• Joined on 2021-01-18
Gonne pushed to updates at Fachschaft/sprechstunden-go 2024-04-08 10:16:36 +00:00
9b211a0dd3 Dependency updates
Gonne pushed to lobon at Gonne/nixConfig 2024-04-04 15:45:58 +00:00
f334e00d01 Restrict HRZ allowlist update service privileges
Gonne pushed to lobon at Gonne/nixConfig 2024-04-04 15:35:38 +00:00
4b684bc1e6 Restrict HRZ allowlist update service privileges
Gonne commented on issue Fachschaft/nixConfig#33 2024-04-04 15:28:44 +00:00
Refactor Networking

Should the vmModule.nix be somehow part of the [vm.nix](https://gitea.mathebau.de/Fachschaft/nixConfig/

Gonne commented on pull request Fachschaft/nixConfig#30 2024-04-04 15:19:15 +00:00
lobon (Mailman-VM)

Yes, I added a bunch of them in f2b83cf that seemed reasonable and don't break the updater. Notably, I left out ExecPaths= and NoExecPaths= because the correct values are unclear to me.

Gonne pushed to lobon at Gonne/nixConfig 2024-04-04 15:17:41 +00:00
f2b83cf5d8 Restrict HRZ allowlist update service privileges
Gonne pushed to lobon at Gonne/nixConfig 2024-04-04 15:13:54 +00:00
6b0a230d7e Restrict HRZ allowlist update service privileges
Gonne commented on pull request Fachschaft/nixConfig#30 2024-04-04 14:22:20 +00:00
lobon (Mailman-VM)

I think splitting per desired system user is useful (might even be necessary). Apart from that it feels more about conventions which I don't know.

Currently the secrets are used by root and…

Gonne pushed to main at Gonne/nixConfig 2024-04-03 16:12:09 +00:00
e69c8c6efb Remove obsolete DNS resolver
7bc8261cb6 Also sync deletion of files from fsaccount before taking the backup
e91f417a29 Move secrets to machine config
Compare 3 commits »
Gonne pushed to lobon at Gonne/nixConfig 2024-04-03 13:59:59 +00:00
45a20b7f52 Mailman backups
749e5134af Add pushing to hrz allowlist
d01433504a Setze Mailman-Maschine auf
e69c8c6efb Remove obsolete DNS resolver
7bc8261cb6 Also sync deletion of files from fsaccount before taking the backup
Compare 6 commits »
Gonne pushed to main at Fachschaft/nixConfig 2024-04-03 13:59:26 +00:00
e69c8c6efb Remove obsolete DNS resolver
7bc8261cb6 Also sync deletion of files from fsaccount before taking the backup
e91f417a29 Move secrets to machine config
Compare 3 commits »
Gonne merged pull request Fachschaft/nixConfig#35 2024-04-03 13:59:25 +00:00
Bragi cleanup
Gonne pushed to lobon at Gonne/nixConfig 2024-04-03 13:45:18 +00:00
354488c38d Mailman backups
6e513aaf43 Add pushing to hrz allowlist
faf160311f Setze Mailman-Maschine auf
cabd210aa6 [#33] Refactored existing network config
Compare 4 commits »
Gonne pushed to bragi at Gonne/nixConfig 2024-04-03 13:41:17 +00:00
e69c8c6efb Remove obsolete DNS resolver
7bc8261cb6 Also sync deletion of files from fsaccount before taking the backup
e91f417a29 Move secrets to machine config
Compare 3 commits »
Gonne pushed to main at Gonne/nixConfig 2024-04-03 13:38:44 +00:00
cabd210aa6 [#33] Refactored existing network config
Gonne commented on pull request Fachschaft/nixConfig#30 2024-04-02 18:25:46 +00:00
lobon (Mailman-VM)

Gonne force-pushed lobon from 4d965ba394 to dcc055891f

I decided to include all of mailman's persistent state in the backups to include archives.

Gonne pushed to lobon at Gonne/nixConfig 2024-04-02 18:24:30 +00:00
dcc055891f Mailman backups
Gonne commented on pull request Fachschaft/nixConfig#30 2024-04-02 16:49:08 +00:00
lobon (Mailman-VM)

Done for mailman data. The certificates can be regenerated on hardware failure.

Gonne pushed to bragi at Gonne/nixConfig 2024-04-02 16:47:06 +00:00
85f3bde55d Remove obsolete DNS resolver