Commit graph

287 commits

Author SHA1 Message Date
e0b593289d
forgejo-actions-runner(host): enable IPv6 support in Docker
Enable the relevant config option and move to new network with an
explicit IPv6, because otherwise there's no default v6 route and v6 in
the Docker containers doesn't work.
2026-04-29 03:08:20 +02:00
dd2f3178db
public-web-static(host): move to new network and to v6 2026-04-28 23:30:00 +02:00
fe27dba7fd
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/bcd464ccd2a1a7cd09aa2f8d4ffba83b761b1d0e' (2026-04-01)
  → 'github:nixos/nixpkgs/a4bf06618f0b5ee50f14ed8f0da77d34ecc19160' (2026-04-25)
• Updated input 'nixpkgs-unstable':
    'github:nixos/nixpkgs/8d8c1fa5b412c223ffa47410867813290cdedfef' (2026-04-02)
  → 'github:nixos/nixpkgs/01fbdeef22b76df85ea168fbfe1bfd9e63681b30' (2026-04-23)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/8f093d0d2f08f37317778bd94db5951d6cce6c46' (2026-04-03)
  → 'github:Mic92/sops-nix/bef289e2248991f7afeb95965c82fbcd8ff72598' (2026-04-21)
2026-04-27 18:41:38 +02:00
d1ef492f93
establish c3dog.de and staging as their own websites 2026-04-11 20:44:22 +02:00
6ac55fe4a2
fix ports in redirects 2026-04-04 17:21:39 +02:00
3b17599533
deploy docs.c3voc.de on public-static-web
Co-authored-by: June <june@jsts.xyz>
2026-04-04 15:36:08 +02:00
900f610737
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/71caefce12ba78d84fe618cf61644dce01cf3a96' (2026-03-06)
  → 'github:nixos/nixpkgs/bcd464ccd2a1a7cd09aa2f8d4ffba83b761b1d0e' (2026-04-01)
• Updated input 'nixpkgs-unstable':
    'github:nixos/nixpkgs/608d0cadfed240589a7eea422407a547ad626a14' (2026-03-08)
  → 'github:nixos/nixpkgs/8d8c1fa5b412c223ffa47410867813290cdedfef' (2026-04-02)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/c8e69670b316d6788e435a3aa0bda74eb1b82cc0' (2026-03-08)
  → 'github:Mic92/sops-nix/8f093d0d2f08f37317778bd94db5951d6cce6c46' (2026-04-03)
2026-04-03 18:19:40 +02:00
3a74fd5693
add c3dog.de to public-web-static 2026-04-03 15:07:34 +02:00
27390a6e10
remove yate (it is now on ansible-infra) 2026-03-09 22:08:33 +01:00
3f6e5a30c5
flake.lock: Update
Flake lock file updates:

• Updated input 'authorizedKeysRepo':
    'git+https://git.hamburg.ccc.de/CCCHH/infrastructure-authorized-keys?ref=trunk&rev=7d9c3a683a50d109ed8fd3f75d090d5403967f7f' (2025-10-21)
  → 'git+https://git.hamburg.ccc.de/CCCHH/infrastructure-authorized-keys?ref=trunk&rev=8b7662703635ff7e80b2ee72ce052201fa86010a' (2026-03-06)
• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/72ac591e737060deab2b86d6952babd1f896d7c5' (2026-01-17)
  → 'github:nixos/nixpkgs/71caefce12ba78d84fe618cf61644dce01cf3a96' (2026-03-06)
• Updated input 'nixpkgs-unstable':
    'github:nixos/nixpkgs/3327b113f2ef698d380df83fbccefad7e83d7769' (2026-01-17)
  → 'github:nixos/nixpkgs/608d0cadfed240589a7eea422407a547ad626a14' (2026-03-08)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/5e8fae80726b66e9fec023d21cd3b3e638597aa9' (2026-01-18)
