Commit Graph

376 Commits

Author SHA1 Message Date
772df6c630 common: also clear motd on Proxmox hosts 2019-09-12 13:22:19 +02:00
bd06590301 nginx: enable TLSv1.3 (relevant VMs have buster) 2019-09-12 13:09:52 +02:00
fb81c5ce02 common: remove snmp, add acpid (on VMs) 2019-09-12 12:00:59 +02:00
ef7177f0ec common: set vm.swappiness on Proxmox hosts 2019-09-10 19:14:55 +02:00
3d1a681850 librenms: debian buster 2019-09-09 19:33:47 +02:00
a6a973c034 prosody: make it work with buster 2019-09-09 19:09:44 +02:00
8a2ade46cb Remove host apfelkuchen 2019-09-07 20:45:11 +02:00
c763264ccd hackmd: update and fix uploads folder link creation 2019-09-06 16:17:34 +02:00
4c7d472f2f remove racktables and partially remove snmpd 2019-09-03 13:13:03 +02:00
Kishi85
6945b4918c mail: Enable subject privacy for the history module 2019-09-03 11:50:08 +02:00
6e593d0feb gogs: switch to debian buster 2019-08-30 11:20:40 +02:00
Kishi85
6ce23ca253 mail: disable rspamd actions for mail from localhost 2019-07-24 10:11:38 +02:00
Kishi85
83afecfd72 mail: use srs only for forwards and MDA, not for incoming mails 2019-07-24 09:38:01 +02:00
Kishi85
5faf9de93e mail: fix redis config 2019-07-23 17:23:14 +02:00
Kishi85
5df4457b0e mail: add postsrsd to stop breaking forwards for SPF domains 2019-07-23 16:06:16 +02:00
43f1633a22 cleanup roles 2019-07-23 12:00:59 +02:00
Kishi85
2153438ec5 mail: allow any sender from our internal networks 2019-07-23 11:29:34 +02:00
85c2a90431 bk-dss: enable admin menu for zaesa 2019-07-22 13:18:46 +02:00
Kishi85
884bbbfbae mail: use rspamd with automatic learning using sieve + managesieve 2019-07-16 09:37:50 +02:00
4b1952a6e0 uau: minimize diff to default config 2019-07-10 18:43:08 +02:00
5ead59ce14 acertmgr: update to version 0.9.8 2019-07-09 12:39:31 +02:00
f1dec82592 prometheus: only support Debian buster 2019-07-09 12:38:32 +02:00
909e767b36 dhcp/dns: add new hosts and IP ranges 2019-06-27 10:09:39 +02:00
2a417cdee2 acertmgr: update to version 0.9.7 2019-06-18 15:13:05 +02:00
f8daa11de1 nextcloud: first step towards handling php from ansible again 2019-05-20 21:35:58 +02:00
477441585d owncloud: rename to nextcloud 2019-05-20 20:55:50 +02:00
7f689e1a82 owncloud: rename to nextcloud 2019-05-20 20:55:05 +02:00
06dcb1b082 mail: fix SSL CA settings 2019-05-20 20:09:07 +02:00
4ee7c6ad16 acertmgr: migrate from legacy paths 2019-05-20 19:49:08 +02:00
17f25f2c32 acertmgr: migrate from legacy paths 2019-05-20 19:38:32 +02:00
b6f0b9417d bk-dss: update to version 0.8.3 2019-05-17 08:29:40 +02:00
8a33cdc4ad slapd: fix ACLs 2019-05-17 08:25:14 +02:00
b4f95eefc8 bk-dss: fix typo 2019-05-16 15:52:49 +02:00
e99c8d34dd pvessl: nginx based reverse proxy w/ certs for PVE 2019-05-13 21:46:37 +02:00
c4bcc13ccd slapd: simplify ACL 2019-05-13 21:45:37 +02:00
45917de310 bk-dss: add new admin 2019-05-13 21:44:27 +02:00
Kishi85
cc7d959435 mail: dovecot verify password by binding to ldap 2019-05-13 21:30:13 +02:00
2abc3819ac acme-dnskey-generate: handle empty san list 2019-05-13 21:00:50 +02:00
e5ca7f59db replace hard coded values by variables 2019-05-13 20:22:02 +02:00
00826a8d14 slapd: implement proper ACL 2019-05-13 20:03:20 +02:00
6fec0e62bc mail: fix aliases 2019-04-23 08:07:35 +02:00
9f3923f494 acertmgr: update to 0.9.5 2019-04-01 18:51:01 +02:00
ad2e2dca6b dns-intern: move cannelloni to user vlan, add tmp 2019-04-01 18:35:27 +02:00
5c07927012 Remove BKCA for good 2019-03-25 21:08:23 +01:00
50cab2429d raduis: use LE certificate via dns 2019-03-25 21:08:19 +01:00
c6c91d7256 Migrate LDAP from BKCA to Let's Encrypt 2019-03-25 19:58:06 +01:00
c0070e042b acertmgr: update to 0.9.4 2019-03-25 19:25:56 +01:00
606851de76 slapd: use LE certificate via dns 2019-03-25 19:05:31 +01:00
3471c0ca34 bk-dss: update to 0.8.2 2019-03-22 13:09:58 +01:00
