Commit Graph

50 Commits

Author SHA1 Message Date
f8b2ae3f02 add super secret secrets 2026-01-24 13:21:14 -07:00
04823e681f Update lego to only install, no initial certs since it varies by purpose 2026-01-24 12:55:29 -07:00
Jonathan DeMasi
5b851d27aa add missing handlers 2026-01-23 20:28:49 -07:00
Jonathan DeMasi
651537b5bc add python-ldap 2026-01-23 20:23:52 -07:00
Jonathan DeMasi
4d115f9f4d splitting hairs with case I guess 2026-01-23 20:20:05 -07:00
Jonathan DeMasi
db5ecb32c5 Update param 2026-01-23 20:14:34 -07:00
Jonathan DeMasi
4c07a576aa something wrong with idempotency here 2026-01-23 19:43:25 -07:00
820b458037 bump tls version, enforce strong ciphers 2026-01-23 19:32:09 -07:00
2b1a5ee3f9 force starttls only 2026-01-23 19:00:40 -07:00
37017b9f8a fix missing space 2026-01-23 18:42:14 -07:00
Jonathan DeMasi
7a377c09e0 Init new ldap server role 2026-01-23 16:26:39 -07:00
d18353d2ae add ldap.conf config 2026-01-22 20:56:55 -07:00
449e7cfc8b extraneous space removed 2026-01-22 20:45:51 -07:00
3faf02990f update slapd.ldif entries for initializing servicE 2026-01-22 20:42:19 -07:00
fc3e2ef779 add firewall rules, copy default config 2026-01-21 21:54:46 -07:00
ea06f5f518 Apply openldap_server role 2026-01-20 21:47:28 -07:00
7f297accf7 missing tar leads to cracks 2026-01-20 21:40:51 -07:00
9498846584 add openldap_server role with package list 2026-01-20 21:21:42 -07:00
a8b85590f9 cleanup comments and debug 2026-01-19 21:49:02 -07:00
7249ec7a5e cleanup, add version support 2026-01-15 23:33:48 -07:00
89232a5c08 one level too many 2026-01-15 23:16:57 -07:00
425dc6b2de Do be missing some quotes 2026-01-15 23:07:27 -07:00
f7c1caa678 Add monitoring host with prometheus role 2026-01-15 22:59:18 -07:00
1446a11b7b Right port please 2026-01-14 21:07:14 -07:00
90d2cbd6a9 add nginx checking 2026-01-14 21:00:50 -07:00
50bbc94af9 remove deprecated syntax 2026-01-14 21:00:05 -07:00
9b6589c91b debug nginx fact finding 2026-01-14 20:55:16 -07:00
929150d90e add authentik role with basic firewall 2026-01-14 20:53:49 -07:00
4e89a01160 Add logic for hosts without nginx that still need certs 2026-01-14 20:48:56 -07:00
a63ed9cbd2 something weird here with unhandled restart after power outage 2026-01-14 20:39:58 -07:00
00c002f2f1 we need restarts baby 2025-12-30 21:35:41 -07:00
19a9c1e530 update some file naming for stupid 2025-12-30 19:43:05 -07:00
1b0972aa7a get rid of podman for now 2025-12-30 19:22:50 -07:00
f41438fe2c fix file name 2025-12-30 18:29:44 -07:00
715ce31549 add podman compose up 2025-12-30 18:26:39 -07:00
4fceede3b9 add firewall rules, fix typo 2025-12-30 18:18:55 -07:00
223a4934be missed a file 2025-12-30 18:11:43 -07:00
80e02731db init pangolin role 2025-12-30 18:10:29 -07:00
Jonathan DeMasi
7e9039f193 init pangolin 2025-12-30 11:59:37 -07:00
c34f71b258 Fix? 2025-12-28 21:25:35 -07:00
a5ccb4a048 fix dict 2025-12-28 17:37:51 -07:00
80d23ebfbb rectify naming 2025-12-28 17:32:54 -07:00
7bafaef5b6 add unbound config management 2025-12-28 17:28:18 -07:00
f40a63dcb6 fix conditional 2025-12-28 16:49:18 -07:00
fa276c321d Add logic for setting root password back, with secrets 2025-12-28 16:45:34 -07:00
250c8bfc06 add changes to support arch 2025-12-28 13:55:30 -07:00
fed849aa26 add support for arch 2025-12-28 13:50:36 -07:00
dd0f7b9341 init unbound 2025-12-28 13:44:10 -07:00
cb4b3cd6f1 Add some more sane defaults to firewalld 2025-12-28 13:41:45 -07:00
5282bdcf6d init 2025-12-23 19:18:39 -07:00