infra/common
raito 92560708b8 feat: multi-tenant secrets
Lix may have its own secrets and we want to maintain a certain
generalization level on the NixOS modules, so we can decorrelate which
secret we select dynamically by having a simple tenancy hierarchy
system.

This unfortunately requires to rewrite all call sites with a floral
prefix until we migrate them to the simple internal secret module which
is aware of this.

Signed-off-by: Raito Bezarius <masterancpp@gmail.com>
2024-10-06 08:10:44 +00:00
..
hardware feat: introduce Oracle VMs and Hetzner VMs as hardware types 2024-10-06 08:10:44 +00:00
sysadmin feat: add more admins tools from lix infra 2024-10-06 08:10:44 +00:00
admins.nix feat: finer-grained ACLs for server accesses 2024-10-05 16:20:19 +02:00
base-server.nix feat: introduce resource control over all machines 2024-10-06 08:10:44 +00:00
cgroups.nix feat: introduce resource control over all machines 2024-10-06 08:10:44 +00:00
channels.nix feat(nixpkgs): run oxidized channel scripts 2024-08-31 19:32:23 +02:00
default.nix feat: multi-tenant secrets 2024-10-06 08:10:44 +00:00
hardening.nix add global hardening options 2024-07-09 23:26:12 +00:00
known-ssh-keys.nix common/known-ssh-keys: init 2024-07-17 18:00:51 +02:00
nix.nix bagel-cache.s3-web.delroth.net -> cache.forkos.org 2024-08-06 13:26:15 +02:00
raito-proxy-aware-nginx.nix fix(sniproxy): outside/inside of infra, the ingress IPs are different 2024-08-30 19:01:44 +02:00
secrets.nix feat: multi-tenant secrets 2024-10-06 08:10:44 +00:00
server-acl.nix feat: finer-grained ACLs for server accesses 2024-10-05 16:20:19 +02:00
ssh-keys.nix users: add winterqt 2024-09-28 21:09:06 +02:00
zsh.nix change the default user shell to zsh 2024-07-12 19:50:34 +02:00