012bceeabb
public-reverse-proxy(host): Increase nginx worker fd limit
...
/ build (pull_request) Successful in 29s
/ Ansible Lint (push) Successful in 2m34s
/ Ansible Lint (pull_request) Successful in 2m37s
By default the limit on file descriptors is at a 1024 hard limit and 520k hard limit.
Unsure how this affects nginx, but each client connection needs two file descriptors.
So let's try to set the limit of open files explicitly.
2026-08-28 12:11:03 +02:00
4540dc5516
Update to current version, open up fully again.
/ build (push) Successful in 26s
/ Ansible Lint (push) Successful in 3m9s
2026-08-25 19:04:44 +02:00
bd71738df3
Temporary block until we can update Keycloak
/ build (push) Successful in 32s
/ Ansible Lint (push) Successful in 2m44s
2026-08-25 18:41:40 +02:00
ae314ea9b3
Configure manual subscriber lists
/ build (push) Successful in 50s
/ Ansible Lint (push) Successful in 4m18s
2026-08-24 10:01:16 +02:00
a2eba1ac70
fixed IP for Retro Sun SparcStation 4
/ build (push) Successful in 29s
/ Ansible Lint (push) Successful in 2m24s
2026-08-21 23:34:10 +02:00
5ae8a3b186
Re-add IP for waybackproxy
/ build (push) Successful in 25s
/ Ansible Lint (push) Successful in 2m51s
2026-08-21 23:28:21 +02:00
6389a936c8
Merge branch 'main' of git.hamburg.ccc.de:CCCHH/ansible-infra
/ build (push) Successful in 26s
/ Ansible Lint (push) Successful in 2m33s
2026-08-18 19:27:56 +02:00
233131b612
Use correct hostname
2026-08-18 19:27:54 +02:00
a87c27b3d5
keycloak(host): allow right ipv4 of z9 router
/ build (push) Successful in 26s
/ Ansible Lint (push) Successful in 2m38s
2026-08-17 21:39:00 +02:00
e9a5b711ae
Start migrating config to Ansible
...
/ build (push) Successful in 25s
/ Ansible Lint (push) Successful in 2m31s
The real file still lives in /opt/mailman on the host for now, need to migrate whole config into Ansible.
2026-08-17 09:25:23 +02:00
548d761def
Migrate officemail away
/ build (push) Successful in 50s
/ Ansible Lint (push) Successful in 2m59s
2026-08-17 09:20:13 +02:00
53c1801eba
Change confirmation lifetime to 7d
/ build (push) Successful in 27s
/ Ansible Lint (push) Successful in 3m2s
2026-08-16 09:28:42 +02:00
e668c44273
Enable list subscription management for intern@
/ build (push) Successful in 49s
/ Ansible Lint (push) Successful in 2m52s
2026-08-16 09:01:57 +02:00
00524f7bab
base_config: only install kitty-terminfo, not kitty
2026-08-11 23:55:03 +02:00
379aa7c451
add configuration required for dooris -> spaceapid integration
/ build (pull_request) Successful in 28s
/ cleanup-staging (pull_request) Successful in 7s
/ build (push) Successful in 27s
/ Ansible Lint (pull_request) Successful in 2m37s
/ Ansible Lint (push) Successful in 2m34s
2026-08-11 20:54:27 +02:00
73760a9995
fix ansible-lint warnings
/ build (push) Successful in 26s
/ Ansible Lint (push) Successful in 4m35s
2026-08-11 17:38:51 +02:00
39d8ff4ef8
update wireguard publicKey for lilly
/ build (push) Successful in 26s
/ Ansible Lint (push) Failing after 3m26s
2026-08-11 17:33:57 +02:00
938a913094
z9-router(host): add firewall rule chaosknoten to z9 pbs
/ build (push) Successful in 26s
/ Ansible Lint (push) Failing after 2m20s
2026-08-09 17:32:36 +02:00
6a402aa544
z9-router(host): fix dhcp6 config, wrong interface
/ build (push) Successful in 51s
/ Ansible Lint (push) Failing after 2m50s
2026-08-09 17:09:40 +02:00
35381d5bb9
z9-router and auth-dns(host): add static dhcp lease and dns entry for wled-eh22
2026-08-09 17:09:15 +02:00
f5d1c6deee
z9-router(host): add firewall rule staubis to club assistant
/ build (push) Successful in 27s
/ Ansible Lint (push) Failing after 2m32s
