pub.solar infrastructure, mostly in nix and terraform
Find a file
teutat3s c5159dd66d
All checks were successful
Flake checks / Check (pull_request) Successful in 7m54s
forgejo: enable repo search (indexer), save login
cookie for 365 days instead of default 7 days.
Caveat for the repo indexer is that repository size on disk will grow
by factor of 6. Forgejo repositories currently use 4.7GB on disk, with
3.3GB being a nixpkgs fork.
2024-04-05 23:29:49 +02:00
.forgejo/workflows fix(ci): avoid nix trying to use GH access-token 2023-12-14 00:40:38 +01:00
docs docs: explain admin access and secrets 2024-04-05 12:56:51 +00:00
hosts forgejo: enable repo search (indexer), save login 2024-04-05 23:29:49 +02:00
lib treewide: apply nixpkgs-fmt 2024-01-27 20:29:30 +01:00
logins admins: Add axeman's wireguard device 2024-04-05 15:41:21 +02:00
modules ssh: only allow ssh on wireguard interface 2024-04-05 14:28:18 +02:00
overlays chore: update flake inputs 2024-03-05 21:39:19 +01:00
secrets forgejo: make SSH keys declarative 2024-04-05 19:35:55 +00:00
terraform feat: init tmate-ssh-server 2024-02-07 19:01:36 +01:00
.envrc Add dev shell 2023-10-28 12:38:14 +02:00
.git-blame-ignore-revs feat: add .git-blame-ignore-revs file 2024-01-28 00:32:41 +01:00
.gitignore fix: add result to gitignore 2023-12-14 00:40:37 +01:00
flake.lock chore: update flake inputs 2024-04-04 18:49:09 +02:00
flake.nix Update flake.nix (#134) 2024-04-05 14:11:42 +00:00
README.md docs: fix typo in README 2023-11-18 23:17:28 +01:00

The pub.solar infrastructure

This repository contains almost all of the configuration for the whole pub.solar infrastructure. Our goal is to have everything, from host configurations to Terraform DNS in this repository.

The architecture we are working towards is a vast simplification of what it was before: one dedicated Hetzner server running NixOS with all services. Offsite backups go to several different locations with restic.

Contributing

If you'd like to contribute, it makes sense to talk to the crew on Matrix via #hakken. We can help figuring out how things work and can make sure your ideas fit the pub.solar philosophy. Of course popping a pull request is always celebrated.

To start, see how to get a development shell.