  → 'github:Mic92/sops-nix/c8e69670b316d6788e435a3aa0bda74eb1b82cc0' (2026-03-08)
2026-03-09 21:31:18 +01:00
7ae5d8dd80
configure staging.diday.org 2026-02-27 22:54:35 +01:00
bbfe9eba6f
deploy diday.org site 2026-02-27 21:04:43 +01:00
99efc60fce
configure diday.org on public-static-web 2026-02-26 18:01:35 +01:00
a8229bfd0d
configure specific diday website requirements 2026-02-18 14:19:04 +01:00
9e5bad593e
remove public-reverse-proxy (it is now on ansible-infra) 2026-02-18 12:12:18 +01:00
be8581c2d0
configure diday website dpeloyment 2026-02-18 11:53:37 +01:00
f27d3ba113
sops update keys 2026-02-17 23:22:16 +01:00
f29f4622b5
add lilly to sops config 2026-02-17 22:59:47 +01:00
a085f7c2e5
mjolnir: remove mjolnir as it got moved to ansible-infra
See:
fe647da3bf
2026-02-11 03:15:51 +01:00
a884b7db7f
public-web-static: upgrade element-admin to v0.1.10 2026-02-11 01:33:38 +01:00
ebb0cea592
public-web-static: make www.c3cat.de actually work 2026-02-01 21:06:33 +01:00
213707b310
public-web-static: remove cpuccc.hamburg.ccc.de alias 2026-01-28 15:31:31 +01:00
175df86928
public-web-static: make hamburg.ccc.de the default server 2026-01-27 15:47:14 +01:00
62885a0095
public-web-static: to not log ip addresses just disable the access_log 2026-01-27 15:44:25 +01:00
193ccedbee
public-web-static: setup cpu.ccc.de with redirects from aliases 2026-01-27 15:36:23 +01:00
709afd0a1d
Add cpu.ccc.de to static web host (under cpuccc.hamburg.ccc.de for now) 2026-01-25 20:44:07 +01:00
827c469415
forgejo-actions-runner: forgejo-actions-runner is forgejo-runner now
Also use package from stable instead of unstable.
2026-01-18 22:49:43 +01:00
30b6d54f95
Upgrade to NixOS 25.11
mjolnir seems to be broken.
2026-01-18 22:48:13 +01:00
0ea41b3141
remove more hydra-related config 2026-01-18 21:58:56 +01:00
e51e631918
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/c8aa8cc00a5cb57fada0851a038d35c08a36a2bb' (2025-10-22)
  → 'github:nixos/nixpkgs/ac62194c3917d5f474c1a844b6fd6da2db95077d' (2026-01-02)
• Updated input 'nixpkgs-unstable':
    'github:nixos/nixpkgs/02f2cb8e0feb4596d20cc52fda73ccee960e3538' (2025-10-24)
  → 'github:nixos/nixpkgs/3327b113f2ef698d380df83fbccefad7e83d7769' (2026-01-17)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/5a7d18b5c55642df5c432aadb757140edfeb70b3' (2025-10-20)
  → 'github:Mic92/sops-nix/5e8fae80726b66e9fec023d21cd3b3e638597aa9' (2026-01-18)
2026-01-18 21:45:50 +01:00
28d82f149d
status: remove status as it got replaced by a ansible-managed Gatus 2026-01-18 21:09:15 +01:00
79952f8c63
hydra: remove hydra as its being decommissioned
nix-infra is built back in general, so remove hydra as well.
2026-01-17 22:06:24 +01:00
c9e27a5bb6
mjolnir: use cloud-init for network configuration and move to new net.
Switch to cloud-init to align with the Ansible infra.
Also move to new network and hostname.
