From 6bb09901a04be03371bf936686e92dc9e8913eda Mon Sep 17 00:00:00 2001
From: lilly
Date: Tue, 19 May 2026 10:58:40 +0200
Subject: [PATCH 1/2] add ns.vie.ccc.de. as direct secondary for authoritative
DNS zones
---
inventories/chaosknoten/host_vars/auth-dns.yaml | 15 +++++++++------
1 file changed, 9 insertions(+), 6 deletions(-)
diff --git a/inventories/chaosknoten/host_vars/auth-dns.yaml b/inventories/chaosknoten/host_vars/auth-dns.yaml
index dc91e90..9191e8b 100644
--- a/inventories/chaosknoten/host_vars/auth-dns.yaml
+++ b/inventories/chaosknoten/host_vars/auth-dns.yaml
@@ -7,36 +7,39 @@ knot__dnssec_key_id: "auth-dns.hamburg.ccc.de-1"
knot__remotes:
- id: ns-intern.hamburg.ccc.de
address: [ "2a00:14b0:f000:23::53", "172.31.17.53" ]
+ - id: ns.vie.ccc.de
+ address: [ "2a02:1b8:10:31::228", "146.255.57.228" ]
knot__catalog_zones:
- domain: "hamburg.ccc.de.catalog."
+ notify_targets: [ "ns.vie.ccc.de" ]
knot__zones:
- domain: "hh.ccc.de."
catalog_member: "hamburg.ccc.de.catalog."
- notify_targets: [ "ns-intern.hamburg.ccc.de" ]
+ notify_targets: [ "ns-intern.hamburg.ccc.de", "ns.vie.ccc.de" ]
content: "{{ lookup('ansible.builtin.file', 'resources/chaosknoten/auth-dns/zones/hh.ccc.de.zone') }}"
- domain: "ccchh.net."
catalog_member: "hamburg.ccc.de.catalog."
- notify_targets: [ "ns-intern.hamburg.ccc.de" ]
+ notify_targets: [ "ns-intern.hamburg.ccc.de", "ns.vie.ccc.de" ]
content: "{{ lookup('ansible.builtin.file', 'resources/chaosknoten/auth-dns/zones/ccchh.net.zone') }}"
- domain: "hamburg.ccc.de."
catalog_member: "hamburg.ccc.de.catalog."
- notify_targets: [ "ns-intern.hamburg.ccc.de" ]
+ notify_targets: [ "ns-intern.hamburg.ccc.de", "ns.vie.ccc.de" ]
content: "{{ lookup('ansible.builtin.file', 'resources/chaosknoten/auth-dns/zones/hamburg.ccc.de.zone') }}"
- domain: "eh20.easterhegg.eu."
catalog_member: "hamburg.ccc.de.catalog."
- notify_targets: [ "ns-intern.hamburg.ccc.de" ]
+ notify_targets: [ "ns-intern.hamburg.ccc.de", "ns.vie.ccc.de" ]
content: "{{ lookup('ansible.builtin.file', 'resources/chaosknoten/auth-dns/zones/eh20.easterhegg.eu.zone') }}"
- domain: "eh22.easterhegg.eu."
catalog_member: "hamburg.ccc.de.catalog."
- notify_targets: [ "ns-intern.hamburg.ccc.de" ]
+ notify_targets: [ "ns-intern.hamburg.ccc.de", "ns.vie.ccc.de" ]
content: "{{ lookup('ansible.builtin.file', 'resources/chaosknoten/auth-dns/zones/eh22.easterhegg.eu.zone') }}"
- domain: "3.2.0.0.0.0.0.f.0.b.4.1.0.0.a.2.ip6.arpa."
