122 Commits

Author SHA1 Message Date
0442bf82ad
feat: add sing-box nixos module 2025-06-07 17:29:25 +03:00
4ce388747c
feat: remove ripsecrets git-hook 2025-06-07 17:28:41 +03:00
650444f329
feat: configure static ip with bridge on andromedae host 2025-06-07 17:21:28 +03:00
adda550db2
feat: split persist module onto nixos and home ones 2025-06-07 17:20:39 +03:00
1c7a94546d
feat: change module import method 2025-06-07 17:07:22 +03:00
da405d1155
feat: use unstable mesa on andromedae 2025-06-07 17:02:29 +03:00
ab8f980c8b
feat: add new host - andromedae 2025-06-07 16:58:34 +03:00
aaa6166233
feat: add some inputs 2025-06-07 16:55:42 +03:00
b1f086b2f8
fix: update sops-nix keys 2025-06-07 16:26:47 +03:00
0eb4dfa57f
fix: fix evaluation 2025-05-28 12:03:36 +03:00
82d82d00a4
feat: add new host 'blueshift' 2025-05-28 12:02:55 +03:00
1fa421ddb8
feat: switch to stable nixos 2025-05-28 12:02:08 +03:00
967a68d81f
feat: disable flake-checker 2025-05-28 12:00:47 +03:00
dd9984f3ef
feat: use git version of lix 2025-05-28 11:47:58 +03:00
7ad25623a5
fix: add fs mounpoints to hosts 2025-03-12 15:42:24 +03:00
33b9b3eea0
feat: disable default fonts for minimal profile 2025-03-12 15:41:35 +03:00
7a944e39c6
feat: enable zfs scrub by default 2025-03-12 15:41:19 +03:00
7d5c459e59
feat: filter out mounpoints from persistance list 2025-03-12 15:41:05 +03:00
07b12c6171
feat: implement rollback on boot for zfs 2025-03-12 14:28:40 +03:00
6af773f6e1
feat: enable cache clean by default 2025-03-12 14:17:01 +03:00
fef103bfae
feat: new host 'orion' 2025-03-12 14:11:59 +03:00
3f43173838
fix: use lib.recursiveUpdate where it is necessary 2025-03-10 20:25:56 +03:00
b31362656d
style: change rec to let in 2025-03-10 20:21:27 +03:00
115a2545cc
style: rename systemdDevice into waitForDevice 2025-03-10 20:17:43 +03:00
ebf506016e
style: mount options to variable 2025-03-10 20:16:07 +03:00
130b1e9eb3
fix: nixos-vm evaluation 2025-03-10 20:07:01 +03:00
d87b988a06
fix: disable cSpell for vscode 2025-03-10 20:05:31 +03:00
a066ff0960
feat: add remote hosts deploy with deploy-rs 2025-03-10 20:04:25 +03:00
f2de87fcea
fix: remove srvos from flake.lock 2025-03-10 20:02:46 +03:00
040502a480
feat: add backup with rustic for redshift 2025-03-10 20:02:17 +03:00
3f16fdab87
feat: add marzban, nginx, ocis with secrets for redshift 2025-03-10 20:01:44 +03:00
bf9584b0f1
fix: exclude secrets from yaml linting 2025-03-10 20:00:57 +03:00
0d155fa553
feat: add disko config for redshift 2025-03-10 19:10:28 +03:00
e63296d245
feat: add redshift (vps) host 2025-03-10 19:08:13 +03:00
2c03698a2f
feat: add rollback service for btrfs 2025-03-10 19:06:21 +03:00
6d85bb5bdb
fix: disable document-start rule for yamllint 2025-03-10 19:04:49 +03:00
65db257b33
feat: add sops for secrets management 2025-03-10 19:01:22 +03:00
7a910b5567
fix: postgresql backups 2025-03-10 18:46:44 +03:00
a2a0fb4a43
fix: persist some dirs by default for home dirs too 2025-03-10 18:45:57 +03:00
6d12c775c8
feat: network module for configuring networkd with bridge support 2025-03-10 18:44:16 +03:00
12651a52ee
feat: do not compress journald logs if using native fs compression 2025-03-10 18:43:40 +03:00
387086a698
feat: add empty modules for btrfs and zfs filesystems 2025-03-10 18:42:32 +03:00
bd8fa8a9ae
feat: add some files and dirs to persist by default 2025-03-10 18:39:05 +03:00
9a9abac938
fix: support persist module without home-manager on host 2025-03-10 18:38:30 +03:00
9d808421af
fix: remove erofs from kernel module blacklist for hardened profile
system.etc.overlay requires erofs kernel module, but hardened profile from nixpkgs disables it. Patch nixpkgs and remove erofs module from blacklist.
2025-03-10 18:37:22 +03:00
57ab28592e
feat: locale module 2025-03-10 18:35:29 +03:00
0f43c2e01d
fix: import profiles to modules 2025-03-10 18:34:51 +03:00
0bf6498de3
feat: hardened profile from nixpkgs with some additions 2025-03-10 18:34:03 +03:00
1e47f00539
feat: minimal profile from nixpkgs 2025-03-10 18:32:18 +03:00
6ed8b746cb
feat: auto-login for desktop 2025-03-10 18:31:46 +03:00