Age | Commit message (Collapse) | Author | |
---|---|---|---|
2019-04-03 | space_server: vars: add SIP box as voip.s | Emil Renner Berthing | |
2019-04-03 | space_server: dhcpd: reclaim 10.42.0.70 | Emil Renner Berthing | |
There used to be a server with this address, so the available dhcp range had to be broken up. | |||
2019-04-03 | space_server: dhcpd: add hosts to .dhcp zone | Emil Renner Berthing | |
Only requests with the host-name header set will be added to the dhcp zone (so it can be looked up at <hostname>.dhcp). This will fail if the host-name is not a valid dns name though. Also leases on the member wired, member wireless, and free are added to the zone, but just like the s zone the dhcp zone and reverse dns for 10.42.0.0/16 cannot be queried from Labitat (free). This way you can connect gadgets to Labitat (free), but still look them up in dns and connect to them from the member networks. | |||
2019-04-03 | space_server: named: support dynamic updates | Emil Renner Berthing | |
..of the dhcp zone and reverse dns for 10.42.0.0/16 This way the dhcp daemon can add entries when it handles out leases. | |||
2019-04-02 | space_server: named: create reverse ipv4 zone | Emil Renner Berthing | |
2019-04-01 | space_server: vars: rework local_hosts | Emil Renner Berthing | |
..to get rid of the need for ipv4/ipv6 filters and python-netaddr dependency. | |||
2019-04-01 | space_server: named: use named instead of unbound | Emil Renner Berthing | |
This reverts commit 3b795796bd03488a385f3ad42b10b8c0d61282c1, "space_server: unbound: use unbound instad of bind". Unlike unbound, bind supports synthesizing DNS64 answers only for certain clients, so only requests from the Labitat NAT64 network will get DNS64 answers. | |||
2019-03-31 | space_server: kernel: make sure selinux is disabled | Emil Renner Berthing | |
2019-03-31 | space_server: dhcpd: update dhcpd.conf | Emil Renner Berthing | |
Host declerations are global and dhcpd has been warning about this for some time. | |||
2019-03-31 | space_server: vars: remove old AP | Emil Renner Berthing | |
..and unused ip address for ap2 | |||
2019-01-13 | users: add more flexible user management | Emil Renner Berthing | |
Now user data is in roles/users/defaults/main.yml and each server should have a hash like this users: 'foo': sudo 'bar': true 'baz': false #'qux': false This means the user foo will be created with sudo access, the user bar will be created without sudo access, while baz and qux will be removed. | |||
2019-01-13 | space_server: add xeroxwax printer | Emil Renner Berthing | |
2019-01-10 | space_server: fix one last reference to the old prefix | Asbjørn Sloth Tønnesen | |
Fixes: 78688483 space_server: add Asbjorn's colo addresses and net | |||
2018-12-06 | space_server: networkd: fix unneeded calculation | Emil Renner Berthing | |
2018-12-05 | space_server: enable NAT64/DNS64 network | Emil Renner Berthing | |
2018-12-05 | space_server: avahi: ask myhostname 2nd | Emil Renner Berthing | |
2018-12-05 | space_server: unbound: create /etc/resolv.conf | Emil Renner Berthing | |
2018-12-03 | space_server: networkd: announce proper DNS on mgt | Emil Renner Berthing | |
2018-12-03 | space_server: networkd: disable ARP on untagged interface | Emil Renner Berthing | |
2018-11-30 | space_server: networkd: small cleanups | Emil Renner Berthing | |
2018-11-30 | space_server: use systemd-network for RAs | Emil Renner Berthing | |
..rather radvd | |||
2018-11-30 | space_server: networkd: use Link.RequiredForOnline | Emil Renner Berthing | |
..rather than overriding ExecStart to call networkd-wait-online with --ignore | |||
2018-11-29 | space_server: use dnf_packages when possible | Emil Renner Berthing | |
2018-11-29 | space_server: radvd: wait-online.conf no longer needed | Emil Renner Berthing | |
The package-provided radvd.service now has After=network-online.target Wants=network-online.target | |||
2018-11-28 | space_server: nat Labitat free from 185.38.175.1 | Emil Renner Berthing | |
2018-11-28 | space_server: add Asbjorn's colo addresses and net | Asbjørn Sloth Tønnesen | |
2018-11-28 | space_server: nftables: accept all traffic to colo nets | Emil Renner Berthing | |
..but don't let colo servers connect to internal addresses. | |||
2018-11-27 | space_server: radius: omit src when state != link | Emil Renner Berthing | |
This fixes some ansible warnings. | |||
2018-11-24 | space_server: networkd: smarter set difference | Emil Renner Berthing | |
2018-11-22 | space_server: radvd: up DNS server valid time | Emil Renner Berthing | |
2018-11-22 | space_server: bootstrap: chmod subvolume | Emil Renner Berthing | |
2018-11-11 | fedora: align with debian role | Emil Renner Berthing | |
2018-11-10 | space_server: replace blackhole script | Emil Renner Berthing | |
2018-11-10 | space_server: update for Fedora 29 | Emil Renner Berthing | |
2018-11-10 | space_server: drop uneccessary subdirs | Emil Renner Berthing | |
2018-11-06 | space_server: add spacebrain.labitat.dk | Asbjørn Sloth Tønnesen | |
2018-10-27 | space_server: radius: use python for ASSHA auth | Emil Renner Berthing | |
..rather than our own patched radiusd | |||
2018-10-11 | Migrate to new ipv6 prefix | Emil Renner Berthing | |
..to avoid overlapping /32 announced by DKUUG. | |||
2018-10-11 | space_server: vars: move snakeskin.s ip | Emil Renner Berthing | |
..out of dynamic dhcp range and clean up old sound server entries. | |||
2018-10-06 | space_server: vars: fix doorputer MAC address | Emil Renner Berthing | |
2018-10-06 | space_server: move variables from defaults to vars | Emil Renner Berthing | |
these variables only applies to the space server and should never be overwritten from somewhere else | |||
2018-10-03 | all: add site-wide locale/timezone default | Emil Renner Berthing | |
2018-10-03 | fedora: locale: align variable layout with debian | Emil Renner Berthing | |
2018-10-02 | space_server: networkd: delete leftover configuration | Emil Renner Berthing | |
2018-10-02 | space_server: networkd: don't restart running networkd | Emil Renner Berthing | |
..this might cut the pipe we're connected through, and new network configuration should be tested to work after reboot anyway | |||
2018-10-02 | space_server: defaults: added snakeskin rpi | max campbell | |
2018-09-30 | Make it easier to run locally | Emil Renner Berthing | |
Now you just need ansible-playbook <playbook> when running ansible from your workstation. However when running ansible on the target machine it's a good idea to add "-clocal". Otherwise ansible will ssh to itself :/ | |||
2018-09-30 | space_server: sshd: keep host keys in secrets.yml | Emil Renner Berthing | |
2018-09-26 | space_server: kernel: better cmdline template | Emil Renner Berthing | |
2018-09-26 | Format yaml lists like yaml.org | Emil Renner Berthing | |