2026-08-07 23:50:57 +02:00
8f3cd75a46
Merge branch 'main' into renovate/docker.io-pretalx-standalone-2026.x
/ cleanup-staging (pull_request) Successful in 3s
/ build (pull_request) Successful in 29s
/ build (push) Successful in 26s
/ Ansible Lint (pull_request) Failing after 2m33s
/ Ansible Lint (push) Failing after 2m28s
2026-08-07 23:47:09 +02:00
cf18c8e633
Merge branch 'main' into renovate/docker.io-pretix-standalone-2026.x
/ build (pull_request) Successful in 31s
/ cleanup-staging (pull_request) Successful in 4s
/ build (push) Successful in 28s
/ Ansible Lint (pull_request) Failing after 2m54s
/ Ansible Lint (push) Has been cancelled
2026-08-07 23:44:45 +02:00
3ab9f83039
z9-router(host): fix nftables
/ build (pull_request) Successful in 30s
/ Ansible Lint (pull_request) Failing after 2m39s
/ cleanup-staging (pull_request) Successful in 3s
/ build (push) Successful in 27s
/ Ansible Lint (push) Has been cancelled
2026-08-07 23:36:56 +02:00
d97c22cc8e
z9-router(host): fix dns
2026-08-07 23:36:37 +02:00
ebdafb997f
unbound(role): also over write fallback_dns in resolvd
2026-08-07 23:36:22 +02:00
22ace3c537
z9-router(host): fix file permissions
/ build (pull_request) Successful in 29s
/ Ansible Lint (pull_request) Failing after 3m13s
/ Ansible Lint (push) Failing after 3m51s
2026-08-07 23:13:44 +02:00
1ec54ad502
secrets(role): add parent folder settings
2026-08-07 23:10:54 +02:00
4fbac5cfe6
unbound(role): add config flag in README
/ build (pull_request) Successful in 28s
/ Ansible Lint (pull_request) Failing after 2m44s
/ Ansible Lint (push) Failing after 2m45s
2026-08-07 22:56:07 +02:00
5378c3f360
auth-dns(host): ccchh.net remove unused
2026-08-07 22:56:07 +02:00
51b2cac907
z9-router(host): remove netwan, vlan55 untagged, add and fix DNS, fix formatting
2026-08-07 22:56:07 +02:00
c45fb91f76
kea_dhcp(role): seperate package installes
2026-08-07 22:55:57 +02:00
47fbd96642
kea_dhcp(role): update README
2026-08-07 22:55:57 +02:00
897ee5fa43
kea_dhcp(role): remove unused
2026-08-07 22:55:57 +02:00
7eabd88e2c
unbound(role): update readme and move task block to top level and remove unused
2026-08-07 22:55:57 +02:00
82760d2bc2
light(host): remove resolver from nginx conf
2026-08-07 22:55:56 +02:00
c2130adbb5
auth-dns(host): remove unused unfi ipv6 and specify comments
2026-08-07 22:55:56 +02:00
14b54797ec
README.md: correct sentence
2026-08-07 22:55:56 +02:00
49f07b0872
z9-router(host): move yate from vlan 55 to 52
2026-08-07 22:55:56 +02:00
1452c85b9d
z9-router(host): change mac address of yate in dhcp
2026-08-07 22:55:56 +02:00
8043198569
z9-router(host): add dhcp and dns for dooris-legacy
2026-08-07 22:55:56 +02:00
ffb88164ee
z9-router(host): change vlan 54 to 55 and remove netwan move vlan 400 to netlan
2026-08-07 22:55:56 +02:00
b76fac2255
general: update gitignore
2026-08-07 22:55:55 +02:00
58ea3ef7a3
z9-router(host): update host kea config
...
- edit config to work with update kea role
- fix ipv6 addresses
2026-08-07 22:55:55 +02:00
32caa40f77
unbound(role): fix some unbound setup stuff
2026-08-07 22:55:55 +02:00
8d9cb0007c
kea_dhcp(role): update to newest fux noc version
2026-08-07 22:55:55 +02:00
6006dbca27
z9-router(host): nftables conf fix indent and allow dhcpv6
2026-08-07 22:55:55 +02:00
9271cbda97
unbound(role): fix systemd unit of prometheus exporter
2026-08-07 22:55:34 +02:00
4ec4c1f942
z9-router(host): fix systemd-networkd configs
2026-08-07 22:55:34 +02:00
83f654037a
unbound(role): fix unbound prometheus exporter install on debian
...
- download debian image from github und verify checksum
- setup systemd service unit
2026-08-07 22:55:33 +02:00