Commit Graph

359 Commits

Author SHA1 Message Date
d98527c89b
hosts/plover: update Bind config for dynamic updates 2023-06-27 22:56:18 +08:00
dc01a2d2f1
hosts/graphical-installer: re-disable wireless module
I forgot why it's there. Now I remember. :)
2023-06-23 15:44:19 +08:00
c81038e609
hosts/graphical-installer: update config 2023-06-23 11:46:37 +08:00
218e5cd724
hosts/bootstrap: update config 2023-06-23 11:46:21 +08:00
36e2a817ae
hosts/plover: fix Wireguard firewall settings 2023-06-22 23:17:28 +08:00
482e90efaa
hosts/plover: update zone file to include self-hosted DNS server 2023-06-22 22:52:17 +08:00
2688064651
hosts/plover: add TLS support for PostgreSQL 2023-06-22 18:05:54 +08:00
ff3dd9d3f7
hosts/plover: update nameserver list
With the right configuration alongside systemd-resolved, it shouldn't be
much of a problem.
2023-06-22 18:03:21 +08:00
9cfe72a62c
docs: update Plover config notes 2023-06-22 18:02:23 +08:00
4b2777cda2
hosts/plover: change network attribute name
It is somewhat not great naming at first.
2023-06-22 18:01:19 +08:00
eb1003f7e6
hosts/plover: change DNS server to Bind9
CoreDNS doesn't have dynamic updates available yet (though there are PRs
and discussions for it) so we'll have to go with something that has it.
Also, it provides an opportunity for me to use the de-facto software for
this.
2023-06-22 17:56:47 +08:00
4022f9b43c
hosts/plover: open custom Atuin sync server 2023-06-22 11:12:58 +08:00
03ca6722e9
chore: reformat codebase 2023-06-22 11:12:43 +08:00
55eb4d8c0c
hosts/plover: initialize Terraform configuration 2023-06-22 11:06:43 +08:00
a0219f6260
hosts/plover: move GRUB config to Hetzner hardware config 2023-06-20 19:57:06 +08:00
5a8cdc5769
hosts/plover: disable DNSSEC
It's giving me trouble for now. Ideally, this should be configured with
the individual interfaces that is giving me the troubles.
2023-06-20 09:56:40 +08:00
57d897ac82
hosts/ni: update personal VPN config 2023-06-19 12:28:33 +08:00
753699869e
hosts/plover: update nameserver list 2023-06-13 13:33:36 +08:00
9ba11f0fa6
hosts/plover: update network interface settings 2023-06-13 13:32:41 +08:00
805ef47f70
hosts/plover: update Wireguard firewall rules 2023-06-13 13:20:00 +08:00
9f91d78294
hosts/plover: update DNS server with loopback device 2023-06-12 15:32:38 +08:00
5949475aee
hosts/plover: update Wireguard "server" configuration 2023-06-11 14:11:35 +08:00
9857cabb07
hosts/ni: update Wireguard "client" config again 2023-06-11 12:28:36 +08:00
bfb4837627
hosts/plover: update DNS server settings 2023-06-11 12:26:59 +08:00
271750f755
hosts/plover: improve network metadata 2023-06-11 12:26:02 +08:00
1bdda28ffe
chore: reformat codebase 2023-06-08 21:19:17 +08:00
ab8ab4921c
config: add more comments 2023-06-08 19:53:20 +08:00
29d990f33c
hosts/plover: improve firewall settings for Wireguard service 2023-06-08 19:52:29 +08:00
316602a35d
hosts/plover: update DNS server list for LAN interface 2023-06-08 19:51:38 +08:00
039f033632
hosts/ni: update Wireguard "client" configuration 2023-06-08 12:17:48 +08:00
b061f42f73
hosts/ni: update profile 2023-06-06 13:50:17 +08:00
1ca789bd86
profiles/desktop: update app list for Wine submodule 2023-06-05 17:44:11 +08:00
95bc32f806
hosts/ni: add Gonic server 2023-05-27 13:17:35 +08:00
1a3c834d5b
hosts/ni: update to state version "23.05" 2023-05-25 11:15:28 +08:00
670361faaa
hosts/ni: update Wireguard interface 2023-05-21 06:37:03 +08:00
fa7b1796b4
hosts/ni: update the domains for resolved 2023-05-21 06:36:32 +08:00
c066f85fc2
hosts/plover: update to NixOS 23.05 2023-05-15 22:13:51 +08:00
a5a0399e61
hosts/ni: add swh fs 2023-05-09 16:17:09 +08:00
b9e05dd1fa
hosts/plover: update Gitea configuration 2023-05-02 12:34:24 +08:00
43b4ddd734
hosts/plover: update Borg SSH key 2023-05-02 08:06:43 +08:00
18e2743be2
hosts/ni: update iwd configuration
iwd and udev are going into a race condition and I cannot easily remove
attribute in a NixOS module so we'll be forcing the iwd systemd-networkd
configuration to be empty instead.
