- Aug 17, 2021
-
-
Florian Sesser authored
-
- Aug 12, 2021
-
-
Jean-Paul Calderone authored
Clean up nix-store on the machines with limited disk space See merge request !149
-
Florian Sesser authored
-
Jean-Paul Calderone authored
Less swap on disk constrained AWS hosts See merge request !150
-
- Aug 11, 2021
-
-
Florian Sesser authored
-
Florian Sesser authored
-
- Aug 09, 2021
-
-
Jean-Paul Calderone authored
Update nixpkgs-ps to include PaymentServer 0.1.1.1 See merge request !147
-
Florian Sesser authored
... fixing the Prometheus metric names a second time.
-
- Aug 05, 2021
-
-
Florian Sesser authored
Prometheus niceties See merge request !145
-
- Aug 02, 2021
-
-
Florian Sesser authored
We have to explicitely add the port number so the relabel config can strip it out again. Else, `instance' seems to get its value from somewhere else - somewhere our relabel config does not look at.
-
Florian Sesser authored
-
This causes NixOS to generate the systemd timer unit for us and saves us having to explain a lot of subtle systemd features. It does pin execution to midnight on Monday but scaling to handle load spikes is Let's Encrypt's problem, I guess.
-
-
- Jul 29, 2021
-
-
Jean-Paul Calderone authored
Add a timer service to periodically trigger the cert renewal service Closes privatestorageops#222 See merge request !143
-
Jean-Paul Calderone authored
This causes NixOS to generate the systemd timer unit for us and saves us having to explain a lot of subtle systemd features. It does pin execution to midnight on Monday but scaling to handle load spikes is Let's Encrypt's problem, I guess.
-
- Jul 28, 2021
-
-
Jean-Paul Calderone authored
Add ssh.nix to monitoring systems See merge request !142
-
Jean-Paul Calderone authored
-
Florian Sesser authored
-
- Jul 20, 2021
-
-
Jean-Paul Calderone authored
Monitoring: Set admin PW See merge request !123
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
-
- Jul 19, 2021
-
-
Jean-Paul Calderone authored
Fix deployment key whitespace Closes #77 See merge request !138
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
This makes it easier to test outside of GitLab and it also means we don't depend on whatever wacko shell settings we inherit from GitLab.
-
Jean-Paul Calderone authored
Use a new variable which actually holds a path Closes #76 See merge request !136
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
Remove group and other permissions from the deploy key Closes #75 See merge request !134
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
Propagate morph success/failure out of update-deployment Closes #74 See merge request !132
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
Burn in some SSH host key knowledge Closes #71 See merge request !130
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
Bounded NIX_PATH Closes #72 See merge request !131
-
Jean-Paul Calderone authored
We can't point it at a Nix expression that evaluates to our desired version of nixpkgs because certain consumers want it to be a filesystem path instead.
-
Jean-Paul Calderone authored
This is what we wanted and much more directly. It also avoids the gradual lengthening of the path by always setting the path to nixpkgs-2105 instead of some derivative of whatever the path was last time.
-
Jean-Paul Calderone authored
This avoids a prompt at deploy time and the possibility of an MitM attack against TOFU.
-
Jean-Paul Calderone authored
Various manually-tested fixes for the updater Closes #70 See merge request !128
-
Jean-Paul Calderone authored
-
Jean-Paul Calderone authored
Use the GitLab-defined `CI_ENVIRONMENT_NAME` Closes #69 See merge request !126
-