ecf39c6bb8
fix(web03/postgresql): Increase the maximum number of connexions
2025-04-01 18:23:29 +02:00
sinavir
aed96b16e1
feat(monitoring): drop prometheus in favor of victorialogs
2025-04-01 17:04:54 +02:00
sinavir
e2b916e649
feat(forgejo): Enable captcha for registration
2025-04-01 16:35:21 +02:00
sinavir
bb73cc2a13
fix(arkheon): Simplify module
2025-04-01 11:59:21 +02:00
f8c058d3e4
chore(dgsi): add django REST framework & drf spectacular
...
Co-Authored-By: Tom Hubrecht <tom.hubrecht@dgnum.eu>
2025-04-01 11:22:58 +02:00
sinavir
7dd7251f41
feat(garage): init 48h-arts bucket
2025-03-31 21:00:45 +02:00
sinavir
f184aa7956
feat(garage): Add citoyens-website
2025-03-27 12:23:18 +01:00
1fcc0844ca
feat(cof-stage): add bulma package for current development
2025-03-19 15:50:30 +01:00
b1cfe1bc16
feat(cof-stage): add staging branch
2025-03-19 15:50:30 +01:00
98cbe3ce69
fix(cof-staging): DEBUG flag
2025-03-19 15:50:30 +01:00
sinavir
2aac734fa6
fix: Use ens ntp for some machines
2025-03-14 03:01:59 +01:00
sinavir
26833e7b64
fix(forgejo): Move repo archives and actions_artifact to our big slow disks
2025-03-14 01:34:29 +01:00
959d5ae501
fix(collabora): use stable collabora
2025-03-13 16:46:52 +01:00
19ec8d2bab
fix(openbao): Correctly use UMask feature, tcp listener and genJqScript
2025-03-13 16:19:00 +01:00
a03164240e
feat(machines/storage01): init openbao
...
Signed-off-by: Elias Coppens <elias@dgnum.eu>
2025-03-11 11:56:15 +01:00
bd4c64db02
feat(cof02): init cof staging vm
...
The purpose of cof02 is to allow presenting under development features
on gestiocof, or check that the next update of gestiocof works in
production-like environment, by placing it in a near perfect copy of
this environment
2025-03-10 10:19:04 +01:00
sinavir
e208be6037
fix(radius): Be less verbose in the logs not to overflow journald
2025-03-09 18:34:20 +01:00
c01d4ba9c3
feat(web03/gestiojeux): Update settigns
2025-03-07 23:03:55 +01:00
20334be668
feat(compute01): Deploy a copy of netbox
2025-03-01 16:59:55 +01:00
953b69b1c6
fix(vault01/victorialogs): listen netbird & aps
2025-03-01 16:49:32 +01:00
9e4dec4fc0
feat(vault01): Deploy victorialogs to prepare the collect of the AP logs
2025-03-01 16:49:32 +01:00
3dd4619aa7
fix(nextcloud): Disable automatic app update
2025-03-01 14:00:23 +01:00
b7c225a9cd
feat(web03/gestioCOF): passing in cof-prod branch
2025-02-26 09:12:02 +01:00
97e4ed43d5
feat(web03/gestioCOF): email config
2025-02-25 11:37:27 +01:00
b524b96fce
feat(web03/gestiocof): timers
2025-02-24 17:48:00 +01:00
5a37cf7d64
feat(web02): Switch to django-apps for deploying kadenios
2025-02-24 17:47:13 +01:00
80ede4b1f6
feat(web03): Do the migration
2025-02-24 15:33:42 +01:00
34b22ae119
chore(web03/secrets): Rekey
2025-02-24 12:12:10 +01:00
9395a96337
test(vault01/network): use netchecker to see connectivity looses
2025-02-23 09:48:37 +01:00
438b86d088
fix(web03/gestiocof): Use correct file
2025-02-20 12:49:35 +01:00
a86609ca90
feat(web03): Prepare the migration by setting up the sympa credentials
2025-02-19 10:32:05 +01:00
34f1a36b5e
feat(web01/wordpress): Deploy npr.wp.dgnum.eu
2025-02-16 00:35:24 +01:00
8d2be99daf
feat(compute01/kanidm): Generate the VLAN groups
2025-02-11 15:07:13 +01:00
0235b77777
fix(compute01/extranix): Make it build
2025-02-09 23:05:39 +01:00
3dd314e78c
feat(compute01/grafana): Add victoria* data sources
2025-02-09 22:58:41 +01:00
3678c24ed4
feat(modules/dgn-monitoring): Replace dgn-node-monitoring
2025-02-09 00:30:46 +01:00
358b5a6497
feat(storage01): Deploy VictoriaMetrics and VictoriaLogs on the VPN
2025-02-09 00:30:46 +01:00
7eef4e2661
feat(meta): Use the module system to directly create the admin list from the groups
2025-02-06 13:41:03 +01:00
sinavir
e0759140cc
chore: Refactor meta to a module architecture
...
Get rid of the weird half nix half module stuff.
2025-02-06 13:08:04 +01:00
b5fe7bd71f
feat(machines/nixos/build01/nix-builder): add builder-specific keys via dgn-keys
...
Reuses the commit on builder-specific keys.
Signed-off-by: Ryan Lahfa <ryan@dgnum.eu>
2025-02-06 01:30:45 +01:00
551c75ac47
feat(machines/nixos/build01/nix-builder): enable trusted remote building
...
This enables any nix-builder to be able to remote build with the trusted
bit in Nix.
This effectively gives root to all these people, I don't think it's a
big deal.
Signed-off-by: Ryan Lahfa <ryan@dgnum.eu>
2025-02-06 01:30:45 +01:00
c5623896f3
feat(isp/legal): scripts to reply to legal request
2025-02-05 17:05:01 +01:00
a305a69aad
fix(bridge01/network): hack! resolve arp of the router
2025-02-05 16:20:33 +01:00
b3eb86c0a1
feat(ISP/firewall): forward filtering
...
removes the snat filtering of preliminar tests
2025-02-05 15:52:06 +01:00
sinavir
902cce4edb
fix(bridge01): Make it finally work
2025-02-05 12:32:58 +01:00
sinavir
2f2cee559e
feat(sso/groups): Add grp_cri_nps
2025-02-05 10:56:37 +01:00
sinavir
bbdc5ef6da
fix(web03/ernestophone): Missing secrets
2025-02-04 14:06:46 +01:00
fabfc982f2
feat(compute01/dgsi): Update
2025-02-02 11:12:04 +01:00
sinavir
9e0e7d01ec
feat(garage/actes-administratifs): Init bucket
2025-02-02 11:09:27 +01:00
2c59fd4e81
feat(dgsi): Update staff group
2025-01-30 17:34:04 +01:00