Commit Graph

172 Commits

Author SHA1 Message Date
5bc309c2c8 add override libgit2 deactivate tests () 2024-02-15 22:57:23 +01:00
cbd32b7224 add nextcloud ldap user () 2024-02-15 20:36:56 +01:00
dae81dd296 Feature/server owners ()
* add server owner feature

* add kill alias for dennis
2024-02-13 00:04:32 +01:00
895c132a4c python fix () 2024-02-12 13:25:57 +01:00
12830a9d5c Fix hydra directory ()
Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-02-10 16:39:33 -05:00
9409a916af Fixup/rpi5 pcsc ()
* pcsc patch

* pcsc fix
2024-02-09 01:40:27 +01:00
cfea856b7f pcsc patch () 2024-02-09 01:28:03 +01:00
307254ca34 fix () 2024-02-08 23:50:04 +01:00
7a64f8d566 fix mailserver config ()
* fix mailserver config

* rpi emulate systems
2024-02-08 23:42:32 +01:00
c13cec9d0a temp fix for outline () 2024-02-07 00:51:31 +01:00
7e1da03f8c changed config () 2024-02-07 00:20:06 +01:00
5d8ad216a4 fix boot partition () 2024-02-06 18:06:56 -05:00
52c421a45f fix autopull ()
* fix autopull

* add deadnix

* fix git
2024-02-06 23:58:33 +01:00
3b70b4ea60 remove git-lfs from palentine-hill ()
* remove git-lfs from palentine-hill

* fix secrets
2024-02-06 22:46:13 +01:00
d020ef2189 Created fabius user (raspberry pi 5). Changed flake.nix. ()
* Created fabius user (raspberry pi 5). Changed flake.nix.

* add custom iso type

* change to crossPkgs

* add crossCompile aarch64
2024-02-06 20:35:02 +01:00
4c1e86907a dennis the formatter ()
* dennis the formatter

* changed comment

* fixup
2024-02-05 22:45:43 +01:00
47a65a151c fix photon ldap config ()
* fix photon ldap config

* secrets update
2024-02-05 18:22:52 +01:00
59a4293b28 Fix mailserver3 ()
* updated passwd

* Disable mutable-users

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* fix password config

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* change secrets

* add workaround

---------

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
Co-authored-by: Richie Cahill <richie@tmmworkshop.com>
Co-authored-by: ahuston-0 <aliceghuston@gmail.com>
2024-02-03 23:52:43 +01:00
4e6bdd2ff5 Disable mutable-users, fix passwords globally ()
* updated passwd

* Disable mutable-users

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* fix password config

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* change secrets

---------

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
Co-authored-by: Richie Cahill <richie@tmmworkshop.com>
Co-authored-by: Dennis Wuitz <dennish@wuitz.de>
2024-02-03 23:24:45 +01:00
66fb506e26 remove sieve script# () 2024-02-03 16:00:35 -05:00
f746da7c4c fix dovecot2 sieve scripts ()
* fix dovecot2 sieve scripts

* add pathfix
2024-02-03 20:10:24 +01:00
726c3b208e add dennis local systems () 2024-02-02 22:54:36 +01:00
6afd73c990 change flake input () 2024-02-02 01:13:24 -05:00
bca76e5325 fix function () 2024-02-02 06:59:47 +01:00
320e2225ce change allowed-uris () 2024-02-02 00:46:47 -05:00
9f863eac6e add allowed-uris () 2024-02-02 00:31:40 -05:00
2b917b8332 flip order of caches :) ()
Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-02-02 00:17:41 -05:00
c27b273e17 fix hydra build packages ()
* fix hydra build packages

* change build input
2024-02-02 06:12:49 +01:00
b3888adddb remove unlocked flakes () 2024-02-02 05:20:43 +01:00
4c7ba8e68e changes to pg () 2024-02-01 22:25:10 -05:00
179c78ccc7 add public key () 2024-02-01 23:05:46 +01:00
241c66f5ec enable external SMTP for hydra ()
* external SMTP for hydra

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* nix-serve sops

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* add binary cache

* add hydra jobs

* cleanup ()

* finish up cleanup branch merge

* switched back to nixpkgs-fmt

* add nixpkgs-fmt to hydrajobs.build

---------

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
Co-authored-by: Dennis Wuitz <dennish@wuitz.de>
Co-authored-by: Dennis <52411861+DerDennisOP@users.noreply.github.com>
2024-02-01 22:50:14 +01:00
10ed0c633b add hydra () 2024-02-01 05:24:04 +01:00
6d54aec60c add dynamic system generation () 2024-01-30 12:37:13 -05:00
664fa4709b fix gitea max_upload_size () 2024-01-28 16:48:09 +01:00
32de223070 Add ARC/FFMPEG requirements ()
Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-01-27 12:00:32 -05:00
66be96ebff add desktopians () 2024-01-27 16:05:35 +01:00
e4f39f57ee remove wordpress () 2024-01-26 23:13:06 +01:00
2305974694 removing unnecessary code ()
* removing unnecessary code

* replaced some of the code

* removed endlessh-go from jeeves-jr
2024-01-16 18:49:03 -05:00
5d2f5934f8 Add pre-commit-update hook, make nixpkgs-fmt check only ()
* Add pre-commit-update hook, make nixpkgs-fmt check only

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

* Pin pre-commit-update at commit ID of latest version

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>

---------

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-01-15 13:18:56 -05:00
5af2c60bdb Securing jeevesjr ()
* secured openssh

* removing MaxSessions

* setup endlessh

* set openssh logging to VERBOSE

* fix

* got MaxSessions working

* set ClientAliveCountMax

* setup usbguard

* updated central openssh settings

* added sysstat service

* add auditd

* testing lynis setting

* fixed typo

* setup login.defs

* removed login.defs

* updated ChallengeResponseAuthentication to no

* made LogLevel a Default

Co-authored-by: Dennis <52411861+DerDennisOP@users.noreply.github.com>

---------

Co-authored-by: Dennis <52411861+DerDennisOP@users.noreply.github.com>
2024-01-13 22:20:01 -05:00
fb4039022d Mail secrets update ()
* secrets update

* mail server update
2024-01-13 18:19:32 +01:00
4a228aca5b Firewall change ()
* secrets update

* change firewall
2024-01-13 16:49:09 +01:00
9ba3d31e09 secrets update () 2024-01-13 16:17:13 +01:00
26112d1f22 remove gitea http () 2024-01-10 22:52:39 +01:00
fb3128b5ae Disable podman, fix topgrade config ()
Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-01-09 11:11:00 -05:00
307e6a48ab add networking pingLimit () 2024-01-09 17:09:29 +01:00
d7f026b05b add endlessh-go autometic setup () 2024-01-09 16:21:22 +01:00
a05be0f2d3 Fix topgrade config :( ()
There should be a top-level MISC for topgrade.toml.

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-01-08 22:54:43 -05:00
962baa4e64 Disable system,nix updates from Topgrade ()
Topgrade is upgrading from local instead of remote, and throws an error
when it tries to upgrade nix. Disabling these checks.

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
2024-01-08 19:11:33 -05:00