Commit graph

642 commits

Author SHA1 Message Date
Renovate Bot
d600bb4ac9 automation: Update penpot Docker tag to v1.6.5 2021-06-18 07:07:21 +00:00
a8a3531c8e Merge branch 'renovate/matrix-synapse-1.x' into 'master'
automation: Update matrix-synapse Docker tag to v1.36.0

See merge request saibotk.de/infrastructure!237
2021-06-15 16:22:07 +00:00
c6c212fa87 Merge branch 'renovate/mastodon-elasticsearch-7.x' into 'master'
automation: Update mastodon-elasticsearch Docker tag to v7.13.2

See merge request saibotk.de/infrastructure!236
2021-06-15 16:21:59 +00:00
Renovate Bot
63f399854d automation: Update matrix-synapse Docker tag to v1.36.0 2021-06-15 15:06:26 +00:00
Renovate Bot
fb766cfb93 automation: Update mastodon-elasticsearch Docker tag to v7.13.2 2021-06-15 01:07:29 +00:00
5eb396e2df Merge branch 'renovate/teamspeak-3.x' into 'master'
automation: Update teamspeak Docker tag to v3.13.6

See merge request saibotk.de/infrastructure!234
2021-06-14 20:29:44 +00:00
fbfc2d08bd Merge branch 'renovate/monitoring-grafana-8.x' into 'master'
automation: Update monitoring-grafana Docker tag to v8.0.2

See merge request saibotk.de/infrastructure!233
2021-06-14 20:29:36 +00:00
70dfe2641e Merge branch 'renovate/gitlab-13.x' into 'master'
automation: Update gitlab Docker tag to v13.12.4

See merge request saibotk.de/infrastructure!235
2021-06-14 20:29:28 +00:00
Renovate Bot
c1aedf7d7c automation: Update gitlab Docker tag to v13.12.4 2021-06-14 20:06:07 +00:00
Renovate Bot
6e5a173ab6 automation: Update teamspeak Docker tag to v3.13.6 2021-06-14 18:06:42 +00:00
Renovate Bot
0cd7b3811d automation: Update monitoring-grafana Docker tag to v8.0.2 2021-06-14 10:06:30 +00:00
d09c8fb1ab
monitoring: Add feature toggles to grafana config
This change allows to activate the new alerts 2.0 with the ngalert flag.
2021-06-08 18:52:54 +02:00
d3ce8ae1a3 Merge branch 'renovate/monitoring-grafana-8.x' into 'master'
automation: Update monitoring-grafana Docker tag to v8

See merge request saibotk.de/infrastructure!232
2021-06-08 13:52:57 +00:00
28f80fbac9 Merge branch 'renovate/gitlab-13.x' into 'master'
automation: Update gitlab Docker tag to v13.12.3

See merge request saibotk.de/infrastructure!231
2021-06-08 13:52:48 +00:00
Renovate Bot
ed848d673e automation: Update monitoring-grafana Docker tag to v8 2021-06-08 07:06:05 +00:00
Renovate Bot
643d51107d automation: Update gitlab Docker tag to v13.12.3 2021-06-07 22:07:18 +00:00
4311ff96ed Merge branch 'renovate/mastodon-elasticsearch-7.x' into 'master'
automation: Update mastodon-elasticsearch Docker tag to v7.13.1

See merge request saibotk.de/infrastructure!228
2021-06-07 17:58:28 +00:00
a75befb112 Merge branch 'renovate/penpot-1.x' into 'master'
automation: Update penpot Docker tag to v1.6.4

See merge request saibotk.de/infrastructure!229
2021-06-07 17:58:17 +00:00
a45067e79b Merge branch 'renovate/matrix-elementweb-1.x' into 'master'
automation: Update matrix-elementweb Docker tag to v1.7.30

See merge request saibotk.de/infrastructure!230
2021-06-07 17:58:09 +00:00
Renovate Bot
bf8eb5f89f automation: Update matrix-elementweb Docker tag to v1.7.30 2021-06-07 17:06:29 +00:00
Renovate Bot
1b62077016 automation: Update penpot Docker tag to v1.6.4 2021-06-07 15:07:41 +00:00
Renovate Bot
a2e3089668 automation: Update mastodon-elasticsearch Docker tag to v7.13.1 2021-06-05 01:07:20 +00:00
2dd1f88f23 Merge branch 'renovate/matrix-synapse-1.x' into 'master'
automation: Update matrix-synapse Docker tag to v1.35.1

See merge request saibotk.de/infrastructure!227
2021-06-03 13:39:19 +00:00
Renovate Bot
21517a98b7 automation: Update matrix-synapse Docker tag to v1.35.1 2021-06-03 13:08:26 +00:00
799bafb8eb Merge branch 'renovate/mastodon-3.x' into 'master'
automation: Update mastodon Docker tag to v3.4.1

See merge request saibotk.de/infrastructure!226
2021-06-03 09:25:26 +00:00
Renovate Bot
fcd9e7c3f2 automation: Update mastodon Docker tag to v3.4.1 2021-06-03 04:07:53 +00:00
39476da79e
Add self-documenting Makefile
This Makefile is quite simple for now. But in the future i plan to
create multiple ansible role skeletons and this Makefile can simplify
the usage of these quite a bit.

I learned about self-documenting Makefiles from Sheo's Blog [1] and the
referenced article from Victoria Drake [2].

