feat(meta/organization): Split the file
All checks were successful
Check meta / check_meta (pull_request) Successful in 16s
Check meta / check_dns (pull_request) Successful in 16s
Check workflows / check_workflows (pull_request) Successful in 17s
Build all the nodes / netaccess01 (pull_request) Successful in 20s
Build all the nodes / netcore01 (pull_request) Successful in 20s
Build all the nodes / ap01 (pull_request) Successful in 32s
Build all the nodes / netcore02 (pull_request) Successful in 39s
Build the shell / build-shell (pull_request) Successful in 25s
Run pre-commit on all files / pre-commit (pull_request) Successful in 44s
Build all the nodes / hypervisor01 (pull_request) Successful in 1m40s
Build all the nodes / build01 (pull_request) Successful in 1m41s
Build all the nodes / bridge01 (pull_request) Successful in 1m47s
Build all the nodes / hypervisor03 (pull_request) Successful in 1m51s
Build all the nodes / rescue01 (pull_request) Successful in 1m52s
Build all the nodes / tower01 (pull_request) Successful in 1m40s
Build all the nodes / geo01 (pull_request) Successful in 1m57s
Build all the nodes / hypervisor02 (pull_request) Successful in 1m58s
Build all the nodes / storage01 (pull_request) Successful in 2m4s
Build all the nodes / geo02 (pull_request) Successful in 2m26s
Build all the nodes / web02 (pull_request) Successful in 2m5s
Build all the nodes / web03 (pull_request) Successful in 2m7s
Build all the nodes / web01 (pull_request) Successful in 2m14s
Build all the nodes / vault01 (pull_request) Successful in 2m22s
Build all the nodes / compute01 (pull_request) Successful in 2m42s
Check meta / check_dns (push) Successful in 16s
Check meta / check_meta (push) Successful in 17s
Build all the nodes / netcore02 (push) Successful in 20s
Build all the nodes / netaccess01 (push) Successful in 20s
Build all the nodes / ap01 (push) Successful in 32s
Build all the nodes / netcore01 (push) Successful in 31s
Build all the nodes / hypervisor01 (push) Successful in 1m30s
Build all the nodes / hypervisor02 (push) Successful in 1m30s
Build all the nodes / bridge01 (push) Successful in 1m35s
Build all the nodes / geo02 (push) Successful in 1m36s
Build all the nodes / build01 (push) Successful in 1m37s
Build all the nodes / hypervisor03 (push) Successful in 1m39s
Build all the nodes / geo01 (push) Successful in 1m41s
Build all the nodes / tower01 (push) Successful in 1m24s
Build all the nodes / rescue01 (push) Successful in 1m32s
Build all the nodes / storage01 (push) Successful in 1m37s
Run pre-commit on all files / pre-commit (push) Successful in 24s
Build the shell / build-shell (push) Successful in 32s
Build all the nodes / web02 (push) Successful in 1m34s
Build all the nodes / vault01 (push) Successful in 1m57s
Build all the nodes / compute01 (push) Successful in 2m23s
Build all the nodes / web01 (push) Successful in 2m18s
Build all the nodes / web03 (push) Successful in 1m36s

This commit is contained in:
Tom Hubrecht 2025-02-16 16:03:41 +01:00 committed by thubrecht
parent 6cc74e8d2a
commit e0a0bc8c5f
4 changed files with 137 additions and 84 deletions

View file

@ -0,0 +1,11 @@
# SPDX-FileCopyrightText: 2024 Tom Hubrecht <tom.hubrecht@dgnum.eu>
#
# SPDX-License-Identifier: EUPL-1.2
{
imports = [
./groups.nix
./members.nix
./services.nix
];
}

View file

@ -0,0 +1,58 @@
# SPDX-FileCopyrightText: 2024 Tom Hubrecht <tom.hubrecht@dgnum.eu>
# SPDX-FileContributor: Constantin Gierczak--Galle <cst@dgnum.eu>
# SPDX-FileContributor: Elias Coppens <elias.coppens@dgnum.eu>
# SPDX-FileContributor: Lubin Bailly <lubin.bailly@dgnum.eu>
# SPDX-FileContributor: Maurice Debray <maurice.debray@dgnum.eu>
# SPDX-FileContributor: Ryan Lahfa <ryan.lahfa@dgnum.eu>
#
# SPDX-License-Identifier: EUPL-1.2
/*
To add a new member add an attribute to `members`
Then add the key to the required groups.
*/
{
organization = {
groups = {
# members of this group are root on all nodes
root = [
"thubrecht"
"raito"
"mdebray"
];
bureau = [
"jemagius"
"raito"
"mdebray"
"ecoppens"
];
# members of this group are root on the fai infrastructure
fai = [
"catvayor"
"ecoppens"
];
lab = [
"catvayor"
"cst1"
"ecoppens"
];
hypervisors = [
"catvayor"
"ecoppens"
];
nix-builder = [
"catvayor"
"ecoppens"
"mdebray"
"raito"
"thubrecht"
];
};
};
}

View file

@ -113,89 +113,5 @@
];
};
};
groups = {
# members of this group are root on all nodes
root = [
"thubrecht"
"raito"
"mdebray"
];
bureau = [
"jemagius"
"raito"
"mdebray"
"ecoppens"
];
# members of this group are root on the fai infrastructure
fai = [
"catvayor"
"ecoppens"
];
lab = [
"catvayor"
"cst1"
"ecoppens"
];
hypervisors = [
"catvayor"
"ecoppens"
];
nix-builder = [
"catvayor"
"ecoppens"
"mdebray"
"raito"
"thubrecht"
];
};
external = {
dns = [
"thubrecht"
"raito"
];
email = [ "raito" ];
irc = [ "raito" ];
};
services = {
# DG·SI
dgsi.admins = [
"mdebray"
"raito"
"thubrecht"
];
# Démarches Normaliennes
ds-fr.admins = [
"thubrecht"
"jemagius"
];
# Cloud DGNum
nextcloud.admins = [
"jemagius"
"mdebray"
"raito"
"thubrecht"
];
# Netbox DGNum
netbox.adminGroups = [
"root"
"fai"
];
# Videos DGNum
peertube.admins = [ "thubrecht" ];
};
};
}

View file

@ -0,0 +1,68 @@
# SPDX-FileCopyrightText: 2024 Tom Hubrecht <tom.hubrecht@dgnum.eu>
#
# SPDX-License-Identifier: EUPL-1.2
# INFO: This file serves to publicize who are the administrators of
# certain services
{
organization = {
external = {
dns = [
"thubrecht"
"raito"
];
email = [ "raito" ];
irc = [ "raito" ];
};
services = {
# DG·SI
dgsi.admins = [
"mdebray"
"raito"
"thubrecht"
];
# Démarches Normaliennes
ds-fr.admins = [
"thubrecht"
"jemagius"
];
# Forge git
forgejo.admins = [
"ecoppens"
"mdebray"
"raito"
"thubrecht"
];
# SSO and IdM
kanidm.admins = [
"mdebray"
"raito"
"thubrecht"
];
# Netbox DGNum
netbox.adminGroups = [
"root"
"fai"
];
# Cloud DGNum
nextcloud.admins = [
"jemagius"
"mdebray"
"raito"
"thubrecht"
];
# Videos DGNum
peertube.admins = [ "thubrecht" ];
};
};
}