Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | external kmein: fix ed25519 pubkey syntax | lassulus | 2021-12-28 | 1 | -4/+4 |
| | |||||
* | external: add pinpox-ahorn | Pablo Ovelleiro Corral | 2021-12-28 | 1 | -0/+30 |
| | |||||
* | external: add kmein ed25519 keys | Kierán Meinhardt | 2021-12-28 | 1 | -1/+4 |
| | |||||
* | l tinc: define ed25519 keys for all hosts | lassulus | 2021-12-28 | 1 | -267/+321 |
| | |||||
* | Merge remote-tracking branch 'mic92/master' | lassulus | 2021-12-25 | 1 | -1/+0 |
|\ | |||||
| * | matchbox: remove ipv4 | Jörg Thalheim | 2021-12-25 | 1 | -1/+0 |
| | | |||||
* | | exim-smarthost: dkim_strict = true | tv | 2021-12-24 | 1 | -0/+1 |
| | | |||||
* | | exim-smarthost: use LoadCredential | tv | 2021-12-24 | 1 | -27/+7 |
| | | |||||
* | | repo-sync: use LoadCredential | tv | 2021-12-24 | 1 | -16/+10 |
| | | |||||
* | | repo-sync: add group | tv | 2021-12-24 | 1 | -0/+3 |
| | | |||||
* | | krebs.systemd: allow LoadCredential to be a string | tv | 2021-12-24 | 1 | -1/+2 |
|/ | |||||
* | systemd module: use LoadCredentials from config.systemd.services | lassulus | 2021-12-23 | 2 | -48/+28 |
| | |||||
* | Merge remote-tracking branch 'ni/master' | lassulus | 2021-12-23 | 5 | -81/+116 |
|\ | |||||
| * | krebs.systemd: allow reload if credentials change | tv | 2021-12-23 | 1 | -3/+16 |
| | | |||||
| * | krebs.systemd: support credentials of any service | tv | 2021-12-23 | 2 | -21/+27 |
| | | |||||
| * | krebs.tinc: drop environment.systemPackages TODO | tv | 2021-12-23 | 1 | -3/+0 |
| | | | | | | | | | | Nobody bothered about this for more than five years. And even though fixable, chances are quite high that this feature is not needed anymore. | ||||
| * | krebs.tinc: drop api and imp boilerplate | tv | 2021-12-23 | 1 | -10/+4 |
| | | |||||
| * | krebs.tinc: don't bother aliasing packages | tv | 2021-12-23 | 1 | -36/+34 |
| | | |||||
| * | krebs.tinc: use LoadCredential | tv | 2021-12-23 | 1 | -50/+27 |
| | | |||||
| * | krebs.systemd.services: restart by LoadCredential | tv | 2021-12-23 | 2 | -0/+52 |
| | | |||||
| * | Merge remote-tracking branch 'prism/master' | tv | 2021-12-22 | 26 | -905/+396 |
| |\ | |||||
| * | | empty -> emptyDirectory | tv | 2021-12-22 | 2 | -4/+2 |
| | | | |||||
* | | | mic92: update ip for eve | Jörg Thalheim | 2021-12-23 | 1 | -2/+2 |
| |/ |/| | |||||
* | | tinc module: reload instead of restart | lassulus | 2021-12-22 | 1 | -4/+6 |
| | | | | | | | | | | remove enableLegacy option since reloading is dependant on /etc/tinc/<netname> existing | ||||
* | | Merge remote-tracking branch 'ni/master' | lassulus | 2021-12-21 | 1 | -1/+0 |
|\| | |||||
| * | secret service: don't be wanted by multi-user.target | tv | 2021-12-21 | 1 | -1/+0 |
| | | | | | | | | | | | | | | | | | | This fixes an issue causing secret-trigger-*.service to be restarted on every activation because after triggering these services are dead, this in turn causes restarts of secret-*.service. And finally this caused the issue of always restarting tinc services as they are PartOf= a couple of secert-*.service. | ||||
* | | iptables module: add compat layer to networking.firewall | lassulus | 2021-12-21 | 1 | -2/+36 |
| | | |||||
* | | tinc module: use tinc_pre as default package | lassulus | 2021-12-21 | 1 | -1/+1 |
| | | |||||
* | | Merge remote-tracking branch 'ni/master' | lassulus | 2021-12-20 | 1 | -12/+0 |
|\| | |||||
| * | github-known-hosts: update list | tv | 2021-12-18 | 1 | -12/+0 |
| | | |||||
* | | Merge remote-tracking branch 'mic92/master' | lassulus | 2021-12-20 | 1 | -0/+25 |
|\ \ | |||||
| * | | mic92: add mickey.r | Jörg Thalheim | 2021-12-20 | 1 | -0/+25 |
| | | | |||||
* | | | rss-bridge: 2021-04-20 -> 2021-12-02 | lassulus | 2021-12-20 | 1 | -3/+3 |
|/ / | |||||
* | | Merge remote-tracking branch 'ni/master' | lassulus | 2021-12-15 | 1 | -12/+39 |
|\| | |||||
| * | flameshot-once profile: +drawColor | tv | 2021-12-14 | 1 | -0/+6 |
| | | |||||
| * | flameshot-once profile: don't startup on launch | tv | 2021-12-14 | 1 | -0/+1 |
| | | |||||
| * | flameshot-once profile: +showStartupLaunchMessage | tv | 2021-12-14 | 1 | -0/+5 |
| | | |||||
| * | flameshot-once profile: +showSidePanelButton | tv | 2021-12-14 | 1 | -0/+5 |
| | | |||||
| * | flameshot-once profile: +copyAndCloseAfterUpload | tv | 2021-12-14 | 1 | -0/+5 |
| | | |||||
| * | flameshot-once profile: don't check for updates | tv | 2021-12-14 | 1 | -0/+1 |
| | | |||||
| * | flameshot-once profile: use toINI | tv | 2021-12-14 | 1 | -12/+16 |
| | | |||||
* | | nixpkgs-unstable: bc5d683 -> b0bf5f8 | lassulus | 2021-12-14 | 1 | -4/+4 |
| | | |||||
* | | nixpkgs: -> 5730959 | lassulus | 2021-12-14 | 1 | -4/+4 |
| | | |||||
* | | ci: add gcroots for successful builds | lassulus | 2021-12-11 | 1 | -2/+15 |
| | | |||||
* | | wiki: listen gollum on localhost only | lassulus | 2021-12-10 | 1 | -2/+2 |
| | | |||||
* | | wiki.r: listen on localhost, fix http redirect | lassulus | 2021-12-10 | 1 | -6/+8 |
| | | |||||
* | | rotate krebsAcmeCA.crt | lassulus | 2021-12-10 | 1 | -11/+11 |
| | | |||||
* | | pkgs.generate-krebs-intermediate-ca: set vailidy to 1y | lassulus | 2021-12-10 | 1 | -0/+1 |
| | | |||||
* | | brockman: 4.0.1 -> 4.0.2 | lassulus | 2021-12-09 | 1 | -2/+2 |
| | | |||||
* | | ca.r: serve ca.crt via nginx | lassulus | 2021-12-09 | 4 | -18/+20 |
| | |