Commit Graph

92 Commits

Author SHA1 Message Date
53790d15da comments and spaceS 2023-03-21 13:46:26 +02:00
42d615cdb3 enable matrix-synapse 2023-03-21 13:43:34 +02:00
c09ce8f190 /run/matrix-synapse is a tmpfile 2023-03-20 17:08:43 +02:00
f2f493be78 disable matrix-synapse for now 2023-03-19 23:09:11 +02:00
8ecf2415a9 add parted 2023-03-19 22:28:53 +02:00
9c474327ff a few more secrets 2023-03-19 21:50:34 +02:00
315f7e5f75 Add password for secrets/hel1-a/synapse/macaroon_secret_key using nvim. 2023-03-19 21:47:53 +02:00
4b1ebca4f1 Add password for secrets/hel1-a/synapse/registration_shared_secret using nvim. 2023-03-19 21:42:43 +02:00
3e5a703118 use the signing key 2023-03-19 21:41:07 +02:00
71e653c3a7 Add password for secrets/hel1-a/synapse/jakstys.lt.signing.key using nvim. 2023-03-19 21:36:17 +02:00
92c31f1f25 wip synapse 2023-03-19 21:13:48 +02:00
028fec142b minor coturn and system updates 2023-03-19 20:47:19 +02:00
04eb40fad6 vim-rs and synapse 2023-03-08 16:13:26 +02:00
cb30128c8c coturn: module cosmetics 2023-03-04 06:18:44 +02:00
978844a9de send email on zfs scrub failure 2023-03-01 15:20:28 +02:00
8d2142b259 make upgrade and reboot window more liberal 2023-03-01 15:12:19 +02:00
77941cb0dc coturn denylist ips 2023-03-01 15:05:58 +02:00
0a021dc80f coturn watches for changed certs 2023-03-01 14:55:57 +02:00
f6b37127f6 reduce logging; add sshguard 2023-03-01 14:39:48 +02:00
17bb90dca0 stop logging refused connections 2023-03-01 14:17:27 +02:00
5f1f3e1bfc add coturn to firewall 2023-03-01 13:06:53 +02:00
f537b43a0d coturn: add tls key and cert 2023-03-01 13:00:27 +02:00
2e970a22ce patched systemd
that passes secrets in `ExecStartPre`.
2023-02-28 15:30:17 +02:00
e4c39bf857 Add password for secrets/hel1-a/turn/static-auth-secret using nvim. 2023-02-28 14:25:32 +02:00
f2f51f2a87 hardcode gitea and motiejus uid 2023-02-26 07:44:06 +02:00
48309ce908 auto-upgrade at 1am UTC 2023-02-25 17:29:53 +02:00
ea7f4a2577 cosmetics 2023-02-25 17:23:21 +02:00
6e9cdf04ba fix unit-status after actual test 2023-02-25 17:20:01 +02:00
065172836c add sr.ht pubkey 2023-02-25 15:55:08 +02:00
06866ad6fb change backup path 2023-02-25 15:52:23 +02:00
c7bd826234 unit-status-mail for backups 2023-02-25 15:49:39 +02:00
4d21eda97f wip gitea mailer 2023-02-23 15:43:16 +02:00
0cc0fd09b6 fix pubkey of dl.jakstys.lt 2023-02-21 15:21:37 +02:00
ef2b04e583 gc no older than 14d instead of 30d 2023-02-19 22:21:14 +02:00
f574122be0 fix dl.jakstys.lt pubkey 2023-02-19 22:08:36 +02:00
Motiejus Jakštys
8a8ff9513b nix.gc 2023-02-19 19:23:55 +02:00
997463191b Remove secrets/hel1-a/restic from store. 2023-02-06 06:26:22 +02:00
463b625e01 postfix
compiles and sends, does not receive (yet)
2023-02-06 06:25:43 +02:00
9c997adb45 Add given password for secrets/hel1-a/postfix/sasl_passwd to store. 2023-02-06 06:07:08 +02:00
cf25ada8d2 fix caddy backup paths 2023-01-31 08:32:51 -08:00
c99480b357 borg: prune + more frequent copies 2023-01-26 10:57:45 -08:00
4fb7ed8d2a fix up borg backups 2023-01-26 10:26:58 -08:00
26ee5592ac make-snapshot-dirs 2023-01-26 13:08:41 -05:00
9411df0162 properly add mosh 2023-01-26 12:11:13 -05:00
7ca87d396e wip moving to borgbackup 2023-01-26 12:05:59 -05:00
3cb53fb324 Add generated password for secrets/hel1-a/borgbackup/password. 2023-01-23 13:26:58 +02:00
f4d306cd7d a bit more robust backups; not done yet 2023-01-22 16:31:18 +02:00
b6e854b1c3 auto reboots come after backups 2023-01-17 16:00:41 +02:00
dd2349f604 back up caddy logs too 2023-01-17 15:43:21 +02:00
e1c6dc068f caddy log rotation 2023-01-17 15:12:08 +02:00