Commit graph

156 commits

Author SHA1 Message Date
8e5b0083b3
fix docker compose services not coming up after reboot
Fix the issue by adding missing restart configuration to docker compose
deployments.
2026-04-02 01:16:08 +02:00
7a9929c66d Version bump 2026-04-01 09:10:05 +02:00
0df667fc58
keycloak(host): update postgresql image from version 15 to 18 2026-04-01 02:19:13 +02:00
34958a0584
pad(host): update postgresql image from version 15 to 18 2026-04-01 01:51:22 +02:00
6bc872f1c0
pretalx(host): move to dns-01-acme-dns as http-01 failed for cfp.eh22 2026-03-31 17:51:06 +02:00
73ed238a28
sunders(host): move to dns-01-acme-dns 2026-03-31 16:59:02 +02:00
66830eaf30 Update all stable non-major dependencies 2026-03-28 01:01:38 +00:00
904c50c17c
fux alert: set for to 2min 2026-03-10 21:45:52 +01:00
242746bcbd
alerts-fux: add alert for blackbox exporter probes 2026-03-09 21:14:26 +01:00
e961886972
pad(host): set session secret, so users won't be logged out on restart
Closes #74
2026-03-09 21:09:08 +01:00
c246a6815c
ansible-lint: fix issues 2026-03-06 21:27:51 +01:00
9b092d0daf Update all stable non-major dependencies 2026-03-06 20:16:48 +00:00
0331c77d55
grafana: fuxnoc macht mehr internet mit ipv6 2026-03-01 21:32:10 +01:00
165487884c
setup reverse-proxying for *.staging.diday.org 2026-02-27 21:51:09 +01:00
bc9e76b8ed
remove did.hamburg.ccc.de from public-reverse-proxy 2026-02-27 21:51:09 +01:00
983584a510
configure reverse proxy map explicitly for hostnames 2026-02-27 21:51:09 +01:00
7ca446457a
onlyoffice: support custom fonts and add di.day fonts 2026-02-26 23:13:30 +01:00
fcc0d615a7
configure diday.org on public-reverse-proxy 2026-02-26 18:01:52 +01:00
41dc9c8529
configure www2 nginx 2026-02-26 17:44:24 +01:00
ac013ca8a1 Fix template syntax 2026-02-22 18:37:16 +01:00
7a1ea7d40e Override base.html template to brand site 2026-02-22 18:22:12 +01:00
bb06f21c53
configure diday website deployment 2026-02-18 11:57:21 +01:00
fe647da3bf
mjolnir: deploy mjolnir using docker compose
Moving from mjolnir from nix-infra to ansible-infra.
Also using native encryption now instead of the deprecated pantalaimon
and having protectAllJoinedRooms set to true for easier and quicker
usage.
2026-02-11 03:10:43 +01:00
3086c2b60c Use new name for sqlite driver 2026-02-08 14:19:02 +01:00
196f1d70cf downgrade acme-dns to v1.0 2026-02-08 11:37:14 +01:00
c1e1897cda
grafana: more alertmanager config 2026-02-06 17:17:26 +01:00
17ba7c04f2
acmdns(host): expose and monitor health endpoint 2026-02-01 23:14:15 +01:00
9c2fe5ea9b
public-reverse-proxy(host): remove cpuccc.hamburg.ccc.de alias 2026-01-28 15:32:29 +01:00
06ae220857 Remove spaceapiccc.hamburg.ccc.de 2026-01-27 22:35:28 +01:00
1f2a08cf15 Spell stuff correctly 2026-01-27 20:16:57 +01:00
3bba747dab Configure seperate server for spaceapi.ccc.de 2026-01-27 16:30:00 +01:00
200e8019ed
public-reverse-proxy: add config for local/lokal.ccc.de
local/lokal.ccc.de points to cpu.ccc.de.
2026-01-27 15:49:38 +01:00
c8edde4d11 Pretty up 2026-01-26 00:20:27 +01:00
0f3cd2c70a amcedns to enable Let's Encrypt DNS-01 challenges 2026-01-25 22:41:42 +01:00
c7d51af5b4
rollout Alloy to replace prometheus_node_exporter
With the new network we need to deploy a push based solution in order to get metrics into prometheus
2026-01-25 21:44:49 +01:00
11779ab21d
grafana: get alertmanager to be more chill
a bit of help to deal with alert fatigue
2026-01-25 21:41:20 +01:00
0939771d08
public-reverse-proxy(host): add entries for cpu.ccc.de 2026-01-25 20:22:44 +01:00
cee1fe970a Add spaceapiccc as a replacement for erfafoo 2026-01-25 14:03:54 +01:00
d514688574
systemd_networkd(role),router(host): support global config to fix forw.
With the router upgrade to Debian 13 the systemd version got upgraded as
well breaking the current configuration for IP forwarding.
Add a variable for global systemd-networkd configuration and use that to
enable IPv4 and IPv6 forwarding on the router.

The systemd_networkd role could be a bit nicer, not deploying/deleting
the global configuration, if the variable is empty and
reloading/restarting systemd-networkd at appropriate times. But as is
works for now.
2026-01-18 19:21:33 +01:00
428b5c70bc
pretalx(host): roll back to pretalx v2025.1.0 for celery as well 2026-01-13 14:19:57 +01:00
3e0fdfa8de
pretalx(host): roll back to pretalx v2025.1.0 as v2025.2.2 doesn't work 2026-01-13 03:43:28 +01:00
c638790819 Update all stable non-major dependencies 2026-01-12 02:30:47 +00:00
968e29ccb8
do v6-only for internal proxy protocol communication
Since we want to do v6-only internally, only listen on v6 for proxy
protocol.
This is also needed as we only have set_real_ip_from pointing to a v6.
2026-01-12 03:02:09 +01:00
255327952e
ntfy(host): move to new network and hostname 2026-01-11 03:57:11 +01:00
1971598e71
pretalx(host): move to new network and hostname 2026-01-11 03:23:18 +01:00
372f264bcb
ccchoir(host): move to new network and hostname 2026-01-11 03:23:14 +01:00
2fbb37db18
grafana(host): move to new network and hostname 2026-01-11 03:23:01 +01:00
bb30e88404
router(host): allowlist only certain icmpv6 types 2026-01-11 00:29:16 +01:00
a41b07949c
zammad(host): move to new network and hostname 2026-01-11 00:22:37 +01:00
ff550cbd8a
tickets(host): move to new network and hostname 2026-01-11 00:00:18 +01:00