Yohann D'ANELLO
|
3deae233b1
|
[Jitsi] Add Jitsi role
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-03-04 16:12:43 +01:00 |
Yohann D'ANELLO
|
91d777ffba
|
[certbot] Generate wildcard certificates by default
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-03-04 11:45:17 +01:00 |
Yohann D'ANELLO
|
9f97936635
|
[reverseproxy] stream.crans.org is not reverse-proxyfied
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-03-04 10:53:48 +01:00 |
Yohann D'ANELLO
|
5aeefd730e
|
[root] Sputnik is using deb.debian.org
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-03-01 16:20:04 +00:00 |
Yohann D'ANELLO
|
08f359cc9c
|
[crans_scripts] Gitlab is talking HTTPS
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-03-01 16:20:04 +00:00 |
_shirenn
|
f5e7405188
|
[root] split root play and deploy root password
|
2021-03-01 16:20:04 +00:00 |
Yohann D'ANELLO
|
5324bd240d
|
[network_interfaces] Query IPs and gateways in LDAP
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-03-01 16:20:04 +00:00 |
Yohann D'ANELLO
|
cb8f5b1537
|
Load vault passwords from local password store, then cache them
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-28 16:08:27 +00:00 |
_shirenn
|
5661bb4bf6
|
[dhcp] Restart isc-dhcp-server only if it is already running
|
2021-02-23 23:28:20 +01:00 |
Yohann D'ANELLO
|
c2eb610edf
|
[gitlab] vault_ => vault.
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:34:30 +01:00 |
Yohann D'ANELLO
|
23371f7cb1
|
[gitlab] Rename git to gitlab
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:30:29 +01:00 |
Yohann D'ANELLO
|
98eaeaa53b
|
[gitlab] Install irker from Debian Sid to add IRC webhooks
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:29:58 +01:00 |
Yohann D'ANELLO
|
e6c4b70efd
|
(gitlab] Configure nginx reverse-proxy to manage multiple certificates
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:29:57 +01:00 |
_shirenn
|
b152c48ed3
|
[gitlab] smtp server and https push
|
2021-02-22 23:29:56 +01:00 |
Yohann D'ANELLO
|
d383ca4b8b
|
[gitlab/nginx] Add nginx configuration for Gitlab
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:29:56 +01:00 |
Yohann D'ANELLO
|
6fb4783152
|
[gitlab] Gitlab is talking to re2o-ldap, not thot
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:29:56 +01:00 |
ynerant
|
63d4164ba0
|
Cransible Gitlab configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 23:29:55 +01:00 |
Yohann D'ANELLO
|
6d35dcd7e8
|
[nginx/mailman] Fix configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
28a6fd4be6
|
[thelounge] Rename thelounge ldap password
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
661682c550
|
[nginx/moinmoin] Fix moinmoin configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
6b8fb0916f
|
[nginx/moinmoin] Extract nginx configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
d6f15d4210
|
[nginx/cas] Factorize nginx configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
82119c746e
|
[nginx] Define proper set_realip_from
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
3b79c0177c
|
[nginx] Don't deploy SSL configuration if we don't need one
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
8d8c212f49
|
[nginx/roundcube] Factorize configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
2c9b89a74d
|
[thelounge] Rename irc to thelounge
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
1ec1aeca90
|
[thelounge] vault_ldap_thelounge_password -> vault.ldap_thelounge_password
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
44cf074a39
|
[nginx] Add feature to add additional params to a nginx server
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
de58138a22
|
[nginx] Multiple certficates are compatible with reverse-proxy
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
72238d79ed
|
[nginx] Add feature to manage multiple certificates, for example for crans.org and for adm.crans.org
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
9d5a080fc5
|
[thelounge] Support zamok configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
3f4a66eb7c
|
[thelounge] Copy ldap configuration for zamok
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
f039121e21
|
[thelounge] Download the Debian package and install it, and deploy
configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
c3d58d9ca9
|
[nginx] Fix default configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
2b8e0dbbff
|
[nginx] Fix nginx template, this is now usable
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
ynerant
|
a9897ec3c0
|
[nginx] Load global and local nginx configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
dafa3685ce
|
[nginx] Copy 401 error page if we use credentials
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
0eaee6c78f
|
[nginx] Copy robots.txt
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
3fceaeb836
|
[nginx] allow setting credentials to a nginx server
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
6c8be2638c
|
Add default global nginx configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
ynerant
|
244e1c284b
|
Cransible mailman nginx configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 22:26:31 +00:00 |
Yohann D'ANELLO
|
408c857f81
|
[zamok_apache] Pepcransification
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 14:07:35 +01:00 |
Yohann D'ANELLO
|
ae163d6bc9
|
[nullmailer] Define allmailfrom to always send mails as root
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
|
2021-02-22 12:31:30 +01:00 |
ynerant
|
359b6a4553
|
[belenios] Deploy belenios
Signed-off-by: ynerant <ynerant@crans.org>
|
2021-02-22 12:31:30 +01:00 |
_shirenn
|
6e6dd56e4d
|
[borg] lets filter-out shit and backup cameron
|
2021-02-22 12:13:23 +01:00 |
_shirenn
|
59bc91dc9d
|
[vault] Changing cranspasswords to pass crans
|
2021-02-22 12:01:03 +01:00 |
_shirenn
|
262696970f
|
[network-interfaces] PEPCRANSED
|
2021-02-22 11:51:44 +01:00 |
_shirenn
|
a82d770043
|
[slapd] Filter ipv4s responsibly
|
2021-02-22 09:45:13 +01:00 |
_shirenn
|
02df5674b1
|
[slapd] soyouz, query and regex
|
2021-02-22 01:30:02 +01:00 |
ynerant
|
009e7b42cb
|
[certbot] Generate multiple certificates (useful for adm)
Signed-off-by: ynerant <ynerant@crans.org>
|
2021-02-16 15:35:07 +01:00 |