Commit Graph

219 Commits

Author SHA1 Message Date
Alex D. bcde5265c8
Tweak sysctl variables 2021-07-09 11:00:59 +00:00
Alex D. 1c38c257a9
Make nftables rules more relaxed and close outbound connections early 2021-07-09 11:00:40 +00:00
Alex D. fd4a6252f0
Fix a few things about cron separation 2021-07-03 13:18:08 +00:00
Alex D. f380641143
Fix facility 2021-07-03 13:03:32 +00:00
Alex D. b15263860f
Tweak weights 2021-06-27 08:34:00 +00:00
Alex D. 2d232f9803
Add gitea to rsyslog todo 2021-06-27 08:05:06 +00:00
Alex D. 8d9e96116c
Add dcron as dep 2021-06-27 08:04:04 +00:00
Alex D. 86045d89ef
Add logrotate 2021-06-27 08:03:47 +00:00
Alex D. d8f3044cfa
Reformat influxdb config 2021-06-25 18:29:03 +00:00
Alex D. 9821b59519
Remove the need for a logger 2021-06-25 18:28:36 +00:00
Alex D. e9302905f9
Enable syslog for services and reformat a few configs 2021-06-25 18:28:09 +00:00
Alex D. 06fce3eb9d
Add rsyslog 2021-06-25 18:25:42 +00:00
Alex D. 5b971f954b
Add UIDs to PGP key 2021-06-25 18:24:18 +00:00
Alex D. f01114ea91
Enable hfilter in filter list 2021-06-24 19:04:58 +00:00
Alex D. 57293a6ce7
Shorten rules and fix behaviour of meters 2021-06-20 14:20:08 +00:00
Alex D. ae88d3bee0
Update fastd 2021-06-20 13:10:32 +00:00
Alex D. dd74783d21
Add nftables package 2021-06-19 22:08:51 +00:00
Alex D. 9d54929f98
Use common name for runlevel 2021-06-19 21:10:03 +00:00
Alex D. 2e57e85e87
Set SOA to pkgver and shorten/generalize bindzones 2021-06-19 10:57:56 +00:00
Alex D. b494347e65
Add public key to configuration 2021-06-16 15:40:47 +00:00
Alex D. 66119adcb7
Remove the weight in cases of maillist where forged s/r are found 2021-06-13 08:51:46 +00:00
Alex D. 26a29bebc6
Add hfilter module and tweak scores to be more aggressive where it makes sense 2021-06-13 08:48:19 +00:00
Alex D. cfe58df4ef
Change a few limits and links 2021-06-10 19:18:27 +00:00
Alex D. fda31ec2b5
Use net hashmaps and add global conntrack 2021-06-10 18:50:22 +00:00
Alex D. fe18a6d207
Update homepage 2021-06-10 18:49:42 +00:00
Alex D. 640a53ab8c
Fix mumble -> murmur dep 2021-06-06 21:23:59 +00:00
Alex D. 2a30f5bf49
Remove download dir and etc path deps 2021-06-06 18:51:51 +00:00
Alex D. 6e7375f411
Enable variable checks and add comment 2021-06-06 18:24:09 +00:00
Alex D. 2c3d7d87a9
Sort and tweak transmission options 2021-06-06 18:17:00 +00:00
Alex D. 587d280601
Add telegraf monitoring for postgresql 2021-06-06 14:26:46 +00:00
Alex D. ebbd2096e7
Optimize hashlimits, add back http/https hashlimit and change openrc service to use iptables_name 2021-06-04 18:32:14 +00:00
Alex D. 420ba97b1c
Add modular firewall service and configuration 2021-06-04 17:17:43 +00:00
Alex D. e51751fc5a
Add depends to btrfs-progrs for snapshot crons 2021-06-03 10:02:00 +00:00
Alex D. c89e4a6afa
Remove monerod and old nodes 2021-06-03 10:01:22 +00:00
Alex D. 9dcdb2961a
Add back seedown 2021-06-02 18:54:56 +00:00
Alex D. f4c69253fc
Remove monerod 2021-06-02 18:54:42 +00:00
Alex D. b81dfb8fd0
Make configurations public 2021-06-02 18:39:27 +00:00
Alex D. eef6f2dd65
Change inclusion paths 2021-06-02 18:20:04 +00:00
Alex D. 417d6b0c7e
Fix compatiblity level 2021-06-02 18:02:34 +00:00
Alex D. 4446a2e795
Depend on the proper package 2021-06-02 17:52:11 +00:00
Alex D. a160915280
Fix directory creation 2021-06-02 17:51:51 +00:00
Alex D. 9b9516b74c
Change hba for postgresql 2021-06-02 17:51:37 +00:00
Alex D. 5bd3235d54
Add transmission and remove monero daemon 2021-06-02 17:51:14 +00:00
Alex D. 82113690fa
Allow all traffic by default on private interface 2021-06-02 15:59:50 +00:00
Alex D. 54691f095d
Fix inconsistency between services 2021-06-02 15:59:19 +00:00
Alex D. 49c92f76d3
Allow configuration files for interfaces and change config 2021-06-02 15:58:52 +00:00
Alex D. 67cb0bb508
Separate zones from modules and add automatic unbound module 2021-06-02 15:58:23 +00:00
Alex D. 603f40fa90
Fix depends and bump version 2021-06-02 13:09:00 +00:00
Alex D. 8df9fdc4ab
Reorganization, automation and more
- More templating and inheritance
- New commands
+ rx_replace
+ rx_install
+ rx_cpkgdir
- More transparency with secrets being sourced as variables and replaced
- Modularization of configs
+ telegraf
+ nginx (partial)
+ fastd
+ wireguard
+ unbound
- Split of unbound configurations and bind zones
- Bumping of key versions (rolling keys)
+ ZSK/KSK
+ OpenDKIM
- Relaxed permission defaults
and other smaller tweaks...
2021-06-01 23:17:41 +00:00
Alex D. 9a0ae5369c
Change key for user 2021-05-17 23:25:47 +00:00