aboutsummaryrefslogtreecommitdiffstats
path: root/roles
AgeCommit message (Collapse)Author
2019-02-09users: signout: update ssh keysEmil Renner Berthing
2019-01-29users: richard: addedRichard42Graham
2019-01-13users: optionally set user passwordEmil Renner Berthing
2019-01-13users: add more flexible user managementEmil Renner Berthing
Now user data is in roles/users/defaults/main.yml and each server should have a hash like this users: 'foo': sudo 'bar': true 'baz': false #'qux': false This means the user foo will be created with sudo access, the user bar will be created without sudo access, while baz and qux will be removed.
2019-01-13space_server: add xeroxwax printerEmil Renner Berthing
2019-01-10space_server: fix one last reference to the old prefixAsbjørn Sloth Tønnesen
Fixes: 78688483 space_server: add Asbjorn's colo addresses and net
2018-12-06jumbotron: autologin: fix unneeded calculationEmil Renner Berthing
2018-12-06space_server: networkd: fix unneeded calculationEmil Renner Berthing
2018-12-06debian: networkd: add networkd-wait-online supportEmil Renner Berthing
2018-12-05space_server: enable NAT64/DNS64 networkEmil Renner Berthing
2018-12-05space_server: avahi: ask myhostname 2ndEmil Renner Berthing
2018-12-05space_server: unbound: create /etc/resolv.confEmil Renner Berthing
2018-12-03users: esmil: add passwordEmil Renner Berthing
..so I can log in on a serial port and save the day. This is one way to generate the hashed password line: python <<EOF from passlib.hash import sha512_crypt import getpass print(sha512_crypt.using(rounds=5000).hash(getpass.getpass())) EOF
2018-12-03space_server: networkd: announce proper DNS on mgtEmil Renner Berthing
2018-12-03space_server: networkd: disable ARP on untagged interfaceEmil Renner Berthing
2018-11-30space_server: networkd: small cleanupsEmil Renner Berthing
2018-11-30space_server: use systemd-network for RAsEmil Renner Berthing
..rather radvd
2018-11-30space_server: networkd: use Link.RequiredForOnlineEmil Renner Berthing
..rather than overriding ExecStart to call networkd-wait-online with --ignore
2018-11-29space_server: use dnf_packages when possibleEmil Renner Berthing
2018-11-29space_server: radvd: wait-online.conf no longer neededEmil Renner Berthing
The package-provided radvd.service now has After=network-online.target Wants=network-online.target
2018-11-28space_server: nat Labitat free from 185.38.175.1Emil Renner Berthing
2018-11-28space_server: add Asbjorn's colo addresses and netAsbjørn Sloth Tønnesen
2018-11-28space_server: nftables: accept all traffic to colo netsEmil Renner Berthing
..but don't let colo servers connect to internal addresses.
2018-11-27space_server: radius: omit src when state != linkEmil Renner Berthing
This fixes some ansible warnings.
2018-11-24jumbotron: autologin: better set differenceEmil Renner Berthing
2018-11-24space_server: networkd: smarter set differenceEmil Renner Berthing
2018-11-23debian: apt: support Debian release overrideEmil Renner Berthing
2018-11-23debian: apt: install netbase and dialog by defaultEmil Renner Berthing
2018-11-23debian: apt: don't upgrade packagesEmil Renner Berthing
2018-11-22debian: apt: update and manage apt-preferences.dEmil Renner Berthing
2018-11-22space_server: radvd: up DNS server valid timeEmil Renner Berthing
2018-11-22space_server: bootstrap: chmod subvolumeEmil Renner Berthing
2018-11-16roles: use ' and " consistentlyEmil Renner Berthing
2018-11-16fedora: dnf: disable dnf-makecache.timer by defaultEmil Renner Berthing
2018-11-11fedora: align with debian roleEmil Renner Berthing
2018-11-10space_server: replace blackhole scriptEmil Renner Berthing
2018-11-10space_server: update for Fedora 29Emil Renner Berthing
2018-11-10space_server: drop uneccessary subdirsEmil Renner Berthing
2018-11-06space_server: add spacebrain.labitat.dkAsbjørn Sloth Tønnesen
2018-10-27space_server: radius: use python for ASSHA authEmil Renner Berthing
..rather than our own patched radiusd
2018-10-11Migrate to new ipv6 prefixEmil Renner Berthing
..to avoid overlapping /32 announced by DKUUG.
2018-10-11space_server: vars: move snakeskin.s ipEmil Renner Berthing
..out of dynamic dhcp range and clean up old sound server entries.
2018-10-09users: make user groups configurableEmil Renner Berthing
On the doorputer we want to put every user in both the dialout group and the sudo group
2018-10-08jumbotron: irssi: cleanupEmil Renner Berthing
the irssi package is already installed by the apt_packages.irssi = resent variable
2018-10-07raspbian: apt: stop running timers tooEmil Renner Berthing
2018-10-07debian: timezone: just create symlink in chrootEmil Renner Berthing
2018-10-07raspbian: apt: disable timers to save sd-card writesEmil Renner Berthing
2018-10-07jumbotron: console: make sure console-setup is enabledEmil Renner Berthing
2018-10-06users: esmil: add my plastik2 ssh keyEmil Renner Berthing
2018-10-06space_server: vars: fix doorputer MAC addressEmil Renner Berthing