Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | use agenix to manage secrets in the repository | Franck Cuny | 13 days | 2 | -0/+19 |
| | |||||
* | secrets: move all the secrets under module/ | Franck Cuny | 2022-04-10 | 7 | -25/+0 |
| | | | | | Refactor a bit the configuration, which should simplify the management and usage of secrets from now on. | ||||
* | rclone: synchronize restic repo to GCS | Franck Cuny | 2022-03-11 | 2 | -0/+0 |
| | | | | | | Add a couple of secrets to store the configuration and the service account, and add a timer to synchronize the restic repository to a GCS bucket once a day. | ||||
* | restic: add the secret for the repo 'systems' | Franck Cuny | 2022-03-07 | 1 | -0/+12 |
| | |||||
* | unifi: configure the poller | Franck Cuny | 2022-03-06 | 1 | -0/+13 |
| | |||||
* | traefik: initial configuration | Franck Cuny | 2022-03-06 | 1 | -0/+0 |
| | | | | | | | | | I want to run traefik on the NAS, so I can reach grafana and other future services running on that host. To manage TLS, we use let's encrypt with a DNS challenge. For this to work we need a service account configuration, that is encrypted with age. | ||||
* | agenix: rekey secrets | Franck Cuny | 2022-03-05 | 2 | -0/+0 |
| | | | | Reinstalled tahoe, new ssh key for the host. | ||||
* | secrets: add a new key and rekey existing keys | Franck Cuny | 2022-03-01 | 2 | -18/+19 |
| | |||||
* | tahoe: wireguard setup | Franck Cuny | 2022-02-21 | 1 | -0/+10 |
| | |||||
* | secrets: initial config and a first secret | Franck Cuny | 2022-02-21 | 1 | -0/+10 |