Commit Graph

  • 69e6e23ca3
    Document rough and dirty method to pull stack Joey Hafner 2024-08-28 12:14:48 -0700
  • f3686ae3ad
    Move send to stack Joey Hafner 2024-08-28 12:14:19 -0700
  • 23cc8dd9a9
    Delete deprecated doc Joey Hafner 2024-08-28 12:13:57 -0700
  • da31608729
    Init gitea-runner service Joey Hafner 2024-08-27 22:09:37 -0700
  • 01ec733468
    Init books Stack Joey Hafner 2024-08-27 22:08:28 -0700
  • ba20fb1242
    Update filter scripts to use absolute path of .sops.yaml Joey Hafner 2024-08-27 21:56:30 -0700
  • 64d94faf77
    Move local ai to Stack Joey Hafner 2024-08-27 21:48:55 -0700
  • 1a555b92aa
    #3 Switch back from git-crypt to sops Joey Hafner 2024-08-27 21:19:54 -0700
  • 1b827c04f5
    Switch test workflow to run on generic default runner Joey Hafner 2024-08-27 21:19:11 -0700
  • 510e79bc5a
    Delete remaining deprecated workflow Joey Hafner 2024-08-27 21:18:00 -0700
  • baf44444f4
    Delete deprecated deploy workflows Joey Hafner 2024-08-27 21:05:13 -0700
  • 5414ba0a11
    Switch root dns to use IP of execution environment Joey Hafner 2024-08-27 21:00:48 -0700
  • 37370ec458
    Init test workflow to hands-on how we can get the list of changed stacks Joey Hafner 2024-08-23 18:56:43 -0700
  • 79af6f5c2d
    #3 Remove superfluous lines from filter scripts, switch sops creation rules to apply to all Joey Hafner 2024-08-23 18:09:27 -0700
  • bb26fe060e
    Delete unneeded compose file Joey Hafner 2024-08-23 11:41:52 -0700
  • 585270ebd6
    #3 Set up sops at repo root Joey Hafner 2024-08-23 00:12:20 -0700
  • 1fe802b4ce
    #12 Disable sabnzbd-exporter Joey Hafner 2024-08-22 21:01:13 -0700
  • 1ec2804584
    #12 Switch to a specific tag because :latest doesn't exist Joey Hafner 2024-08-22 20:57:47 -0700
  • 6be08d88c2
    #12 Switch to Linuxserver's container registry Joey Hafner 2024-08-22 20:50:37 -0700
  • 021b61f5ca
    #12 Init Readarr Joey Hafner 2024-08-22 20:49:16 -0700
  • 1601b86401
    Move Qbt to port 49500 Joey Hafner 2024-08-20 22:11:35 -0700
  • ae51002efc
    Add socks5 proxy for druid Joey Hafner 2024-08-20 21:52:51 -0700
  • 56c7590000
    Revert qbittorrent to before gluetun Joey Hafner 2024-08-20 21:42:19 -0700
  • ba40901fa8
    Move gluetun to port 8580 Joey Hafner 2024-08-20 21:20:46 -0700
  • b638ce2c7c
    Remove port mappings Joey Hafner 2024-08-20 21:19:58 -0700
  • eaa5c91865
    Remove web network Joey Hafner 2024-08-20 21:07:57 -0700
  • 417a3f3fe9
    Configure Qbittorrent to use gluetun to route container network traffic through vpn.jafner.tools Joey Hafner 2024-08-20 20:47:17 -0700
  • fac4bf6613
    #6 Add "Public" service group Add labels for calibre-web stack Joey Hafner 2024-08-18 16:59:54 -0700
  • 7593a6b7b6
    #6 Move Homepage to general-purpose Joey Hafner 2024-08-18 16:49:50 -0700
  • f224745def
    #3 Delete test secret, add zipline secret Joey Hafner 2024-08-16 17:41:23 -0700
  • b7c902f342
    #3 Nuke sops Joey Hafner 2024-08-16 17:10:38 -0700
  • 3ca0f11aa9
    #3 Test git-crypt on secrets.env Joey Hafner 2024-08-16 17:03:23 -0700
  • 85c6b5c534
    #3 Re-add zipline secrets to gitignore Joey Hafner 2024-08-16 17:01:10 -0700
  • fe2351fe6e
    #3 Delete secrets.env, init gitignore and gitattributes for git-crypt Joey Hafner 2024-08-16 16:59:50 -0700
  • 0563c01488
    #3 Show diffs in cleartext Joey Hafner 2024-08-16 15:44:09 -0700
  • ce7bd53e26
    #3 Touch secrets.env to re-encrypt with fighter's host pubkey as recipient Joey Hafner 2024-08-16 15:28:45 -0700
  • 8d0add4d16
    #3 Update encrypt filter to get host pubkey correctly Joey Hafner 2024-08-16 15:27:30 -0700