2023-03-19 09:58:50 +08:00
a96fcb06db
hosts/ni: switch boot.kernelPackages to latest Linux packages 2023-03-19 09:58:18 +08:00
aed8181762
hosts/ni: fix erroneous attribute 2023-03-14 08:03:07 +08:00
d4395da314
hosts/ni: move wireless configuration to appropriate file 2023-03-10 08:28:33 +08:00
5a31f55cb7
hosts/ni: update Wireguard address
Not exactly important since the desktop peer is not exactly used akin to
a VPN server but it's just there for consistency, I guess.
2023-03-09 11:45:55 +08:00
a72146dd05
hosts/ni: use Linux kernel version 6.2 2023-03-09 11:45:09 +08:00
8369ea4145
hosts/ni: switch to iwd for wireless network configuration 2023-03-09 11:43:47 +08:00
54f9f2474e
hosts/plover: disable multimedia archive task 2023-03-03 17:13:40 +08:00
744488a2a6
hosts/ni: add more administrative tools 2023-03-03 17:18:42 +08:00
fee1c9653e
hosts/plover: update DNS zone file 2023-03-03 17:18:23 +08:00
993f856c39
docs: update networking guide for Plover server 2023-02-25 10:18:02 +08:00
19db60aad2
hosts/ni: update zram setup 2023-02-25 10:02:43 +08:00
00e0258c2e
hosts/ni: update Gitea log level 2023-02-25 10:02:27 +08:00
c9bedf128a
hosts/plover: update DNS zone file 2023-02-24 01:29:23 +08:00
36cda7bab2
hosts/plover: update networking blocks 2023-02-22 11:29:43 +08:00
41fd659453
hosts/plover: update DNS server setup 2023-02-22 11:28:59 +08:00
84b4e3be3e
hosts/ni: update systemd networking setup 2023-02-22 11:27:18 +08:00
b3ce46ccf9
hosts/plover: update DNS zone and server configuration 2023-02-17 23:10:52 +08:00
ff1927deb5
hosts/ni: update DNS routing for VPN internal network 2023-02-14 11:02:50 +08:00
e6b272c612
hosts/plover: update ACME client environment 2023-02-14 11:02:13 +08:00
2106292bbe
hosts/plover: add local area network to firewall 2023-02-14 11:01:29 +08:00
af9ddbe527
hosts/plover: update network metadata 2023-02-14 11:00:57 +08:00
d1bb54582d
hosts/plover: update LAN interface network config 2023-02-14 11:00:26 +08:00
0ae42d4251
hosts/plover: update hcloud cloud-config 2023-02-14 10:51:37 +08:00
a2407a75c4
hosts/plover: update DNS zone 2023-02-14 10:51:15 +08:00
539d9c0b48
docs: add more items in the Plover management guidelines 2023-02-13 15:39:19 +08:00
60ab954c74
hosts/plover: update Wireguard "server" configuration 2023-02-13 09:51:30 +08:00
a0e0dc5870
hosts/plover: update Keycloak service locations 2023-02-13 09:50:50 +08:00
5e8c65b70e
hosts/plover: automate the admin creation on Gitea 2023-02-13 09:49:45 +08:00
fc7ec80933
hosts/plover: update foodogsquared.one DNS zone 2023-02-13 00:28:41 +08:00
93863ff00c
hosts/ni: update host and user configuration 2023-02-11 15:21:50 +08:00
0991e1a44d
hosts/plover: update firewall settings
Firewalls... the cause of most frustrations...
