin d2b8b0c517
wip homemade ci? 2023-03-14 17:32:49 +01:00
Alex 385882c74c Changes in prod:
- migrate courgette and concombre to M710q machines with SSD+HDD
- migrate prod/c* to nixos 22.11
2023-03-13 19:58:37 +01:00