<feed xmlns='http://www.w3.org/2005/Atom'>
<title>labitat-ansible/roles/sky, branch new_prefixes</title>
<subtitle>Unnamed repository; edit this file 'description' to name the repository.
</subtitle>
<link rel='alternate' type='text/html' href='https://git.2e8.dk/labitat/labitat-ansible/'/>
<entry>
<title>sky: vars: add hafnium as a sudo user</title>
<updated>2023-07-26T19:45:25+00:00</updated>
<author>
<name>Hafnium</name>
<email>haf@hafnium.me</email>
</author>
<published>2023-07-19T15:23:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.2e8.dk/labitat/labitat-ansible/commit/?id=1f6596628b6894cdadb651bfa3c6825d22eb7785'/>
<id>1f6596628b6894cdadb651bfa3c6825d22eb7785</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>sky: homepage: set up the frontpage of labitat.dk</title>
<updated>2023-01-27T10:19:24+00:00</updated>
<author>
<name>Joshua Hull</name>
<email>josh@fireflop.com</email>
</author>
<published>2023-01-15T09:49:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.2e8.dk/labitat/labitat-ansible/commit/?id=50d0af489296a42f8773066ffc37265dab1d5b0a'/>
<id>50d0af489296a42f8773066ffc37265dab1d5b0a</id>
<content type='text'>
esmil:
- use timer to update the homepage
- git clone/update and install gems as the homepage user
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
esmil:
- use timer to update the homepage
- git clone/update and install gems as the homepage user
</pre>
</div>
</content>
</entry>
<entry>
<title>sky: certbot: configure certbot</title>
<updated>2023-01-27T00:25:24+00:00</updated>
<author>
<name>Joshua Hull</name>
<email>josh@fireflop.com</email>
</author>
<published>2023-01-15T09:49:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.2e8.dk/labitat/labitat-ansible/commit/?id=0562d72eaafaedf0f10414e0b42fa92d248c60f3'/>
<id>0562d72eaafaedf0f10414e0b42fa92d248c60f3</id>
<content type='text'>
esmil:
- don't install cron job, just use the packaged timer
- install deploy hook to reload nginx when certificates are updated
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
esmil:
- don't install cron job, just use the packaged timer
- install deploy hook to reload nginx when certificates are updated
</pre>
</div>
</content>
</entry>
<entry>
<title>sky: add role for new labitat.dk server</title>
<updated>2023-01-27T00:25:24+00:00</updated>
<author>
<name>Emil Renner Berthing</name>
<email>esmil@labitat.dk</email>
</author>
<published>2023-01-19T20:51:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.2e8.dk/labitat/labitat-ansible/commit/?id=cd9597103b864dfba9ab8f707f2f5a54b42d6a4a'/>
<id>cd9597103b864dfba9ab8f707f2f5a54b42d6a4a</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>nginx: add common role for nginx</title>
<updated>2023-01-26T23:32:09+00:00</updated>
<author>
<name>Joshua Hull</name>
<email>josh@fireflop.com</email>
</author>
<published>2023-01-15T09:49:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.2e8.dk/labitat/labitat-ansible/commit/?id=6bbdee9dc9333e94d13e8653ee3bb5626aa754b5'/>
<id>6bbdee9dc9333e94d13e8653ee3bb5626aa754b5</id>
<content type='text'>
esmil:
- disable access log and log errors to syslog (journal really)
  use journalctl -u nginx to see the errors
- hoist some configuration values into ansible variables
- add tags and use a handler to reload nginx on configuration changes
- make nginx do its DNS queries against our local resolved
  this enables nginx to use DNSSEC and DoT
- don't start nginx before the network is up. if it can't do
  dns lookups ssl_stapling will be ignored
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
esmil:
- disable access log and log errors to syslog (journal really)
  use journalctl -u nginx to see the errors
- hoist some configuration values into ansible variables
- add tags and use a handler to reload nginx on configuration changes
- make nginx do its DNS queries against our local resolved
  this enables nginx to use DNSSEC and DoT
- don't start nginx before the network is up. if it can't do
  dns lookups ssl_stapling will be ignored
</pre>
</div>
</content>
</entry>
</feed>
