Commit graph

185 commits

Author SHA1 Message Date
bdcb1760ed
Add required headers 2022-05-06 12:22:59 +02:00
ca55b15b57
Add Cryptpad build and config 2022-05-06 11:44:13 +02:00
b75d7c7841
WIP Cryptpad integration to Deuxfleurs 2022-05-06 11:43:49 +02:00
3df47c8440
Configuration for prod to run on Wesher & other new stuff 2022-05-04 17:38:54 +02:00
72ed2517a9
Fix passwd script 2022-05-04 16:41:07 +02:00
9cae8c8fc2
Update telemetry to ES 8.2.0 and simplify config a bit 2022-05-04 16:27:46 +02:00
1b4f96ffb2
Fix telemetry 2022-05-04 15:32:51 +02:00
d9e2465e28
Access staging cluster through IPv6
- for now DiploNAT is no longer used to transfer port
- and it is not yet capable of updating DNS AAAA record,
  so tricot is pinned to a single machine for now
2022-05-04 15:07:03 +02:00
44d3d6d19c
Tricot 37 on staging 2022-05-04 14:50:11 +02:00
c99c0ffd30
udpate README 2022-04-20 18:14:56 +02:00
2685970256
fake update spoutnik config 2022-04-20 18:06:42 +02:00
10d370491e
Replace ad-hoc wireguard by wesher on staging cluster 2022-04-20 18:04:57 +02:00
04f2bd48bb
Add some readme 2022-04-20 16:13:14 +02:00
6c22f5fdfa
Add scripts to manage passwords 2022-04-20 15:41:54 +02:00
226fbabf65
tlsproxy from pass; fix tls stuff 2022-04-20 15:29:24 +02:00
7c1444b714
Move pki to pass 2022-04-20 15:03:04 +02:00
a8717f9bf5
manage wesher key with pass 2022-04-20 14:14:15 +02:00
d056b385d7
Refactor secrets 2022-04-20 13:07:39 +02:00
9c9c776213
Refactor deployment scripts 2022-04-20 13:03:29 +02:00
50e9f0b589
Wesher secret key in /var/lib/wesher/secrets 2022-04-20 10:50:42 +02:00
db081fad0e
First working Wesher configuration 2022-04-19 22:03:58 +02:00
9ff81afd7e
Wesher package now works 2022-04-19 18:09:56 +02:00
3d8989b9c9
nix infinite recursion 2022-04-19 17:41:18 +02:00
65902d4780
garage v0.7.0 on staging 2022-04-12 15:49:57 +02:00
fdb5210f88
Move configuration.nix to nix/ subfolder 2022-03-28 12:18:52 +02:00
9709f1aed4
Garage v0.7.0-rc1 2022-03-25 16:02:07 +01:00
bc026d62dc
Change elastic disk watermarks 2022-03-25 15:35:05 +01:00
4e497a7759
Remove node_exporter because it doesn't work, and takes space 2022-03-14 11:22:16 +01:00
874833c98e
permissions for apm writer 2022-03-08 22:41:01 +01:00
97858a1433
fix logging 2022-03-08 14:28:57 +01:00
e3eca391e0
Add filebeat to stream logs into elasticsearch 2022-03-08 14:16:14 +01:00
27ffee95b8
Updates; change crontab 2022-03-07 16:57:43 +01:00
217e31e4bd
Remove useless docker-compose file 2022-03-01 17:37:00 +01:00
3b90fd15db
tiny progress on nextcloud but still bad 2022-02-27 20:21:55 +01:00
02ed668286
Remove mount garage using rclone systemd service 2022-02-27 14:18:43 +01:00
7d486b3907
kibana configuration 2022-02-27 14:06:17 +01:00
2de09a0594
fix scrape interval for node_exporter 2022-02-26 22:18:02 +01:00
465e262726
Add node_exporter to telemetry pipeline 2022-02-26 22:06:37 +01:00
41a65b8032
Allow grafana to move between nodes 2022-02-26 21:31:58 +01:00
7dcb4072dc
Scrape meterics from system process on each node 2022-02-26 20:31:57 +01:00
bd2abf3449
Have an ElasticSearch cluster 2022-02-26 20:14:55 +01:00
8064d91dfb
Add security to telemetry deployment 2022-02-26 18:56:16 +01:00
823c8bd3ba
in prod also use LAN IPs when possible 2022-02-26 00:17:12 +01:00
86b9873221
Wireguard directly using LAN addresses when possible 2022-02-26 00:13:08 +01:00
0940e0bdfc
Reinstall cariacou with encryption 2022-02-26 00:00:10 +01:00
d7ff8bfa2e
doc updates 2022-02-25 22:00:10 +01:00
f5f0927b9e
write some minimal documentation to get nodes up and running 2022-02-25 21:54:53 +01:00
07b2e93014
Move telemetry to carcajou 2022-02-25 19:27:08 +01:00
33446d2148
Carcajou is encrypted 2022-02-25 19:11:25 +01:00
6dc9281299
Add remote LUKS unlocking configuration 2022-02-25 17:52:17 +01:00