Commit graph

264 commits

Author SHA1 Message Date
0842a51ae0 Merge branch 'main' of git.hamburg.ccc.de:CCCHH/ansible-infra 2026-05-24 00:12:52 +02:00
603d3fb6f4 Update machine SMTP mail sending config 2026-05-24 00:12:50 +02:00
4574dbf4ba
secrets(role): introduce secrets role for storing secrets
Allows storage of secrets to then be referenced in other places.
The motivation was storing WireGuard secrets for systemd-networkd.
2026-05-23 22:40:17 +02:00
ec27b52820
cloud: bump nextcloud to 33 and postgres 15.18 2026-05-20 19:49:53 +02:00
292c626629
add ns2.vie.ccc.de as dns secondary 2026-05-20 15:44:47 +02:00
0c83fcc2b2
sops: darios key expired, so remove for now 2026-05-20 04:09:28 +02:00
8a8ce7206d
add infrastructure-authorized-keys to lists host 2026-05-19 16:27:59 +02:00
6bb09901a0
add ns.vie.ccc.de. as direct secondary for authoritative DNS zones 2026-05-19 11:00:03 +02:00
a76f01aea7 Move secrets to SOPS, add REST_USER 2026-05-16 13:06:19 +02:00
164f784957
remove errornously added irz42 reverse-dns secondaries 2026-05-15 14:50:15 +02:00
18ffa42358
remove actually unused reverse-dns zones 2026-05-13 15:14:37 +02:00
d2f95237a0
add wieskes nameservers for reverse-dns zone transfers from auth-dns 2026-05-13 15:11:29 +02:00
50beedbc62
configure metric scraping from knot on auth-dns 2026-05-06 15:51:38 +02:00
f7306b91a6
remove unused dns zones 2026-05-06 14:37:53 +02:00
021843b5ce
migrate reverse dns zones to new auth-dns server 2026-05-06 14:33:04 +02:00
46b0a49eb8
migrate dns zone eh22.easterhegg.eu to new auth-dns server 2026-05-06 12:34:23 +02:00
d535607ae6
migrate dns zone eh20.easterhegg.eu. to new auth-dns server 2026-05-06 12:31:55 +02:00
04a6c685d1
migrate dns zone hamburg.ccc.de. to new auth-dns server 2026-05-06 12:17:51 +02:00
fa021fb737
migrate dns zone ccchh.net. to new auth-dns server 2026-05-06 12:12:54 +02:00
9ca4eb14e1
configure hh.ccc.de on auth-dns 2026-05-06 11:47:10 +02:00
becee70ab9
disable systemd-resolved on auth-dns 2026-05-06 11:47:10 +02:00
fa94d59df6
add barebones knot config
This configuration does not yet do much but it provisions a knot
server that runs.
2026-05-06 11:47:10 +02:00
d9fc1ef401
add host auth-dns.hamburg.ccc.de 2026-04-29 21:24:59 +02:00
5d16c7781c
Revert "deploy alerta on grafana.hosts.hamburg.ccc.de"
This reverts commit b10d7d1592.
2026-04-29 19:05:15 +02:00
d7811f249a
diday-staging-runner(host): deploy host runner for diday staging deploy 2026-04-28 20:12:27 +02:00
b10d7d1592
deploy alerta on grafana.hosts.hamburg.ccc.de 2026-04-24 19:05:08 +02:00
ec4dd36178
dooris(host): move to dns-01-acme-dns 2026-04-19 23:48:11 +02:00
26fbbc9035
sops: use fis new key 2026-04-19 00:36:37 +02:00
abcd622757
light(host): move to dns-01-acme-dns 2026-04-11 04:34:24 +02:00
6bc872f1c0
pretalx(host): move to dns-01-acme-dns as http-01 failed for cfp.eh22 2026-03-31 17:51:06 +02:00
73ed238a28
sunders(host): move to dns-01-acme-dns 2026-03-31 16:59:02 +02:00
21f51ea2d7
z9(hosts): setup ansible-pull for all z9 hosts 2026-03-30 21:55:44 +02:00
66830eaf30 Update all stable non-major dependencies 2026-03-28 01:01:38 +00:00
e961886972
pad(host): set session secret, so users won't be logged out on restart
Closes #74
2026-03-09 21:09:08 +01:00
c246a6815c
ansible-lint: fix issues 2026-03-06 21:27:51 +01:00
9b092d0daf Update all stable non-major dependencies 2026-03-06 20:16:48 +00:00
4f3caaf5ed
add bitwhisker to sops 2026-03-05 20:18:53 +01:00
711f2f1c64
certbot(role): don't use certbot__version_spec anymore as its not used 2026-03-01 20:08:49 +01:00
41dc9c8529
configure www2 nginx 2026-02-26 17:44:24 +01:00
3e3cedd357
add www2 and www3 hosts 2026-02-24 19:09:20 +01:00
7a1ea7d40e Override base.html template to brand site 2026-02-22 18:22:12 +01:00
e823c46a2d stb updated key 2026-02-18 09:51:25 +01:00
5f31392a27 Remove authoritative-dns as its not needed anymore 2026-02-11 10:38:04 +01:00
fe647da3bf
mjolnir: deploy mjolnir using docker compose
Moving from mjolnir from nix-infra to ansible-infra.
Also using native encryption now instead of the deprecated pantalaimon
and having protectAllJoinedRooms set to true for easier and quicker
usage.
2026-02-11 03:10:43 +01:00
2f67cb875d
status(host): rotate age key 2026-02-09 17:43:25 +01:00
2350710177 Use new entry after acmedns db reset 2026-02-08 18:38:37 +01:00
536eedeffc
status(host): add monitoring for ACME DNS 2026-02-01 22:44:42 +01:00
06ae220857 Remove spaceapiccc.hamburg.ccc.de 2026-01-27 22:35:28 +01:00
3bba747dab Configure seperate server for spaceapi.ccc.de 2026-01-27 16:30:00 +01:00
ad783e4a15 now in production 2026-01-27 16:21:18 +01:00