|
58e2c3ee75
|
refactor: remove nixd support
|
2024-03-24 11:43:12 -05:00 |
|
|
33ecfb7ebb
|
style: format with nixfmt
|
2024-03-24 11:43:12 -05:00 |
|
|
6aed640402
|
fix(hosts/luna): ensure wrapped laurel is available before auditd
|
2024-03-24 11:43:12 -05:00 |
|
|
1fcd271b20
|
refactor(hosts/luna): enable setSocketVariable for docker rootless
|
2024-03-24 11:43:12 -05:00 |
|
|
95d676cb67
|
perf(hosts/luna): do not run gitea nix-runner on startup
|
2024-03-24 11:43:12 -05:00 |
|
|
b586f29394
|
docs: remove README.org
|
2024-03-24 11:43:12 -05:00 |
|
|
1a2949f020
|
feat(hosts/luna): use custom nixos runner image for gitea actions
|
2024-03-24 11:43:12 -05:00 |
|
|
8f98138721
|
refactor(hosts/luna): run docker with rootless
|
2024-03-16 13:54:54 -05:00 |
|
|
c139be670a
|
style: format with nixfmt
|
2024-03-16 03:30:20 -05:00 |
|
|
9a6c348b9b
|
build: update flake.lock
|
2024-03-16 03:26:51 -05:00 |
|
|
bf08aec4b6
|
refactor(hosts/luna): disable mutableUsers
|
2024-03-16 03:12:18 -05:00 |
|
|
4f23edeaef
|
feat(hosts/luna): install laurel as an auditd plugin
|
2024-03-16 03:11:25 -05:00 |
|
|
a6cdb184ab
|
style: format with nixfmt
|
2024-03-14 03:51:03 -05:00 |
|
|
3b890fc629
|
refactor: update flake description
|
2024-03-14 03:34:46 -05:00 |
|
|
9785bb909d
|
refactor(secrets): add additional master key
|
2024-03-14 02:11:13 -05:00 |
|
|
3481f6e93e
|
build: update flake.lock
|
2024-03-14 01:37:41 -05:00 |
|
|
0912b6357e
|
feat(hosts/luna): add basic auditd setup
|
2024-03-14 00:45:34 -05:00 |
|
|
165bb032a9
|
refactor(hosts/luna): improve hardening of openssh
|
2024-03-13 23:57:09 -05:00 |
|
|
7f2966176c
|
style(hosts/luna): remove unused bindings
|
2024-03-13 21:09:29 -05:00 |
|
|
81d932fdc8
|
build: update flake.lock
|
2024-03-12 00:32:21 -05:00 |
|
|
65c2b9872b
|
refactor(hosts/luna): improve disk layout
|
2024-03-08 01:53:24 -06:00 |
|
|
908a9365a7
|
chore(hosts/luna): rekey secrets
|
2024-03-08 01:52:35 -06:00 |
|
|
df08db6950
|
refactor(hosts/luna): remove gitlab
|
2024-03-08 01:50:59 -06:00 |
|
|
0d5ca344fb
|
build: update flake.lock
|
2024-03-07 11:41:42 -06:00 |
|
|
b32f44d55b
|
build: update flake.lock
|
2024-03-01 13:50:02 -06:00 |
|
|
384c5eb3c6
|
refactor(hosts/luna)!: remove gitlab runner
|
2024-03-01 12:25:49 -06:00 |
|
|
af4508a255
|
build: update flake.lock
|
2024-03-01 12:25:41 -06:00 |
|
|
0d0d8f1ccc
|
build: update flake.lock
|
2024-02-29 02:39:29 -06:00 |
|
|
26719b1753
|
build: update flake.lock
|
2024-02-25 04:35:14 -06:00 |
|
|
8cba42412e
|
build: update flake.lock
|
2024-02-19 01:01:49 -06:00 |
|
|
98a20e2829
|
feat: initial implementation of orion host
|
2024-02-17 14:10:39 -06:00 |
|
|
9dd12bee68
|
refactor(hosts/luna): update price's ssh key
|
2024-02-13 03:48:30 -06:00 |
|
|
1a2dacd753
|
feat(hosts/luna): persist bash_history of users root & price
|
2024-02-07 21:30:53 -06:00 |
|
|
e376c058d6
|
refactor(hosts/luna): use gitlab server alias for gitlab, not gitea
|
2024-02-07 21:30:34 -06:00 |
|
|
25837dfd62
|
feat(hosts/luna): add nixos base image for default runner
|
2024-02-01 01:29:20 -06:00 |
|
|
0c7bd4fc22
|
refactor(hosts/luna): use default docker package
|
2024-02-01 00:32:54 -06:00 |
|
|
d89b75d438
|
feat(hosts/luna): implement basic monitoring
TODO: make grafana ingest data from prometheus
|
2024-01-31 23:37:28 -06:00 |
|
|
091ca7b4e0
|
refactor(deploy): use hosts fqdn for luna hostname
|
2024-01-31 20:08:21 -06:00 |
|
|
d96bb38ef6
|
build: update flake inputs
|
2024-01-31 20:08:06 -06:00 |
|
|
bef123dfcf
|
feat(luna): migrate fully to gitea
|
2024-01-31 20:04:15 -06:00 |
|
|
895415c380
|
docs: migrate README.md to README.org
|
2024-01-30 22:50:11 -06:00 |
|
|
1f615e4632
|
feat(luna): massively overhaul config, add gitea
|
2024-01-30 22:07:52 -06:00 |
|
|
41c10d1606
|
fix: make delay-gitlab-start depend on network-online.target
|
2024-01-25 22:05:16 -06:00 |
|
|
8c14c25d4b
|
build: update flake.lock
|
2024-01-25 22:05:16 -06:00 |
|
|
0a7a6154d2
|
fix(luna): correctly trust wheel groups for Nix
|
2023-12-15 22:26:13 -06:00 |
|
|
28bde33112
|
build: update flake.lock
|
2023-12-14 16:33:19 -06:00 |
|
|
d6c7a522ef
|
refactor(luna): delay gitlab-docker start in systemd
|
2023-12-08 11:02:19 -06:00 |
|
|
34c78f67b0
|
chore: update flake.lock
|
2023-12-07 16:37:17 -06:00 |
|
|
a3a933cb1d
|
feat(luna): enable fstrim service
|
2023-12-07 09:17:22 -06:00 |
|
|
7a64899cee
|
refactor(luna): massively overhaul luna to better handle opt-in state
Now uses BTRFS rollbacks instead of tmpfs
|
2023-12-07 09:05:24 -06:00 |
|