pub.solar infrastructure, mostly in nix and terraform
Find a file
2024-04-05 19:55:11 +02:00
.forgejo/workflows fix(ci): avoid nix trying to use GH access-token 2023-12-14 00:40:38 +01:00
docs docs: explain admin access and secrets 2024-04-05 12:56:51 +00:00
hosts nachtigall: forgejo ssh use nat rules 2024-04-05 19:55:11 +02:00
lib treewide: apply nixpkgs-fmt 2024-01-27 20:29:30 +01:00
logins admins: Add axeman's wireguard device 2024-04-05 15:41:21 +02:00
modules ssh: only allow ssh on wireguard interface 2024-04-05 14:28:18 +02:00
overlays chore: update flake inputs 2024-03-05 21:39:19 +01:00
secrets wireguard: add basic keys 2024-04-05 11:09:31 +00:00
terraform feat: init tmate-ssh-server 2024-02-07 19:01:36 +01:00
.envrc Add dev shell 2023-10-28 12:38:14 +02:00
.git-blame-ignore-revs feat: add .git-blame-ignore-revs file 2024-01-28 00:32:41 +01:00
.gitignore fix: add result to gitignore 2023-12-14 00:40:37 +01:00
flake.lock chore: update flake inputs 2024-04-04 18:49:09 +02:00
flake.nix Update flake.nix (#134) 2024-04-05 14:11:42 +00:00
README.md docs: fix typo in README 2023-11-18 23:17:28 +01:00

The pub.solar infrastructure

This repository contains almost all of the configuration for the whole pub.solar infrastructure. Our goal is to have everything, from host configurations to Terraform DNS in this repository.

The architecture we are working towards is a vast simplification of what it was before: one dedicated Hetzner server running NixOS with all services. Offsite backups go to several different locations with restic.

Contributing

If you'd like to contribute, it makes sense to talk to the crew on Matrix via #hakken. We can help figuring out how things work and can make sure your ideas fit the pub.solar philosophy. Of course popping a pull request is always celebrated.

To start, see how to get a development shell.