  • cbaedf5018
    #3 Refactor secret management for fighter/zipline Joey Hafner 2024-08-16 15:21:59 -0700
  • 448295b7ca
    #3 Fix filters missing quotes, pass '%f' to filter scripts in setup Joey Hafner 2024-08-16 15:16:31 -0700
  • 31ef9b5a53
    #3 Enable sops filter for all secrets.env files Joey Hafner 2024-08-16 15:09:25 -0700
  • d3d6807af6
    #3 Update gitignore for homelab to explicit list of secrets files, will remove each from list one at a time Joey Hafner 2024-08-16 15:06:35 -0700
  • 49c4c9b085
    #3 Delete test secrets Joey Hafner 2024-08-16 14:35:55 -0700
  • ba933c9533
    #3 Remove duplicate keypair setup block Joey Hafner 2024-08-16 14:34:22 -0700
  • dff6d688be
    #3 chmod +x age-setup.sh Joey Hafner 2024-08-16 14:33:26 -0700
  • 7052b517fb
    #3 Polish up the setup script, delete unused manual scripts Joey Hafner 2024-08-16 14:31:58 -0700
  • 72f3f50b15
    #3 Add handling for each file type supported by sops, including binary Joey Hafner 2024-08-16 14:11:46 -0700
  • 86aa517c52
    #3 Re-create test secrets Joey Hafner 2024-08-16 13:42:10 -0700
  • cdcc806113
    #3 Delete test secrets Joey Hafner 2024-08-16 13:39:28 -0700
  • 2f6536362a
    #3 Add second test secret Joey Hafner 2024-08-16 13:22:28 -0700
  • 2e676c3f4d
    #3 Re-create test secret Joey Hafner 2024-08-16 13:00:25 -0700
  • d2aaac378f
    #3 Delete test secret Joey Hafner 2024-08-16 12:58:57 -0700
  • bea0e29f89
    #3 Switch to file descriptor 3 as input to sops Joey Hafner 2024-08-16 12:52:04 -0700
  • 049ae05b4a
    #3 Debug: echo working directory to diagnose whether we're working from a subdirectory of .git, rather than the true repo root. Joey Hafner 2024-08-16 12:49:08 -0700
  • 02972c0d6b
    #3 Re-create test secret Joey Hafner 2024-08-16 12:45:31 -0700
  • 8c3f370086
    #3 Delete test secret Joey Hafner 2024-08-16 12:44:47 -0700
  • f9ca3ca219
    #3 Remove unneeded SOPS_AGE_RECIPIENTS configuration from decrypt, cd to repo root Joey Hafner 2024-08-16 12:43:31 -0700
  • 1b33a96e93
    #3 Re-create test secret Joey Hafner 2024-08-16 12:37:52 -0700
  • 96543c7f4f
    #3 Delete test secret Joey Hafner 2024-08-16 12:34:28 -0700
  • 4daec51130
    #3 Debug echo FILE_PATH variable Joey Hafner 2024-08-16 12:32:36 -0700
  • 489c8f67d7
    #3 Re-create test secret Joey Hafner 2024-08-16 12:29:15 -0700
  • bb9b308cde
    #3 Delete testsecret Joey Hafner 2024-08-16 12:28:54 -0700
  • bbad9b07ed
    #3 Render absolute path of file to process Joey Hafner 2024-08-16 12:27:37 -0700
  • cc77e386be
    #3 Re-introduce test secret Joey Hafner 2024-08-16 12:20:38 -0700
  • c1bc72e9fe
    #3 Delete test secret Joey Hafner 2024-08-16 12:19:46 -0700
  • b45df3190d
    #3 Reroute stdout and stderr from non-sops commands to log files Joey Hafner 2024-08-16 12:16:07 -0700
  • 0080a68f3c
    #3 Validate input is file path Joey Hafner 2024-08-16 12:09:26 -0700
  • afc9ef5abd
    #3 Re-create test secret Joey Hafner 2024-08-15 16:45:25 -0700
  • 958baec8b0
    #3 Delete test secret Joey Hafner 2024-08-15 16:44:35 -0700
  • c02b810237
    #3 Update encrypt and decrypt filter scripts - Decrypt: use realpath of file to decrypt as FILE_PATH - Decrypt: Switch from in-place to stdout - Encrypt: Switch from operating on $1 to $FILE_PATH Joey Hafner 2024-08-15 16:28:28 -0700
  • 766a34dfb4
    #3 Fix logic for creating age keyfile Joey Hafner 2024-08-15 16:24:21 -0700
  • e5256cff1e
    #3 Update script names in filter setup Joey Hafner 2024-08-15 16:20:40 -0700
  • fc5973a46f