e72ee8fb74 acertmgr: update to 0.8.2 2019-03-21 22:33:05 +01:00
218ae6c4dd bk-dss: restart uwsgi on changes (fixes #28) 2019-03-18 22:18:43 +01:00
cefabcaa7f web: no longer server binary-kitchen.space 2019-03-09 18:39:27 +01:00
654c2c0122 cleanup whitespace 2019-03-09 18:38:07 +01:00
e7375cac3e new host: mpcnc 2019-03-09 18:33:00 +01:00
97cb51efbf hackmd: increase max upload size 2019-03-07 21:17:19 +01:00
e1e110e704 acertmgr: update to 0.8.1 2019-03-07 15:01:06 +01:00
56df920ec0 bk-dss: update to 0.8.1 2019-02-28 11:17:08 +01:00
7fb5ac8875 acertmgr: fix typo 2019-02-25 18:10:56 +01:00
476df56fcc acertmgr: rename vars, introduce version 2019-02-25 08:34:21 +01:00
a2e6267ec8 slapd: use base from variables 2019-02-23 23:55:35 +01:00
9bffa36a33 acertmgr: rename from certmgr, run on config change 2019-02-23 23:54:24 +01:00
407409010e bk-dss: use vault for secret, use tagged version, use correct certificate for ldap 2019-02-23 23:34:23 +01:00
845a9f3c76 dss: remove unused role (replaced by bk-dss) 2019-02-19 09:31:33 +01:00
905f86f2df gogs: apt repo key location has changed 2019-02-18 19:15:34 +01:00
f576ebe615 common: forgot to remove gentoo prompt from Debian 2019-02-18 18:39:12 +01:00
d5c98eb13c common: don't use gentoo prompt anymore 2019-02-18 18:35:54 +01:00
41784f514f Cleanup whitespace 2019-02-13 16:01:32 +01:00
b47be3287a librenms & racktables: use LE certificates 2019-02-13 15:57:46 +01:00
766ece5b10 acme-dnskey-generate: fix naming inconsistencies 2019-02-13 15:40:12 +01:00
275b9a6071 Cleanup whitespace 2019-02-13 14:28:16 +01:00
cffa318bea Remove acme.sh client 2019-02-13 14:05:27 +01:00
82b5f9cdf3 dns-intern: sync A/PTR, use RR for radius, fix erx-rz loopback 2019-02-13 13:38:08 +01:00
82181c2eb2 Remove forseti/checkmk 2019-02-13 13:30:16 +01:00
d52b5c0b76 bk-dss: update to current version 2019-02-12 09:45:10 +01:00
fa7fec4a93 certmgr: update to latest version, adjust config 2019-02-11 19:36:35 +01:00
Kishi85
06760bf9f7 Add role to generate dns keys for acme/cermgr 2019-02-11 18:38:41 +01:00
40efa84fcf dovecot: add logrotate config 2019-02-04 20:31:13 +01:00
8b0be8cc6f dns: host ffrgb (offloader) 2019-02-04 18:33:06 +01:00
7b53f00a5e new hosts: maccaroni & spaghetti 2019-01-20 14:47:55 +01:00
Kishi85
3425fdeac9 new host: magnesium (partdb/partkeepr) 2018-12-17 19:25:15 +01:00
5fae8fa02c dns-intern: update loopback addresses 2018-10-30 12:31:34 +01:00
543ffce274 dhcpd: dhcp for Aruba APs 2018-10-26 18:43:18 +02:00
2f1ed864cd dns-extern: update documentation 2018-10-22 21:03:18 +02:00
ae65e438dc dns-extern: role for primary nameserver 2018-10-22 20:58:34 +02:00
Kishi85
e3c7c0cc1b Change updatepolicy.aliases format 2018-10-22 20:30:12 +02:00
267557f068 common: install software on proxmox 2018-10-15 21:47:26 +02:00
65786edf03 common: run apt task to ensure python-apt is installed 2018-10-15 21:47:03 +02:00
e88a6e5691 further updates wrt changed ntp server 2018-10-15 21:46:30 +02:00
Kishi85
271305ad34 Proxmox handling 2018-10-15 21:08:06 +02:00
67d4340ba6 hackmd: fix owner, persistent upload path, allow anon edits 2018-10-15 18:46:34 +02:00
22c1b0d469 bk-dss: new role to be deployed on LDAP host 2018-10-15 18:25:30 +02:00
32f976a163 hackmd: fix when 2018-10-08 21:46:29 +02:00
4a93fab603 hackmd: update database scheme 2018-10-08 20:29:18 +02:00
9b19d93bf9 hackmd: update version to codimd 1.2.1 2018-10-08 20:28:06 +02:00
ebecd957b2 hackmd: reload systemd before restarting hackmd 2018-10-08 20:14:33 +02:00
e2fd44eb53 prometheus: new role 2018-10-06 22:19:37 +02:00
634b952321 common: update zsh path for FreeBSDH 2018-10-06 22:18:40 +02:00
b6605467fa dhcpd: new lock IP 2018-10-06 20:37:41 +02:00
1b25547d97 dns: remove old hosts 2018-10-04 21:38:59 +02:00
ca86d25ed5 Fix dovecot ldaps 2018-10-04 21:29:16 +02:00