pub.solar infrastructure, mostly in nix and terraform
Find a file
b12f 76ca43142a
Merge pull request 'forgejo: make SSH keys declarative' (#138) from forgejo/ssh-keys-declarative into main
Reviewed-on: #138
Reviewed-by: Hendrik Sokolowski <hensoko@noreply.git.pub.solar>
2024-04-05 19:35:55 +00:00
.forgejo/workflows fix(ci): avoid nix trying to use GH access-token 2023-12-14 00:40:38 +01:00
docs docs: explain admin access and secrets 2024-04-05 12:56:51 +00:00
hosts forgejo: make SSH keys declarative 2024-04-05 19:35:55 +00:00
lib treewide: apply nixpkgs-fmt 2024-01-27 20:29:30 +01:00
logins admins: Add axeman's wireguard device 2024-04-05 15:41:21 +02:00
modules ssh: only allow ssh on wireguard interface 2024-04-05 14:28:18 +02:00
overlays chore: update flake inputs 2024-03-05 21:39:19 +01:00
secrets forgejo: make SSH keys declarative 2024-04-05 19:35:55 +00:00
terraform feat: init tmate-ssh-server 2024-02-07 19:01:36 +01:00
.envrc Add dev shell 2023-10-28 12:38:14 +02:00
.git-blame-ignore-revs feat: add .git-blame-ignore-revs file 2024-01-28 00:32:41 +01:00
.gitignore fix: add result to gitignore 2023-12-14 00:40:37 +01:00
flake.lock chore: update flake inputs 2024-04-04 18:49:09 +02:00
flake.nix Update flake.nix (#134) 2024-04-05 14:11:42 +00:00
README.md docs: fix typo in README 2023-11-18 23:17:28 +01:00

The pub.solar infrastructure

This repository contains almost all of the configuration for the whole pub.solar infrastructure. Our goal is to have everything, from host configurations to Terraform DNS in this repository.

The architecture we are working towards is a vast simplification of what it was before: one dedicated Hetzner server running NixOS with all services. Offsite backups go to several different locations with restic.

Contributing

If you'd like to contribute, it makes sense to talk to the crew on Matrix via #hakken. We can help figuring out how things work and can make sure your ideas fit the pub.solar philosophy. Of course popping a pull request is always celebrated.

To start, see how to get a development shell.