|
e8e40f851d
|
cluster/services/locksmith: only run secret generation command once
|
2024-08-13 23:44:25 +02:00 |
|
|
dbfb4d1078
|
cluster/services/locksmith: support skipping secret updates
|
2024-08-13 23:44:25 +02:00 |
|
|
196c62b5e2
|
cluster/services/incandescence: init
|
2024-08-13 23:44:25 +02:00 |
|
|
f097de64c7
|
cluster/services/consul: test in simulacrum
|
2024-08-13 22:15:20 +02:00 |
|
|
a10f8c18ee
|
cluster/services/wireguard: test in simulacrum
|
2024-08-13 20:43:39 +02:00 |
|
|
e2ebdd097e
|
cluster/simulacrum: recursive service deps
|
2024-08-13 20:43:39 +02:00 |
|
|
f37fed0ebb
|
cluster/simulacrum: implement nowhere, fix networking
|
2024-08-13 20:43:39 +02:00 |
|
|
4b76b6ed47
|
cluster/simulacrum: expose checks
|
2024-08-13 18:52:59 +02:00 |
|
|
62fbeb02c0
|
cluster/lib: implement config.lib.forService for better option filtering
|
2024-08-13 18:52:59 +02:00 |
|
|
f140de7a1a
|
cluster/simulacrum: set testConfig
|
2024-08-13 18:52:59 +02:00 |
|
|
fa0d6f046b
|
cluster/lib: introduce testConfig
|
2024-08-13 18:52:59 +02:00 |
|
|
40fd5c4be9
|
cluster/services/wireguard: make simulacrum compatible
|
2024-08-13 18:52:59 +02:00 |
|
|
da9b933bb8
|
cluster/simulacrum: init
|
2024-08-13 18:52:59 +02:00 |
|
|
b28898c3ae
|
cluster/lib: implement simulacrum options
|
2024-08-13 18:52:59 +02:00 |
|
|
532a569c66
|
cluster/lib: implement injectNixosConfigForServices to select individual services
|
2024-08-13 18:52:59 +02:00 |
|
|
df14a9a513
|
cluster/services/nginx: move acme config
|
2024-08-12 02:53:15 +02:00 |
|
|
d59abfb678
|
cluster/services/acme-client: move acme config, wait for authoritative DNS to work
|
2024-08-12 02:53:15 +02:00 |
|
|
a285c57d5b
|
cluster/services/ways: don't render empty upstream blocks
|
2024-08-12 02:53:15 +02:00 |
|
|
7ca4cead09
|
cluster/services/monitoring: make loki HA
|
2024-08-03 00:56:13 +02:00 |
|
|
201f07efc3
|
cluster/services/monitoring: use lockmith for loki
|
2024-08-03 00:37:06 +02:00 |
|
|
9f158f15a4
|
cluster/services/monitoring: run loki over ways
|
2024-08-03 00:12:15 +02:00 |
|
|
549cbdb6c8
|
cluster/services/ways: expose url
|
2024-08-03 00:11:46 +02:00 |
|
|
e81aad5619
|
cluster/services/ways: support internal services properly
|
2024-08-02 23:56:16 +02:00 |
|
|
5d26d45916
|
cluster/services/attic: make HA
|
2024-08-02 22:46:45 +02:00 |
|
|
1fe6324c37
|
cluster/services/patroni: run haproxy on grail
|
2024-08-02 22:46:27 +02:00 |
|
|
341be59cec
|
cluster/services/nginx: use proper resolvers
|
2024-08-02 22:46:05 +02:00 |
|
|
064f306f10
|
cluster/services/irc: pkgs.kanidm -> config.services.kanidm.package
|
2024-08-02 12:51:05 +02:00 |
|
|
5b429dd356
|
cluster/services/idm: pkgs.kanidm -> config.services.kanidm.package
|
2024-08-02 12:50:42 +02:00 |
|
|
29696add2f
|
cluster/services/hercules-ci-multi-agent: limit cores for Nix
|
2024-08-01 22:13:10 +02:00 |
|
|
c0038700e0
|
cluster/services/hercules-ci-multi-agent: limit concurrentTasks
|
2024-08-01 22:12:59 +02:00 |
|
|
36a5dd6927
|
cluster/services/c-f32aebf5: drop
|
2024-07-25 12:51:55 +02:00 |
|
|
af61824dc9
|
cluster/services/sso: integrate VEGAS/oauth2-proxy
|
2024-07-23 20:15:46 +02:00 |
|
|
9b59388c3c
|
cluster/services/wireguard: move storm from VEGAS/wireguard-server
|
2024-07-22 00:25:18 +02:00 |
|
|
3289e05101
|
cluster/services/mail: move from VEGAS/mail
|
2024-07-22 00:25:18 +02:00 |
|
|
6ccc263100
|
cluster/services/sso: move from VEGAS/sso
|
2024-07-22 00:25:18 +02:00 |
|
|
e85c6bb2c8
|
cluster/services/bitwarden: move from VEGAS/bitwarden
|
2024-07-22 00:24:46 +02:00 |
|
|
78f97dfcad
|
cluster/services/gitlab: move from VEGAS/gitlab
|
2024-07-22 00:24:42 +02:00 |
|
|
63002031d6
|
cluster/services/soda: move from VEGAS
|
2024-07-20 22:23:31 +02:00 |
|
|
c7f89489da
|
cluster/services/reflex: move from VEGAS/reflex
|
2024-07-20 22:22:25 +02:00 |
|
|
9ed7d26952
|
cluster/services/fbi: move from VEGAS/fbi
|
2024-07-20 22:22:14 +02:00 |
|
|
0e8abeb78b
|
cluster/services/consul: only require consul if enabled
|
2024-07-17 23:38:00 +02:00 |
|
|
03bfb51682
|
cluster/services/consul: use separate node group for consul-ready
|
2024-07-17 23:22:02 +02:00 |
|
|
c922615666
|
cluster/services/storage: better support for internal storage
|
2024-07-17 23:00:33 +02:00 |
|
|
33264bf43b
|
cluster/lib: switch to lazyAttrsOf
|
2024-07-17 23:00:25 +02:00 |
|
|
fa57c810c0
|
cluster: use consul-ready when waiting for consul
|
2024-07-17 22:41:06 +02:00 |
|
|
d2ab37f3b1
|
cluster/services/consul: implement consul-ready
|
2024-07-17 22:40:58 +02:00 |
|
|
5616f4887a
|
cluster/services/*: use consulAgent link
|
2024-07-17 22:06:41 +02:00 |
|
|
52008b6f0a
|
cluster/services/consul: set agent HTTP API port
|
2024-07-17 22:06:36 +02:00 |
|
|
0888ecce1a
|
cluster/services/forge: use separate domain for ssh access
|
2024-07-17 00:48:01 +02:00 |
|
|
d77b511442
|
cluster/services/forge: disable direct serve from s3
|
2024-07-17 00:41:32 +02:00 |
|