[1] https://shivering-isles.com/til/2021/05/self-documenting-makefiles
[2] https://victoria.dev/blog/how-to-create-a-self-documenting-makefile/
2021-06-02 23:31:44 +02:00
6ab8adfd0a Merge branch 'renovate/matrix-synapse-1.x' into 'master'
automation: Update matrix-synapse Docker tag to v1.35.0

See merge request saibotk.de/infrastructure!223
2021-06-02 19:06:10 +00:00
19b19f2746 Merge branch 'renovate/gitlab-13.x' into 'master'
automation: Update gitlab Docker tag to v13.12.2

See merge request saibotk.de/infrastructure!224
2021-06-02 19:06:00 +00:00
0840c369a0 Merge branch 'renovate/penpot-1.x' into 'master'
automation: Update penpot Docker tag to v1.6.3

See merge request saibotk.de/infrastructure!225
2021-06-02 19:05:51 +00:00
Renovate Bot
c6ac96b66b automation: Update penpot Docker tag to v1.6.3 2021-06-02 18:58:30 +00:00
Renovate Bot
2b59bf93e6 automation: Update gitlab Docker tag to v13.12.2 2021-06-02 18:58:29 +00:00
Renovate Bot
a3a2d40155 automation: Update matrix-synapse Docker tag to v1.35.0 2021-06-01 13:05:20 +00:00
Sheogorath
c04955a168
traefik: Fix tor configuration include
This patch will change the name of the config file from `traefik` to
`traefik.conf`, since tor now includes `/etc/torrc.d/*.conf` in their
config file. This should make sure that the config is actually loaded.

This patch originates from the observation that new setups no longer
create the tor hidden service for traefik. Some investigation resulted
in the insight, that the tor node is no longer including the
configuration file.
2021-05-30 17:16:35 +02:00
Sheogorath
36e5ccffbc
traefik: Increase memory limits for tor container
Apparently 32mb are a bit too little for the DHT. In case a node has no
swap configured, it'll never be able to sue the `memswap_limit`,
resulting in the OOM death of the container on startup.

This patch will fix this problem by doubling the low memory limit for
the container.
2021-05-30 17:16:19 +02:00
Sheogorath
ab6570dc9e
gitlab: Reduce log retention drastically
This patch instructs gitlab's omnibus image to configure logging to only
retain 5 files for each services which are not larger than 10MiB or
older than a day (default rotation time).

This should help to prevent random crashes/becoming unhealthy, which
seems to originate from a filled up tmpfs for logging.

Reference:
https://docs.gitlab.com/13.11/omnibus/settings/logs.html#runit-logs
2021-05-30 17:15:35 +02:00
9cc64920a3 Merge branch 'renovate/penpot-1.x' into 'master'
automation: Update penpot Docker tag to v1.6.1

See merge request saibotk.de/infrastructure!222
2021-05-30 15:03:59 +00:00
c2842b0f5b
Ansible: Set transfer method to scp explicitly
This fixes the warnings for the sftp transfer mechanism failing, when sftp is disabled on all hosts using the ssh hardening role.

This should usually be covered with the scp_if_ssh option but it seems like this option is ignored on newer Ansible versions. Which sadly was not mentioned in any changelog :(
2021-05-30 17:02:29 +02:00
Renovate Bot
8c8de2cedb automation: Update penpot Docker tag to v1.6.1 2021-05-30 14:11:53 +00:00
72165e47ba Merge branch 'renovate/penpot-1.x' into 'master'
automation: Update penpot Docker tag to v1.6.0

See merge request saibotk.de/infrastructure!220
2021-05-26 12:18:19 +00:00
971e8bc5af Merge branch 'renovate/gitlab-13.12.x' into 'master'
automation: Update gitlab Docker tag to v13.12.1

See merge request saibotk.de/infrastructure!219
2021-05-26 12:17:52 +00:00
f767cc5e3e Merge branch 'renovate/matrix-delegate_nginx-1.x' into 'master'
automation: Update matrix-delegate_nginx Docker tag to v1.21

See merge request saibotk.de/infrastructure!218
2021-05-26 12:16:44 +00:00
4de3c834f6 Merge branch 'renovate/keycloak-13.0.x' into 'master'
automation: Update keycloak Docker tag to v13.0.1

See merge request saibotk.de/infrastructure!217
2021-05-26 12:16:24 +00:00
c0be695ac0 Merge branch 'renovate/devsec.hardening-7.x' into 'master'
automation: Update devsec.hardening to version 7.7.0

See merge request saibotk.de/infrastructure!216
2021-05-26 12:16:07 +00:00
Renovate Bot
0edf43f93b automation: Update penpot Docker tag to v1.6.0 2021-05-26 10:04:00 +00:00
Renovate Bot
06112afeae automation: Update gitlab Docker tag to v13.12.1 2021-05-26 09:04:18 +00:00
Renovate Bot
1a46e9ef46 automation: Update matrix-delegate_nginx Docker tag to v1.21 2021-05-25 17:04:15 +00:00
Renovate Bot
de3faab974 automation: Update keycloak Docker tag to v13.0.1 2021-05-25 11:04:19 +00:00
Renovate Bot
e8afe53f00 automation: Update devsec.hardening to version 7.7.0 2021-05-24 21:04:12 +00:00
f52c32d737 Merge branch 'renovate/telegraf-1.18.x' into 'master'
automation: Update telegraf Docker tag to v1.18.3

See merge request saibotk.de/infrastructure!215
2021-05-24 20:39:36 +00:00