Commit Graph

84 Commits

Author SHA1 Message Date
58e2c3ee75
refactor: remove nixd support 2024-03-24 11:43:12 -05:00
33ecfb7ebb
style: format with nixfmt 2024-03-24 11:43:12 -05:00
6aed640402
fix(hosts/luna): ensure wrapped laurel is available before auditd 2024-03-24 11:43:12 -05:00
1fcd271b20
refactor(hosts/luna): enable setSocketVariable for docker rootless 2024-03-24 11:43:12 -05:00
95d676cb67
perf(hosts/luna): do not run gitea nix-runner on startup 2024-03-24 11:43:12 -05:00
b586f29394
docs: remove README.org 2024-03-24 11:43:12 -05:00
1a2949f020
feat(hosts/luna): use custom nixos runner image for gitea actions 2024-03-24 11:43:12 -05:00
8f98138721
refactor(hosts/luna): run docker with rootless 2024-03-16 13:54:54 -05:00
c139be670a
style: format with nixfmt 2024-03-16 03:30:20 -05:00
9a6c348b9b
build: update flake.lock 2024-03-16 03:26:51 -05:00
bf08aec4b6
refactor(hosts/luna): disable mutableUsers 2024-03-16 03:12:18 -05:00
4f23edeaef
feat(hosts/luna): install laurel as an auditd plugin 2024-03-16 03:11:25 -05:00
a6cdb184ab
style: format with nixfmt 2024-03-14 03:51:03 -05:00
3b890fc629
refactor: update flake description 2024-03-14 03:34:46 -05:00
9785bb909d
refactor(secrets): add additional master key 2024-03-14 02:11:13 -05:00
3481f6e93e
build: update flake.lock 2024-03-14 01:37:41 -05:00
0912b6357e
feat(hosts/luna): add basic auditd setup 2024-03-14 00:45:34 -05:00
165bb032a9
refactor(hosts/luna): improve hardening of openssh 2024-03-13 23:57:09 -05:00
7f2966176c
style(hosts/luna): remove unused bindings 2024-03-13 21:09:29 -05:00
81d932fdc8
build: update flake.lock 2024-03-12 00:32:21 -05:00
65c2b9872b
refactor(hosts/luna): improve disk layout 2024-03-08 01:53:24 -06:00
908a9365a7
chore(hosts/luna): rekey secrets 2024-03-08 01:52:35 -06:00
df08db6950
refactor(hosts/luna): remove gitlab 2024-03-08 01:50:59 -06:00
0d5ca344fb
build: update flake.lock 2024-03-07 11:41:42 -06:00
b32f44d55b
build: update flake.lock 2024-03-01 13:50:02 -06:00
384c5eb3c6
refactor(hosts/luna)!: remove gitlab runner 2024-03-01 12:25:49 -06:00
af4508a255
build: update flake.lock 2024-03-01 12:25:41 -06:00
0d0d8f1ccc
build: update flake.lock 2024-02-29 02:39:29 -06:00
26719b1753
build: update flake.lock 2024-02-25 04:35:14 -06:00
8cba42412e
build: update flake.lock 2024-02-19 01:01:49 -06:00
98a20e2829
feat: initial implementation of orion host 2024-02-17 14:10:39 -06:00
9dd12bee68
refactor(hosts/luna): update price's ssh key 2024-02-13 03:48:30 -06:00
1a2dacd753
feat(hosts/luna): persist bash_history of users root & price 2024-02-07 21:30:53 -06:00
e376c058d6
refactor(hosts/luna): use gitlab server alias for gitlab, not gitea 2024-02-07 21:30:34 -06:00
25837dfd62
feat(hosts/luna): add nixos base image for default runner 2024-02-01 01:29:20 -06:00
0c7bd4fc22
refactor(hosts/luna): use default docker package 2024-02-01 00:32:54 -06:00
d89b75d438
feat(hosts/luna): implement basic monitoring
TODO: make grafana ingest data from prometheus
2024-01-31 23:37:28 -06:00
091ca7b4e0
refactor(deploy): use hosts fqdn for luna hostname 2024-01-31 20:08:21 -06:00
d96bb38ef6
build: update flake inputs 2024-01-31 20:08:06 -06:00
bef123dfcf
feat(luna): migrate fully to gitea 2024-01-31 20:04:15 -06:00
895415c380
docs: migrate README.md to README.org 2024-01-30 22:50:11 -06:00
1f615e4632
feat(luna): massively overhaul config, add gitea 2024-01-30 22:07:52 -06:00
41c10d1606
fix: make delay-gitlab-start depend on network-online.target 2024-01-25 22:05:16 -06:00
8c14c25d4b
build: update flake.lock 2024-01-25 22:05:16 -06:00
0a7a6154d2
fix(luna): correctly trust wheel groups for Nix 2023-12-15 22:26:13 -06:00
28bde33112
build: update flake.lock 2023-12-14 16:33:19 -06:00
d6c7a522ef
refactor(luna): delay gitlab-docker start in systemd 2023-12-08 11:02:19 -06:00
34c78f67b0
chore: update flake.lock 2023-12-07 16:37:17 -06:00
a3a933cb1d
feat(luna): enable fstrim service 2023-12-07 09:17:22 -06:00
7a64899cee
refactor(luna): massively overhaul luna to better handle opt-in state
Now uses BTRFS rollbacks instead of tmpfs
2023-12-07 09:05:24 -06:00