- notify_targets: [ "ns-intern.hamburg.ccc.de" ]
+ notify_targets: [ "ns-intern.hamburg.ccc.de", "ns.vie.ccc.de" ]
content: "{{ lookup('ansible.builtin.file', 'resources/chaosknoten/auth-dns/zones/3.2.0.0.0.0.0.f.0.b.4.1.0.0.a.2.ip6.arpa.zone') }}"
From f5e19f2da54c74d3b9d354a3ea56f249a4d8c687 Mon Sep 17 00:00:00 2001
From: Renovate
Date: Tue, 19 May 2026 09:00:54 +0000
Subject: [PATCH 2/2] Update all stable non-major dependencies
---
.forgejo/workflows/lint.yaml | 2 +-
inventories/chaosknoten/host_vars/cloud.yaml | 2 +-
inventories/chaosknoten/host_vars/netbox.yaml | 2 +-
.../chaosknoten/acmedns/docker_compose/compose.yaml.j2 | 2 +-
.../chaosknoten/grafana/docker_compose/compose.yaml.j2 | 8 ++++----
.../chaosknoten/keycloak/docker_compose/compose.yaml.j2 | 2 +-
resources/chaosknoten/ntfy/docker_compose/compose.yaml.j2 | 2 +-
.../chaosknoten/pretalx/docker_compose/compose.yaml.j2 | 4 ++--
.../chaosknoten/tickets/docker_compose/compose.yaml.j2 | 2 +-
resources/external/status/docker_compose/compose.yaml.j2 | 2 +-
10 files changed, 14 insertions(+), 14 deletions(-)
diff --git a/.forgejo/workflows/lint.yaml b/.forgejo/workflows/lint.yaml
index bdd53f5..600d044 100644
--- a/.forgejo/workflows/lint.yaml
+++ b/.forgejo/workflows/lint.yaml
@@ -24,7 +24,7 @@ jobs:
# work in our environmnet.
# Rather manually setup python (pip) before instead.
- name: Run ansible-lint
- uses: https://github.com/ansible/ansible-lint@v26.3.0
+ uses: https://github.com/ansible/ansible-lint@v26.4.0
with:
setup_python: "false"
requirements_file: "requirements.yml"
diff --git a/inventories/chaosknoten/host_vars/cloud.yaml b/inventories/chaosknoten/host_vars/cloud.yaml
index 9c28d58..1cf8b4f 100644
--- a/inventories/chaosknoten/host_vars/cloud.yaml
+++ b/inventories/chaosknoten/host_vars/cloud.yaml
@@ -1,7 +1,7 @@
# renovate: datasource=docker depName=git.hamburg.ccc.de/ccchh/oci-images/nextcloud
nextcloud__version: 32
# renovate: datasource=docker depName=docker.io/library/postgres
-nextcloud__postgres_version: 15.17
+nextcloud__postgres_version: 15.18
nextcloud__fqdn: cloud.hamburg.ccc.de
nextcloud__data_dir: /data/nextcloud
nextcloud__extra_configuration: "{{ lookup('ansible.builtin.template', 'resources/chaosknoten/cloud/nextcloud/extra_configuration.config.php.j2') }}"
diff --git a/inventories/chaosknoten/host_vars/netbox.yaml b/inventories/chaosknoten/host_vars/netbox.yaml
index f28d193..a0a03d5 100644
--- a/inventories/chaosknoten/host_vars/netbox.yaml
+++ b/inventories/chaosknoten/host_vars/netbox.yaml
@@ -1,5 +1,5 @@
# renovate: datasource=github-releases depName=netbox packageName=netbox-community/netbox
-netbox__version: "v4.5.5"
+netbox__version: "v4.6.0"
netbox__config: "{{ lookup('ansible.builtin.template', 'resources/chaosknoten/netbox/netbox/configuration.py.j2') }}"
netbox__custom_pipeline_oidc_group_and_role_mapping: true
diff --git a/resources/chaosknoten/acmedns/docker_compose/compose.yaml.j2 b/resources/chaosknoten/acmedns/docker_compose/compose.yaml.j2
index 3fcd8c6..c68973f 100644
--- a/resources/chaosknoten/acmedns/docker_compose/compose.yaml.j2
+++ b/resources/chaosknoten/acmedns/docker_compose/compose.yaml.j2
@@ -2,7 +2,7 @@
services:
oauth2-proxy:
container_name: oauth2-proxy
- image: quay.io/oauth2-proxy/oauth2-proxy:v7.15.1
+ image: quay.io/oauth2-proxy/oauth2-proxy:v7.15.2
command: --config /oauth2-proxy.cfg
hostname: oauth2-proxy
volumes:
diff --git a/resources/chaosknoten/grafana/docker_compose/compose.yaml.j2 b/resources/chaosknoten/grafana/docker_compose/compose.yaml.j2
index 1f6c42f..44dfa20 100644
