Commit graph

119 commits

Author SHA1 Message Date
5f0e99e48d fix sigma router dhcp dns
Instead of explicitly overwriting the DNS in the DHCPServer config we
ignore the upstream DNS from DHCP on the upstream interface so
networkctl/resolvectl understands the right DNS server, and can forward
it to DHCP clients.
2024-06-13 01:02:38 +02:00
6a8a9c57d0 sigma router 2024-06-12 03:12:04 +02:00
60acca7687 make systemd networkd config closer to upstream 2024-06-11 23:39:21 +02:00
843f2358f1 networking.useDHCP is true by default 2024-06-11 01:18:47 +02:00
c549159d10 sorting is hard 2024-06-11 01:13:12 +02:00
cba3b31df3 dont use net.ipv4.ip_forward
`net.ipv4.conf.all.forwarding` is sufficient.
2024-06-11 00:46:56 +02:00
a751a2a517 matrix: give up on security 2024-06-06 23:01:11 +02:00
ee49f70387 alpha: enable proxy arp 2024-06-03 23:51:16 +02:00
c3550746ef nixos v24.05 2024-06-03 23:51:16 +02:00
1289e3dc3b matrix sliding sync 2024-05-31 14:19:29 +02:00
2c97e3150e matrix synapse 2024-05-31 11:42:39 +02:00
03bd00c76a acme domain -> extraDomainNames 2024-05-31 10:33:45 +02:00
Casper V. Kristensen
ee22e5e001 hardware: remove common-gpu-intel -- it is included in common-cpu-intel
See https://github.com/NixOS/nixos-hardware/issues/940.
2024-05-27 17:40:48 +02:00
d1562bef16 archiveteam-warrior 2024-05-18 02:23:00 +02:00
Casper V. Kristensen
e0d64d1e68 packages.nix -> programs.nix 2024-05-15 13:30:27 +02:00
867a64f141 fogejo actions runner: use host networking (for now) 2024-05-14 01:29:35 +02:00
95a9d94855 forgejo actions runner fetch interval 5m -> 1m 2024-05-14 00:52:40 +02:00
d5b9bef71d syncthing 2024-05-10 20:34:38 +02:00
a990c2ea3a secrets.hosts 2024-05-10 18:50:22 +02:00
aec0ac95d5 sigma: routingPolicyRules priorities
Without this, the rule to allow local network hosts direct access to the
sigma-public address might be shadowed by the rule to send traffic from
that address out through wireguard.
2024-05-10 16:44:08 +02:00
a18d647cb3 sigma: allow ad hoc ports in firewall 2024-05-10 16:36:10 +02:00
52690b3169 non-writable secrets 2024-05-09 17:26:55 +02:00
5bfc0b0c7d sigma: samba smb 2024-05-09 17:24:46 +02:00
4229d33150 sigma: allow local network access to public address 2024-05-07 00:40:13 +02:00
f8fc9db0b2 deluge directory permissions 2024-05-06 22:01:57 +02:00
fcd20e733f sigma: memos 2024-05-06 22:01:57 +02:00
107cc4c6a4 forgejo on sigma 2024-05-06 22:01:56 +02:00
a32ec38b73 mumble: remove trailing slash for consistency 2024-04-28 18:04:57 +02:00
76f673be2b mail on sigma 2024-04-26 01:41:50 +02:00
254d165fe4 gitea -> forgejo 2024-04-24 02:11:22 +02:00
931bce3d9f caddy files 2024-04-24 02:06:04 +02:00
7b72527ee6 sigma: torrents 2024-04-24 00:05:25 +02:00
be3faca11e knot-resolver: how to clear cache 2024-04-23 01:11:53 +02:00
aea0104f41 deluge 2024-04-22 23:59:18 +02:00
9ad4b4c27e borg: sigma 2024-04-21 17:12:52 +02:00
33844633fd some qbittorrent 2024-04-17 23:20:12 +02:00
588db7e044 increase root tmpfs
Needed to avoid out-of-space errors for builds using a lot of /tmp
space.
2024-04-17 22:11:53 +02:00
8a9b2ced8e delta: fix ipv6
why doesn't this fail nixos build??
2024-04-16 02:45:12 +02:00
a3c4dba513 knot-resolver: chill cache size
Allows rebuilding the system again (lol).
2024-04-16 02:32:51 +02:00
03f6b81b1b caddy: don't take exclusive lock on acme cert 2024-04-16 02:32:51 +02:00
ad7db51d8b caddy: sigma 2024-04-16 02:08:18 +02:00
6e8309029b caddy 2024-04-16 01:56:12 +02:00
b1af7487d5 alpha: mumble murmur
All checks were successful
Update flake.lock / update (push) Successful in 1m5s
2024-04-10 02:08:13 +02:00
b018abc3d8 unbound -> knot-resolver 2024-04-10 00:38:22 +02:00
f8b1cd1a2b delta: switch over ip 2024-04-08 23:09:35 +02:00
b17ae114b1 more unbound 2024-04-08 22:45:27 +02:00
d4fc53a82b delta: unbound
All checks were successful
Update flake.lock / update (push) Successful in 1m4s
2024-04-07 02:59:55 +02:00
cc2c5d86df delta: acme cert 2024-04-06 01:21:46 +02:00
0c97189dd5 delta 2024-04-05 23:45:55 +02:00
3ac3ee16b7 fuck discord, all my homies hate discord 2024-04-05 19:19:07 +02:00