Commit graph

1554 commits

Author SHA1 Message Date
f1ac40f432
Reduce pihole cache size
Some checks failed
/ terraform (push) Successful in 1m9s
/ ansible (push) Failing after 2m11s
This is still a lot of records, and pihole complains with values any larger
2023-11-05 13:22:05 +00:00
850278ab19
Allow nebula through firewall
Some checks failed
/ terraform (push) Successful in 1m6s
/ ansible (push) Failing after 2m8s
2023-11-03 18:06:36 +00:00
b1284877a3
Update blackbox configuration for not following redirects
Some checks failed
/ terraform (push) Successful in 30s
/ ansible (push) Failing after 1m23s
2023-11-01 22:14:35 +00:00
6b4285a264
Let alertmanager run as its own user
It's already not-root, and can't access the filesystem anyway
2023-11-01 22:13:37 +00:00
3ed786336e
Remove wireguard_53
Some checks failed
/ terraform (push) Successful in 34s
/ ansible (push) Failing after 1m25s
I never used it - no reason to maintain it
2023-10-26 21:50:22 +01:00
9f83efa53b
Use nftables for firewall on ingress
See ya never, iptables!
2023-10-26 21:34:06 +01:00
54e2205e48
Don't bother renaming speedtest metrics
Some checks failed
/ terraform (push) Successful in 32s
/ ansible (push) Failing after 1m20s
2023-10-23 22:09:25 +01:00
c29dfb5ad2
Add hostname label for blackbox
Some checks failed
/ terraform (push) Successful in 37s
/ ansible (push) Failing after 1m22s
2023-10-23 21:06:43 +01:00
2bd22cb2f6 Update lscr.io/linuxserver/nextcloud Docker tag to v27.1.2
All checks were successful
/ terraform (push) Successful in 35s
/ ansible (push) Successful in 1m51s
2023-10-15 21:36:02 +01:00
a1d92ef080 Update lscr.io/linuxserver/mastodon Docker tag to v4.2.1
All checks were successful
/ ansible (push) Successful in 2m4s
/ terraform (push) Successful in 34s
2023-10-15 21:35:23 +01:00
70ad33189c Update gitea/gitea Docker tag to v1.20.5
All checks were successful
/ ansible (push) Successful in 2m13s
/ terraform (push) Successful in 28s
2023-10-15 21:34:29 +01:00
92914303ad Update matrixdotorg/synapse Docker tag to v1.94.0
All checks were successful
/ terraform (push) Successful in 46s
/ ansible (push) Successful in 2m21s
2023-10-15 21:33:22 +01:00
a1a61f1069 Update wallabag/wallabag Docker tag to v2.6.7
All checks were successful
/ terraform (push) Successful in 30s
/ ansible (push) Successful in 2m6s
2023-10-15 21:32:01 +01:00
4950082c28
Remove deprecated gitea config settings
All checks were successful
/ terraform (push) Successful in 1m13s
/ ansible (push) Successful in 2m20s
2023-10-15 21:27:23 +01:00
ad867f9654
Add JWT secret for gitea
This appeared in my config - it's probably important
2023-10-15 18:55:24 +01:00
ad3b5bc42d
Move repo archive to "files" subvolume
It's better suited for this kind of file storage
2023-10-15 18:53:30 +01:00
0780d255ed
Remove grafana-cloud
All checks were successful
/ terraform (push) Successful in 1m28s
/ ansible (push) Successful in 2m54s
I've migrated back to Uptime Robot, for simplicity. Sadly their API limits make it almost impossible to properly Terraform.
2023-10-09 19:48:39 +01:00
37b8c48a77
Remove legacy short domains
All checks were successful
/ terraform (push) Successful in 1m24s
/ ansible (push) Successful in 2m47s
I never used them, and the certificate renewal didn't work anyway.
2023-10-02 09:37:05 +01:00
54c88d4253
Fix lint issues
All checks were successful
/ terraform (push) Successful in 42s
/ ansible (push) Successful in 1m56s
2023-10-01 17:10:37 +01:00
5770ab4a59
Sync dokku data to tank
This is much easier than mounting the files themselves
2023-10-01 17:06:09 +01:00
3b303e4940
Deploy db-auto-backup to dokku
It might have DBs somewhen
2023-10-01 16:47:06 +01:00
a54a91ea44
Deploy a dokku 2023-10-01 16:34:01 +01:00
b02be4e77a
Add email to Vikunja
Some checks failed
/ terraform (push) Successful in 1m26s
/ ansible (push) Failing after 2m48s
2023-10-01 14:08:25 +01:00
28a5089190
Bootstrap a new dokku machine on PVE
Some checks failed
/ terraform (push) Successful in 41s
/ ansible (push) Failing after 2m3s
2023-09-29 22:03:23 +01:00
12c46e50b5
Decommission grimes
All checks were successful
/ terraform (push) Successful in 41s
/ ansible (push) Successful in 2m10s
Dokku will return, soon...
2023-09-29 21:42:05 +01:00
90c9164306 Update renovate/renovate Docker tag to v37
All checks were successful
/ terraform (push) Successful in 42s
/ ansible (push) Successful in 1m56s