--- a/resources/chaosknoten/grafana/docker_compose/compose.yaml.j2
+++ b/resources/chaosknoten/grafana/docker_compose/compose.yaml.j2
@@ -2,7 +2,7 @@
services:
prometheus:
- image: docker.io/prom/prometheus:v3.10.0
+ image: docker.io/prom/prometheus:v3.11.3
container_name: prometheus
command:
- '--config.file=/etc/prometheus/prometheus.yml'
@@ -19,7 +19,7 @@ services:
- prom_data:/prometheus
alertmanager:
- image: docker.io/prom/alertmanager:v0.31.1
+ image: docker.io/prom/alertmanager:v0.32.1
container_name: alertmanager
command:
- '--config.file=/etc/alertmanager/alertmanager.yaml'
@@ -46,7 +46,7 @@ services:
- graf_data:/var/lib/grafana
pve-exporter:
- image: docker.io/prompve/prometheus-pve-exporter:3.8.2
+ image: docker.io/prompve/prometheus-pve-exporter:3.9.0
container_name: pve-exporter
ports:
- 9221:9221
@@ -59,7 +59,7 @@ services:
- /dev/null:/etc/prometheus/pve.yml
loki:
- image: docker.io/grafana/loki:3.7.1
+ image: docker.io/grafana/loki:3.7.2
container_name: loki
ports:
- 13100:3100
diff --git a/resources/chaosknoten/keycloak/docker_compose/compose.yaml.j2 b/resources/chaosknoten/keycloak/docker_compose/compose.yaml.j2
index d239bb4..8db3526 100644
--- a/resources/chaosknoten/keycloak/docker_compose/compose.yaml.j2
+++ b/resources/chaosknoten/keycloak/docker_compose/compose.yaml.j2
@@ -22,7 +22,7 @@
services:
keycloak:
- image: git.hamburg.ccc.de/ccchh/oci-images/keycloak:26.5.7
+ image: git.hamburg.ccc.de/ccchh/oci-images/keycloak:26.6.0
pull_policy: always
restart: unless-stopped
command: start --optimized
diff --git a/resources/chaosknoten/ntfy/docker_compose/compose.yaml.j2 b/resources/chaosknoten/ntfy/docker_compose/compose.yaml.j2
index af1b531..cadfa54 100644
--- a/resources/chaosknoten/ntfy/docker_compose/compose.yaml.j2
+++ b/resources/chaosknoten/ntfy/docker_compose/compose.yaml.j2
@@ -1,7 +1,7 @@
---
services:
ntfy:
- image: docker.io/binwiederhier/ntfy:v2.20.1
+ image: docker.io/binwiederhier/ntfy:v2.23.0
container_name: ntfy
command:
- serve
diff --git a/resources/chaosknoten/pretalx/docker_compose/compose.yaml.j2 b/resources/chaosknoten/pretalx/docker_compose/compose.yaml.j2
index 0bbfcb8..226b21d 100644
--- a/resources/chaosknoten/pretalx/docker_compose/compose.yaml.j2
+++ b/resources/chaosknoten/pretalx/docker_compose/compose.yaml.j2
@@ -15,7 +15,7 @@ services:
- pretalx_net
redis:
- image: docker.io/library/redis:8.6.2
+ image: docker.io/library/redis:8.6.3
restart: unless-stopped
volumes:
- redis:/data
@@ -23,7 +23,7 @@ services:
- pretalx_net
static:
- image: docker.io/library/nginx:1.29.7
+ image: docker.io/library/nginx:1.31.0
restart: unless-stopped
volumes:
- public:/usr/share/nginx/html
diff --git a/resources/chaosknoten/tickets/docker_compose/compose.yaml.j2 b/resources/chaosknoten/tickets/docker_compose/compose.yaml.j2
index b8a4cf2..11593ce 100644
--- a/resources/chaosknoten/tickets/docker_compose/compose.yaml.j2
+++ b/resources/chaosknoten/tickets/docker_compose/compose.yaml.j2
@@ -13,7 +13,7 @@ services:
restart: unless-stopped
redis:
- image: docker.io/library/redis:8.6.2
+ image: docker.io/library/redis:8.6.3
ports:
- "6379:6379"
volumes:
diff --git a/resources/external/status/docker_compose/compose.yaml.j2 b/resources/external/status/docker_compose/compose.yaml.j2
index 58abefa..d7694ad 100644
--- a/resources/external/status/docker_compose/compose.yaml.j2
+++ b/resources/external/status/docker_compose/compose.yaml.j2
@@ -4,7 +4,7 @@
services:
database:
- image: docker.io/library/postgres:18.3
+ image: docker.io/library/postgres:18.4
restart: always
volumes:
- ./database:/var/lib/postgresql