2026-01-07 19:20:50 +01:00
971274b473 feat: Adds a shortcode to the shop 2025-12-27 23:27:30 +01:00
b16f0190e0
disable nixos-generators input as its broken a. makes infra-rebuild fail 2025-12-27 23:21:35 +01:00
5a989fff69
public-web-static: add faq hackertours redirects 2025-11-08 20:02:55 +01:00
6952854ec9
ssh Post-Quantum Cryptography 2025-11-05 23:57:34 +01:00
785881da39
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/3bcc93c5f7a4b30335d31f21e2f1281cba68c318?narHash=sha256-YWo57PL7mGZU7D4WeKFMiW4ex/O6ZolUS6UNBHTZfkI%3D' (2025-10-04)
  → 'github:nixos/nixpkgs/c8aa8cc00a5cb57fada0851a038d35c08a36a2bb?narHash=sha256-m9W0dYXflzeGgKNravKJvTMR4Qqa2MVD11AwlGMufeE%3D' (2025-10-22)
• Updated input 'nixpkgs-unstable':
    'github:nixos/nixpkgs/cb82756ecc37fa623f8cf3e88854f9bf7f64af93?narHash=sha256-0JDOal5P7xzzAibvD0yTE3ptyvoVOAL0rcELmDdtSKg%3D' (2025-10-20)
  → 'github:nixos/nixpkgs/02f2cb8e0feb4596d20cc52fda73ccee960e3538?narHash=sha256-tH3wHnOJms%2BU4k/rK2Nn1RfBrhffX92jLP/2VndSn0w%3D' (2025-10-24)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/6e5a38e08a2c31ae687504196a230ae00ea95133?narHash=sha256-UvzKi02LMFP74csFfwLPAZ0mrE7k6EiYaKecplyX9Qk%3D' (2025-10-05)
  → 'github:Mic92/sops-nix/5a7d18b5c55642df5c432aadb757140edfeb70b3?narHash=sha256-ee2e1/AeGL5X8oy/HXsZQvZnae6XfEVdstGopKucYLY%3D' (2025-10-20)
2025-10-25 20:18:45 +02:00
c7e9c56abc
forgejo-actions-runner: increase runner capacity to 4 2025-10-24 22:02:09 +02:00
550b0f13ca
forgejo-actions-run.: use runner pkg from unstable to make it work again 2025-10-24 19:09:16 +02:00
275a3779f7
fix authorizedKeysRepo input by using type git
Fix authorizedKeysRepo input by using type git as .tar.gz archive gives
a 500.
2025-10-22 21:07:27 +02:00
5a33261482
expose Matrix admin APIs restricted to trusted networks
This is needed to have element-admin work.
2025-10-12 20:45:54 +02:00
27777156aa
public-web-static: host an element-admin instance 2025-10-12 20:19:27 +02:00
defd0893d7
matrix: introduce matrix authentication service 2025-10-12 05:28:00 +02:00
bab1a46be9
update element-web to version 1.12.0 2025-10-05 18:11:31 +02:00
aeb47b5d14
set default room version to 12 to avoid having to upgrade rooms on crea. 2025-10-05 18:09:37 +02:00
0174988c8e
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/9a094440e02a699be5c57453a092a8baf569bdad?narHash=sha256-Vp9K5ol6h0J90jG7Rm4RWZsCB3x7v5VPx588TQ1dkfs%3D' (2025-09-14)
  → 'github:nixos/nixpkgs/3bcc93c5f7a4b30335d31f21e2f1281cba68c318?narHash=sha256-YWo57PL7mGZU7D4WeKFMiW4ex/O6ZolUS6UNBHTZfkI%3D' (2025-10-04)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/f77d4cfa075c3de66fc9976b80e0c4fc69e2c139?narHash=sha256-HYnwlbY6RE5xVd5rh0bYw77pnD8lOgbT4mlrfjgNZ0c%3D' (2025-09-16)
  → 'github:Mic92/sops-nix/6e5a38e08a2c31ae687504196a230ae00ea95133?narHash=sha256-UvzKi02LMFP74csFfwLPAZ0mrE7k6EiYaKecplyX9Qk%3D' (2025-10-05)
2025-10-05 17:43:34 +02:00
ca65a4940c
redirect /calendar to the Nextcloud calendar to make this location work
Apparently this location gets used in several locations, so create a
redirect.
2025-09-16 19:45:02 +02:00
dc4cc0469d
remove synapse overlay as there is now a recent enough version upstream 2025-09-16 19:13:39 +02:00
e8dec24077
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/92c2e04a475523e723c67ef872d8037379073681?narHash=sha256-yLuz5cz5Z%2Bsn8DRAfNkrd2Z1cV6DaYO9JMrEz4KZo/c%3D' (2025-07-21)
  → 'github:nixos/nixpkgs/9a094440e02a699be5c57453a092a8baf569bdad?narHash=sha256-Vp9K5ol6h0J90jG7Rm4RWZsCB3x7v5VPx588TQ1dkfs%3D' (2025-09-14)
• Updated input 'sops-nix':
    'github:Mic92/sops-nix/2c8def626f54708a9c38a5861866660395bb3461?narHash=sha256-GllP7cmQu7zLZTs9z0J2gIL42IZHa9CBEXwBY9szT0U%3D' (2025-07-15)
  → 'github:Mic92/sops-nix/f77d4cfa075c3de66fc9976b80e0c4fc69e2c139?narHash=sha256-HYnwlbY6RE5xVd5rh0bYw77pnD8lOgbT4mlrfjgNZ0c%3D' (2025-09-16)
2025-09-16 19:12:28 +02:00