    #3 Configure sops filter in age-setup script Joey Hafner 2024-08-15 16:19:42 -0700
  • bf81ecbd27
    #3 Init working encrypt-filter and testsecret. TODO: Test decrypt-filter, write setup script Joey Hafner 2024-08-15 16:14:07 -0700
  • 492fa394d6
    Rename filter scripts Joey Hafner 2024-08-15 15:46:57 -0700
  • 75b065de25
    #3 Debug: Remove checking for count of arguments Joey Hafner 2024-08-15 15:17:31 -0700
  • 601a9706f6
    Delete unused dungeon-master files Joey Hafner 2024-08-15 15:14:07 -0700
  • 205ab38149
    #3 Set up scripts to encrypt/decrypt in place Joey Hafner 2024-08-15 15:13:41 -0700
  • c5231f1311
    #5 Init Terraform Cloudflare DNS IaC - Import existing records via cf-terraforming utility - Rename resources to human-readable names - Move aws and cloudflare terraform roots to their own directories Joey Hafner 2024-08-15 15:04:13 -0700
  • f99e1266ba
    Move gitignore to homelab directory Joey Hafner 2024-08-15 11:57:13 -0700
  • 172fab21f0
    #4 Disable traefik debug logging Joey Hafner 2024-08-15 11:56:19 -0700
  • 1b00de1c9d
    #4 Remove quotes from token value Joey Hafner 2024-08-15 11:47:31 -0700
  • 5aabb51cb5
    #4 Add debug logging Switch back to just one token with both Zone/DNS/Edit and Zone/Zone/Read permissions for 'All zones from account' Joey Hafner 2024-08-15 11:34:15 -0700
  • a21aedd233
    #4 Enable debug logs for traefik to better diagnose issue getting certs via dnsChallenge Joey Hafner 2024-08-15 11:25:31 -0700
  • 03878b77ef
    #4 Add cloudflare zone read token Joey Hafner 2024-08-15 11:03:59 -0700
  • ec6f552a53
    #4 Add nginx container at test.nginx.jafner.net to test DNS challenge Joey Hafner 2024-08-15 10:24:17 -0700
  • 322a79c2f5
    #2 Remove unused lines Joey Hafner 2024-08-14 14:30:09 -0700
  • 676da8dca3
    #2 Move age files to homelab/.sops/ Separate "authors" keys and "deploy" keys. Add features to setup, encrypt, and decrypt scripts: - Validate input arguments - Set age keyfile and recipients dynamically at runtime Joey Hafner 2024-08-14 14:26:52 -0700
  • 383b8b3351
    #3 Switch send to dns01 challenge certresolver Joey Hafner 2024-08-14 14:10:49 -0700
  • 1bcc37f70d
    #3 Configure lets-encrypt-dns01 certresolver with its own acme.json storage Joey Hafner 2024-08-14 14:10:17 -0700
  • 756225c680
    #2 Switch postgress back to password from password file Joey Hafner 2024-08-14 00:15:41 -0700
  • 228b3768cd
    #2 Fix typo: extra underscore Joey Hafner 2024-08-14 00:10:32 -0700
  • b2028a5ad0
    #2 Re-encrypt keycloak secrets with fighter's pubkey added to map Joey Hafner 2024-08-14 00:05:58 -0700
  • 9ca38bd52c
    #2 Replace Docker secrets with encrypted secrets.env file Joey Hafner 2024-08-13 23:34:15 -0700
  • 8729e02a23
    Switch postgres to native password file, remove entrypoint injection Joey Hafner 2024-08-13 15:52:02 -0700
  • c4cc18835f
    Resolve "/bin/sh: 1: source: not found" Joey Hafner 2024-08-13 15:39:52 -0700
  • 8efd7c42a8
    Simplify entrypoint Joey Hafner 2024-08-13 15:38:57 -0700
  • 1f5801d31f
    Correct entrypoint script name (this is going to be a pain) Joey Hafner 2024-08-13 15:32:17 -0700
  • aa0fe3365d
    Experimental implementation of entrypoint injection to export secrets to env vars Joey Hafner 2024-08-13 15:29:04 -0700
  • f838aa199f
    Remove deprecated HOSTNAME_URL option Joey Hafner 2024-08-13 11:37:33 -0700
  • d6682073d8
    Update keycloak proxy configuration per upgrading guide. https://www.keycloak.org/server/reverseproxy https://www.keycloak.org/docs/latest/upgrading/index.html#deprecated-proxy-option Joey Hafner 2024-08-13 11:27:01 -0700