2023-09-27 16:00:37 +01:00
a1285612f1
Increase pihole cache
Some checks failed
/ terraform (push) Failing after 2m46s
/ ansible (push) Successful in 3m45s
2023-09-24 13:45:40 +01:00
1801a21e5d
Update nextcloud config to 27.1.1
All checks were successful
/ terraform (push) Successful in 50s
/ ansible (push) Successful in 2m7s
2023-09-23 21:51:15 +01:00
60d6be41ab Update lscr.io/linuxserver/nextcloud Docker tag to v27.1.1
All checks were successful
/ terraform (push) Successful in 52s
/ ansible (push) Successful in 2m8s
2023-09-23 21:42:32 +01:00
5c247013fb Update lscr.io/linuxserver/mastodon Docker tag to v4.2.0
All checks were successful
/ terraform (push) Successful in 55s
/ ansible (push) Successful in 2m9s
2023-09-23 21:40:04 +01:00
ea33feb643 Update matrixdotorg/synapse Docker tag to v1.92.3
All checks were successful
/ terraform (push) Successful in 1m35s
/ ansible (push) Successful in 2m44s
2023-09-23 13:57:28 +01:00
7de73287fd
Move spotify proxy alongside website
All checks were successful
/ ansible (push) Successful in 2m25s
/ terraform (push) Successful in 1m3s
That's all it's really used for right now.
2023-09-21 14:20:54 +01:00
27da7a7494
Fix occ command
All checks were successful
/ terraform (push) Successful in 57s
/ ansible (push) Successful in 2m16s
2023-09-18 19:21:42 +01:00
0789abaa0b
Update nextcloud config version 2023-09-18 18:49:04 +01:00
d3c6e65053
Change sensitivity to medium for all alerts
It's a bit too flaky for 95%
2023-09-18 18:36:06 +01:00
c2989aad5c Update lscr.io/linuxserver/nextcloud Docker tag to v27.1.0
All checks were successful
/ terraform (push) Successful in 1m2s
/ ansible (push) Successful in 2m8s
2023-09-18 18:35:09 +01:00
61088d18f6 Update matrixdotorg/synapse Docker tag to v1.92.2
All checks were successful
/ terraform (push) Successful in 1m49s
/ ansible (push) Successful in 3m7s
2023-09-15 16:00:30 +01:00
5419e173d5 Update matrixdotorg/synapse Docker tag to v1.91.2
All checks were successful
/ terraform (push) Successful in 47s
/ ansible (push) Successful in 2m19s
2023-09-10 21:02:18 +01:00
d9a50cce64 Update lscr.io/linuxserver/mastodon Docker tag to v4.1.7
All checks were successful
/ terraform (push) Successful in 47s
/ ansible (push) Successful in 2m29s
2023-09-10 21:01:50 +01:00
2303f7b247 Update wallabag/wallabag Docker tag to v2.6.6
All checks were successful
/ terraform (push) Successful in 56s
/ ansible (push) Successful in 2m46s
2023-09-10 21:00:55 +01:00
3deda7bde7 Update gitea/gitea Docker tag to v1.20.4
All checks were successful
/ terraform (push) Successful in 1m27s
/ ansible (push) Successful in 3m28s
2023-09-08 10:00:33 +01:00
e56ffa576f
Deploy vikunja
All checks were successful
/ terraform (push) Successful in 1m2s
/ ansible (push) Successful in 2m32s
2023-09-07 20:18:32 +01:00
d16feb2f89
Override DNS for vaultwarden
All checks were successful
/ terraform (push) Successful in 46s
/ ansible (push) Successful in 2m13s
Make sure it finds icons for local applications
2023-09-07 18:04:03 +01:00
4aa4ac24d4
The partial probe map is enough for global coverage
All checks were successful
/ terraform (push) Successful in 47s
/ ansible (push) Successful in 2m2s
2023-09-06 19:30:12 +01:00
a1bed2ca9f
Reduce frequency on some monitoring probes
The frequency is per-region, so it's still quite regular
2023-09-06 19:22:02 +01:00
bdf48295a6 Update matrixdotorg/synapse Docker tag to v1.91.0
All checks were successful
/ terraform (push) Successful in 50s
/ ansible (push) Successful in 2m20s
2023-09-03 21:17:27 +01:00
9644a09021 Update vabene1111/recipes Docker tag to v1.5.6
All checks were successful
/ terraform (push) Successful in 46s
/ ansible (push) Successful in 2m11s
2023-09-03 21:09:24 +01:00
d120274b00 Update vaultwarden/server Docker tag to v1.29.2
All checks were successful
/ terraform (push) Successful in 1m29s
/ ansible (push) Successful in 2m56s
2023-09-03 21:06:33 +01:00
5a0df92a6a
Disable ip_forward
All checks were successful
/ terraform (push) Successful in 1m4s
/ ansible (push) Successful in 2m20s
I don't need P2P comms for this, so disable this for extra security.

I should add a proper firewall at some point...
2023-09-01 19:52:36 +01:00
81ccfeed30
Add helper to edit ansible vault
All checks were successful
/ terraform (push) Successful in 1m47s
/ ansible (push) Successful in 3m1s
2023-08-31 09:21:14 +01:00