Commit Graph

10 Commits

Author SHA1 Message Date
zuckerberg cf087b0e39 Add fry
Check Flake / check-flake (push) Successful in 1h22m48s
2025-10-12 13:36:02 -07:00
zuckerberg b58df0632a Add outline service
Check Flake / check-flake (push) Successful in 15m2s
2025-08-10 20:49:50 -07:00
zuckerberg a5d0b3b748 Bring back APU2 router for more experimentation
Check Flake / check-flake (push) Successful in 19m21s
2025-08-05 19:45:50 -07:00
zuckerberg be23526c2c Add KeepassXC keys, remove some very old user keys, and rekey
Check Flake / check-flake (push) Successful in 1m50s
2025-07-16 22:01:33 -07:00
zuckerberg 37bd7254b9 Add Howl
Check Flake / check-flake (push) Successful in 1m54s
2024-05-31 23:29:39 -06:00
zuckerberg a256ab7728 Rekey secrets 2023-08-10 19:44:20 -06:00
zuckerberg 71baa09bd2 Refactor imports and secrets. Add per system properties and role based secret access.
Highlights
- No need to update flake for every machine anymore, just add a properties.nix file.
- Roles are automatically generated from all machine configurations.
- Roles and their secrets automatically are grouped and show up in agenix secrets.nix
- Machines and their service configs may now query the properties of all machines.
- Machine configuration and secrets are now competely isolated into each machine's directory.
- Safety checks to ensure no mixing of luks unlocking secrets and hosts with primary ones.
- SSH pubkeys no longer centrally stored but instead per machine where the private key lies for better cleanup.
2023-04-21 12:58:11 -06:00
zuckerberg 40f0e5d2ac Add Phil 2023-04-19 18:12:42 -06:00
zuckerberg 3412d5caf9 Use hashed passwordfile just to be safe 2023-04-09 23:00:10 -06:00
zuckerberg 1065cc4b59 Enable gitea email notifications 2023-04-09 22:05:23 -06:00