2023-02-11 15:21:18 +08:00
8a81468456
hosts/plover: revert to Porkbun as the DNS provider 2023-02-11 11:19:13 +08:00
7edaec8b60
profiles/dev: add Wireshark 2023-02-11 09:01:31 +08:00
4b0dc93aba
hosts/plover: update DNS provider for ACME client 2023-02-10 23:45:22 +08:00
9b15f5f4dd
hosts/plover: update Wireguard setup 2023-02-10 23:45:11 +08:00
4c62274145
hosts/plover: update DNS-related configuration 2023-02-10 21:09:05 +08:00
7aca74924c
hosts/plover: improve DNS server configuration 2023-02-10 15:58:36 +08:00
cc4d62af9f
hosts/plover: update Portunus config 2023-02-10 10:15:14 +08:00
5ba2b6d846
hosts/plover: update Keycloak service config 2023-02-09 18:10:46 +08:00
b1427c1c9f
hosts/plover: update hcloud user data init script 2023-02-09 14:58:17 +08:00
1c609f5e95
chore: reformat the codebase 2023-02-09 14:51:22 +08:00
ae787f8fcc
config: update comments on config 2023-02-09 14:50:11 +08:00
45cb320725
docs: update networking guidelines 2023-02-09 14:18:10 +08:00
9a07f06512
hosts/plover: update networking setup 2023-02-09 14:17:59 +08:00
f07aa33220
hosts/plover: update domain names for internal services 2023-02-08 19:05:23 +08:00
ac8d875c35
hosts/plover: properly configure WAN interface 2023-02-08 18:30:27 +08:00
76b17d5beb
docs: update networking configuration notes for Plover 2023-02-08 18:03:35 +08:00
93355b3c67
hosts/plover: add comments to various parts 2023-02-08 18:03:20 +08:00
f75c04eaa9
hosts/plover: replace dnsmasq with CoreDNS as DNS server 2023-02-08 18:00:35 +08:00
c508d7a30d
hosts/plover: update dump limit script 2023-02-07 09:47:01 +08:00
2d7abe51d4
hosts/plover: update nginx default server 2023-02-07 09:45:53 +08:00
46dac540c1
hosts/plover: comply services to PostgreSQL secure schema usage 2023-02-07 09:45:37 +08:00
27ee3feee6
hosts/plover: remove extra config for Atuin service 2023-02-06 22:01:01 +08:00
2ae9147a98
hosts/plover: update IP addresses
Decided to go with a new production-like run. Networking really stumps
over for the past days. :(

I'll eventually learn if I go with the simplest examples as I learn
along configuring an Ubuntu-based system in the meantime then translate
it to my NixOS config.
2023-02-06 19:33:24 +08:00
efdbc4c103
hosts: fix Wireguard DNS settings 2023-02-06 19:32:55 +08:00
12abc5146e
hosts/plover: update WAN interface network config 2023-02-06 19:30:51 +08:00
102e216ae5
hosts/plover: enable firewall (again) 2023-02-06 16:09:09 +08:00
bb8714d4cc
docs: update networking setup for Hetzner Cloud deployment 2023-02-06 16:08:52 +08:00
c672357a34
hosts/ni: add cntr for debugging Nix builds 2023-02-06 16:08:19 +08:00