Commit graph

137 commits

Author SHA1 Message Date
ff22ae62b9 caddy: sortseer.dk 2024-10-13 16:23:07 +02:00
7c362f5a42 knot-dns: update DNSSEC procedure 2024-10-13 03:02:31 +02:00
70a3d521c2 alpha: allow 25/tcp 2024-10-13 03:02:31 +02:00
62d7c55237 knot-dns: sortseer.dk 2024-10-12 02:47:20 +02:00
f773b81dbd tor: use uncensored dns.caspervk.net 2024-10-08 00:44:20 +02:00
a323eb77b9 knot-resolver: secondary address for uncensored DNS 2024-10-08 00:44:20 +02:00
26a8767b7c knot-resolver: use upstream lua config instead of nixos abstraction 2024-10-06 23:34:58 +02:00
ec76c147b6 knot-resolver: treesitter highlighting 2024-09-29 17:02:00 +02:00
c742956256 autosurfer: ensure we don't mine crypto 2024-09-28 02:48:39 +02:00
6ecb02fb45 wireguard: explicit ipv4 2024-09-07 18:49:55 +02:00
5f3c944bba git: always use main email 2024-09-02 14:45:56 +02:00
da7aff32ae tmpfs size in percent 2024-08-31 03:29:21 +02:00
b286c6796a autosurfer 🏄 2024-08-05 21:29:33 +02:00
4f81e02bbf tor: new ipv6 2024-07-06 20:56:46 +02:00
aef1f57a07 hardware.amdgpu.amdvlk
See https://github.com/NixOS/nixos-hardware/pull/977.
2024-06-30 19:28:31 +02:00
Pablo Ovelleiro Corral
2103ab9f6e
Update NixOS wiki link 2024-06-27 20:37:34 +02:00
4536710b29 rename network interfaces 2024-06-15 01:49:08 +02:00
d44ce598ed fix postfix submission from lan hosts 2024-06-15 00:48:30 +02:00
5f0e99e48d fix sigma router dhcp dns
Instead of explicitly overwriting the DNS in the DHCPServer config we
ignore the upstream DNS from DHCP on the upstream interface so
networkctl/resolvectl understands the right DNS server, and can forward
it to DHCP clients.
2024-06-13 01:02:38 +02:00
6a8a9c57d0 sigma router 2024-06-12 03:12:04 +02:00
60acca7687 make systemd networkd config closer to upstream 2024-06-11 23:39:21 +02:00
843f2358f1 networking.useDHCP is true by default 2024-06-11 01:18:47 +02:00
c549159d10 sorting is hard 2024-06-11 01:13:12 +02:00
cba3b31df3 dont use net.ipv4.ip_forward
`net.ipv4.conf.all.forwarding` is sufficient.
2024-06-11 00:46:56 +02:00
a751a2a517 matrix: give up on security 2024-06-06 23:01:11 +02:00
ee49f70387 alpha: enable proxy arp 2024-06-03 23:51:16 +02:00
c3550746ef nixos v24.05 2024-06-03 23:51:16 +02:00
1289e3dc3b matrix sliding sync 2024-05-31 14:19:29 +02:00
2c97e3150e matrix synapse 2024-05-31 11:42:39 +02:00
03bd00c76a acme domain -> extraDomainNames 2024-05-31 10:33:45 +02:00
Casper V. Kristensen
ee22e5e001 hardware: remove common-gpu-intel -- it is included in common-cpu-intel
See https://github.com/NixOS/nixos-hardware/issues/940.
2024-05-27 17:40:48 +02:00
d1562bef16 archiveteam-warrior 2024-05-18 02:23:00 +02:00
Casper V. Kristensen
e0d64d1e68 packages.nix -> programs.nix 2024-05-15 13:30:27 +02:00
867a64f141 fogejo actions runner: use host networking (for now) 2024-05-14 01:29:35 +02:00
95a9d94855 forgejo actions runner fetch interval 5m -> 1m 2024-05-14 00:52:40 +02:00
d5b9bef71d syncthing 2024-05-10 20:34:38 +02:00
a990c2ea3a secrets.hosts 2024-05-10 18:50:22 +02:00
aec0ac95d5 sigma: routingPolicyRules priorities
Without this, the rule to allow local network hosts direct access to the
sigma-public address might be shadowed by the rule to send traffic from
that address out through wireguard.
2024-05-10 16:44:08 +02:00
a18d647cb3 sigma: allow ad hoc ports in firewall 2024-05-10 16:36:10 +02:00
52690b3169 non-writable secrets 2024-05-09 17:26:55 +02:00
5bfc0b0c7d sigma: samba smb 2024-05-09 17:24:46 +02:00
4229d33150 sigma: allow local network access to public address 2024-05-07 00:40:13 +02:00
f8fc9db0b2 deluge directory permissions 2024-05-06 22:01:57 +02:00
fcd20e733f sigma: memos 2024-05-06 22:01:57 +02:00
107cc4c6a4 forgejo on sigma 2024-05-06 22:01:56 +02:00
a32ec38b73 mumble: remove trailing slash for consistency 2024-04-28 18:04:57 +02:00
76f673be2b mail on sigma 2024-04-26 01:41:50 +02:00
254d165fe4 gitea -> forgejo 2024-04-24 02:11:22 +02:00
931bce3d9f caddy files 2024-04-24 02:06:04 +02:00
7b72527ee6 sigma: torrents 2024-04-24 00:05:25 +02:00