Maximilian Wilhelm
|
c27be14b76
postfix: There ain's no Debian stretch no more
|
2 years ago |
Maximilian Wilhelm
|
6d3f44f4c8
postfix: Relay mails for www-data to root.
|
2 years ago |
Maximilian Wilhelm
|
9091217fd7
postfix: Motivation postfix to send mails with TLS
|
2 years ago |
Maximilian Wilhelm
|
c5c65aa615
Add .gitignore
|
2 years ago |
Maximilian Wilhelm
|
3ae179140e
network: Ignore 'untagged_vlan' when writing /etc/network/interfaces
|
2 years ago |
Maximilian Wilhelm
|
793284bc8a
bird: iBGP sessions are now calculated within NACL.
|
2 years ago |
Maximilian Wilhelm
|
28c600c363
SDN: 'tagged_vlans' may not be present, D'oh.
|
2 years ago |
Maximilian Wilhelm
|
b408b8d06f
snmpd: Generate interface configs for VMs running on this host
|
2 years ago |
Maximilian Wilhelm
|
fa6dc76330
SDN: Add support for vlan-aware-bridges
|
2 years ago |
Maximilian Wilhelm
|
c2a5cb7532
interfaces: Configure tagged VM interfaces on the host automatically
|
2 years ago |
Maximilian Wilhelm
|
90bb1c7272
icinga2: D'oh, Icinga2 wants boolean values in all lower case.
|
2 years ago |
Maximilian Wilhelm
|
0c064a08c4
icinga2: Write boolean values as-is into generated configuration.
|
2 years ago |
Maximilian Wilhelm
|
0cb59e8bfa
nftables: Refine check if Wireguard tunnels exist.
|
2 years ago |
Maximilian Wilhelm
|
05baf8b161
icinga2: Allow ping check to be disabled.
|
2 years ago |
Maximilian Wilhelm
|
02bc0c1392
network/interfaces: 'has_gateway' will only be removed by SDN
|
2 years ago |
Maximilian Wilhelm
|
9eac3a448e
SDN: Only bridge related configuration may be treaded specially
|
2 years ago |
Maximilian Wilhelm
|
932f71795f
SDN: Bridges without members ports need to be configured with "none".
|
2 years ago |
Maximilian Wilhelm
|
2cc3397b4d
SDN: Add bridge-ports-condone-regex to all bridges.
|
2 years ago |
Philipp Fromme
|
9b612bdc7a
graylog: Add cronjob to check for notifications
|
2 years ago |
Maximilian Wilhelm
|
fd416806ac
snmpd: Assumg 300 Mb/s for Wireguard connections for now
|
2 years ago |
Maximilian Wilhelm
|
4c2f0c4408
Wireguard: Reflect data structure changes
|
2 years ago |
Maximilian Wilhelm
|
a2a6ed05d6
nftables: Open server side Wireguard ports automagically.
|
2 years ago |
Maximilian Wilhelm
|
dbe9e6730d
Use tags exposed by NACL/Netbox instead of snowflake
|
2 years ago |
Maximilian Wilhelm
|
73d0027fc6
icinga2: check_bird_ospf should us Python3 of course
|
2 years ago |
Maximilian Wilhelm
|
19aecd6893
Add state to manage Wireguard tunnel configuration
|
2 years ago |
Maximilian Wilhelm
|
fd76c665b9
icinga2: Work around SCT checking for hostcerts for now.
|
2 years ago |
Maximilian Wilhelm
|
4e1d44b0f0
fastd: Use SDN to determine B.A.T.M.A.N. adv. iface penalty
|
2 years ago |
Maximilian Wilhelm
|
e6cd22d682
SDN: Rework B.A.T.M.A.N. adv. interface penalties.
|
2 years ago |
Maximilian Wilhelm
|
48493bb4b2
network/interfaces: Add support for Wireguard tunnels
|
2 years ago |
Maximilian Wilhelm
|
67ebce5507
sysctl: Wireguard with fwmark requires udp_l3mdev_accept
|
2 years ago |