30 Commits

Author SHA1 Message Date
772a484816 use postgres 15
All checks were successful
Check Flake / check-flake (push) Successful in 4m22s
2024-02-01 21:41:18 -07:00
ee6ca75593 upgrade postgres
Some checks failed
Check Flake / check-flake (push) Failing after 9s
2024-01-31 22:18:35 -07:00
b5dd983ba3 Automatically set machine hostname 2023-04-24 20:52:17 -06:00
71baa09bd2 Refactor imports and secrets. Add per system properties and role based secret access.
Highlights
- No need to update flake for every machine anymore, just add a properties.nix file.
- Roles are automatically generated from all machine configurations.
- Roles and their secrets automatically are grouped and show up in agenix secrets.nix
- Machines and their service configs may now query the properties of all machines.
- Machine configuration and secrets are now competely isolated into each machine's directory.
- Safety checks to ensure no mixing of luks unlocking secrets and hosts with primary ones.
- SSH pubkeys no longer centrally stored but instead per machine where the private key lies for better cleanup.
2023-04-21 12:58:11 -06:00
378cf47683 restic backups 2023-04-08 21:25:55 -06:00
f68a4f4431 nixpkgs-fmt everything 2023-04-04 23:30:28 -06:00
c48b1995f8 Remove zerotier 2023-03-18 20:41:09 -06:00
db441fcf98 Add ability to refuse PIA ports 2023-03-12 21:46:36 -06:00
ab2cc0cc0a Cleanup services 2023-03-12 17:51:10 -06:00
9684a975e2 Migrate nextcloud to ponyo 2023-03-12 00:10:14 -07:00
c3c3a9e77f disable searx for now 2023-03-12 00:09:40 -07:00
ecb6d1ef63 Migrate mailserver to ponyo 2023-03-11 23:40:36 -07:00
d8dbb12959 grow disk for ponyo 2023-02-11 19:01:42 -07:00
3e0cde40b8 Cleanup remote LUKS unlock 2023-02-11 18:40:08 -07:00
bc863de165 Hardware config should be in hardware config 2023-02-11 09:48:25 -07:00
11072c374b Owncast 2022-07-24 15:18:29 -04:00
aa7bbc5932 Use Tailscale 2022-06-23 22:30:07 -04:00
a92800cbcc Update to NixOS 22.05 2022-06-19 23:59:52 -04:00
7e615f814d Rewrite VPN container 2022-05-28 18:54:41 -04:00
1856fe00d6 Jellyfin open port 2022-05-20 18:58:13 -04:00
b8c9278f37 Use runyan.org 2022-05-09 14:46:18 -04:00
339eed1f55 Move services to ponyo 2022-05-02 18:01:03 -04:00
910af494b5 Retire neetdev 2022-05-02 02:50:54 -04:00
af9333feff Ponyo as media proxy 2022-04-21 02:24:45 -04:00
5945310dd4 Ponyo keys 2022-04-21 01:27:47 -04:00
ffad65d902 OVH is annoying... 2022-04-21 01:15:51 -04:00
2cd7f12a75 Install as efi removable 2022-04-20 22:51:14 -04:00
fe48d7b009 New ponyo 2022-04-20 16:06:24 -04:00
448c3b280a New ponyo 2022-04-20 16:00:29 -04:00
ef2ad011cc Add ponyo 2022-04-20 00:04:25 -04:00