Commit graph

734 commits

Author SHA1 Message Date
Rouven Seifert c36a242b35
rspamd: remove faulty allow_hdrfrom_mismatch option 2024-03-05 17:05:37 +01:00
Lyn Fugmann 2d7ed61384
use portunus from nixos-unstable 2024-03-05 15:24:28 +01:00
Rouven Seifert 71bc8234a2
opendkim: disable 2024-03-04 22:44:53 +01:00
Rouven Seifert 8e8cc54f75 mail: configure periodically sent dmarc aggregate reports 2024-03-04 22:40:04 +01:00
Rouven Seifert a1bfa3f7e1
ldap: switch to sssd on quitte 2024-03-04 22:14:24 +01:00
Rouven Seifert b454ad2437
secrets: prepare sssd for quitte 2024-03-04 21:51:30 +01:00
Rouven Seifert a3e15cc105
rspamd: migrate redis to unix sockets 2024-03-04 19:47:09 +01:00
Rouven Seifert 4e1cf47b7b
mail: test rspamd signing with rspamd 2024-03-04 12:08:50 +01:00
Rouven Seifert 1e47c01032
ulimit: limit nix builders to 10000 processes at once 2024-03-03 11:39:52 +01:00
Rouven Seifert d611cc5a26
ulimit: limit maximum number of processes per user
- Limits the number of processes a user can start to 2000
  Mostly in place to prevent fork bombs taking down the host.
- If anyone encounters problems with this number we can raise it
2024-03-03 11:34:39 +01:00
Rouven Seifert 017a807a7c
nix: update flake inputs 2024-03-02 18:50:21 +01:00
Rouven Seifert 02e661890a
nix: restructure flake and add devshell 2024-03-02 18:50:08 +01:00
Lyn Fugmann 0cf95c4c34
Add hendrik's pgp and ssh keys 2024-02-29 16:24:21 +01:00
Lyn Fugmann 4f5148fbf4
Show warning when kernel version changes 2024-02-29 12:03:02 +01:00
Lyn Fugmann 7f70ae990c
ftp: custom 403 error page 2024-02-27 14:06:06 +01:00
Rouven Seifert b3ee1d8e23
nix: flake update 2024-02-25 23:27:39 +01:00
Rouven Seifert ae74749c28
tomate: add ifsr cache 2024-02-25 23:26:13 +01:00
Rouven Seifert 794b565e07
nix-serve: fix port 2024-02-25 23:16:47 +01:00
Rouven Seifert a364e28bb8
nix-serve: init at cache.ifsr.de 2024-02-25 23:10:43 +01:00
Rouven Seifert e4bb60adff
padlist: remove
moved to https://github.com/fsr/padlist
2024-02-25 22:16:37 +01:00
Rouven Seifert 522351905c
quitte: enable memory resource control
Limits the Memory of some important slices via systemd cgroup management.

- nix-daemon may not use more than 32 GB of Memory
- all users together may not use more than 32GB of Memory

See man systemd.resource-control(5) for more detailed information.
2024-02-25 21:52:36 +01:00
Rouven Seifert be6fbd9d67
nix: update flake 2024-02-22 20:10:36 +01:00
Rouven Seifert f9fca746f7
decisions: fix secret 2024-02-22 12:20:21 +01:00
Rouven Seifert 7b37644a5b
nix: update flake 2024-02-22 12:19:41 +01:00
Rouven Seifert d84ad31126
mail: configure optional archive mailbox
This enables the 'Archive' special use for Mailboxes according to
RFC 6154 [0]. Most Mailclients support this out of the box

[0] https://www.rfc-editor.org/rfc/rfc6154.html
2024-02-21 14:02:26 +01:00
Rouven Seifert 22ca2010a0
initrd: fix command to unlock disk 2024-02-19 11:35:22 +01:00
Rouven Seifert 813628aea4
nix: updates 2024-02-18 14:59:24 +01:00
Rouven Seifert fecff52804
ewsp: fix nginx group 2024-02-18 14:58:29 +01:00
quitte 8846096ce7 Merge branch 'main' of github.com:fsr/fruitbasket 2024-02-18 12:54:38 +01:00
tenksom a97f94e4b1 fixed nginx group for nightline 2024-02-18 12:54:21 +01:00
Rouven Seifert ca6c2f81d0
nix: flake update 2024-02-16 18:48:33 +01:00
Rouven Seifert 8d081ce157
nix: flake update 2024-02-16 18:44:28 +01:00
Rouven Seifert f3585fcc97
nix: flake update 2024-02-12 19:10:36 +01:00
Jonas Gaffke b9a216ad59
decisions: add dex openid connect client 2024-02-05 22:01:11 +01:00
quitte ef42822101 Merge branch 'main' of github.com:fsr/fruitbasket 2024-02-04 13:08:18 +01:00
quitte bf6585a833 decisions: fix typs 2024-02-04 13:08:14 +01:00
quitte 594e672df4 decisions: add timer for tex to db 2024-02-04 13:07:41 +01:00
Rouven Seifert 6d6585c78f
formatting 2024-02-03 20:49:47 +01:00
Jonas Gaffke 81a83d7989
strukturbot: move to quitte 2024-02-03 20:48:34 +01:00
Rouven Seifert 826758e138
decisions: init secrets 2024-02-03 20:17:06 +01:00
Jonas Gaffke cd10890f1b
decisions: init 2024-02-03 20:05:52 +01:00
Rouven Seifert 7e2dc399bb
formatting 2024-02-03 20:03:45 +01:00
Rouven Seifert 175e2750ce
quitte: fix hosts 2024-02-03 20:02:15 +01:00
Rouven Seifert 948570032b
strukturbot: init secrets 2024-02-03 19:56:14 +01:00
Rouven Seifert 2e5f4fbe23
nextcloud: deprecate oc.ifsr.de 2024-02-02 21:53:54 +01:00
Rouven Seifert e198002d60
mysql: enable backups 2024-02-02 21:41:44 +01:00
Rouven Seifert e70b57490e
formatting 2024-02-02 21:18:42 +01:00
Jonas Gaffke 5b2ca5141c mysql: bind to localhost 2024-02-02 21:13:44 +01:00
Rouven Seifert c0c9249e5a
remove old wiki module 2024-02-02 21:09:58 +01:00
Rouven Seifert e1325a329a
wiki: move to wiki 2024-02-02 21:08:30 +01:00