Skip to content
Snippets Groups Projects
  1. Apr 20, 2022
  2. Apr 13, 2022
    • Kristian Klausen's avatar
      Add GeoIP domain for our sponsored mirros · 9f65f99c
      Kristian Klausen authored
      We had a GeoIP mirror in the past based on nginx and its GeoIP module,
      but it didn't perform very well, due to the high latency (asking a
      central server for the package and then redirected to the closest
      mirror).
      
      One of the reasons for offering this service, is so we can relieve
      mirror.pkgbuild.com which is burning a ton of traffic (50TB/month),
      likely due to it being the default mirror in our Docker image. Another
      reason is so we can offer a link to our arch-boxes images in libosinfo
      (used by gnome-boxes, virt-install and virt-manager), with good enough
      performance for most users.
      
      This time we take a different approach and use a DNS based solution,
      which means the latency penalty is only paid once (the first DNS
      request). The downside is that the mirrors must have a valid certificate
      for the same domain name, which makes using third-party mirrors a
      challenge. So for now, we are just using the sponsored mirorrs
      controlled by the DevOps team.
      
      Fix #101
      9f65f99c
  3. Apr 11, 2022
  4. Mar 11, 2022
  5. Feb 26, 2022
  6. Feb 09, 2022
  7. Feb 04, 2022
  8. Jan 30, 2022
  9. Jan 21, 2022
  10. Jan 04, 2022
    • Jelle van der Waa's avatar
      Add smart monitoring using a textcollector · bf5a1653
      Jelle van der Waa authored
      Collects the smart data using smartctl and outputs them in the
      textcollector dir. This expects smartd to be configured to regularly
      self tests on a regular interval to detect if a disk is broken.
      bf5a1653
  11. Dec 04, 2021
  12. Nov 06, 2021
  13. Jul 06, 2021
    • Kristian Klausen's avatar
      WireGuard all hosts · 664deb67
      Kristian Klausen authored
      This is meant as a internal authenticated and encrypted network which we
      can use for internal services, we don't want to expose to the internet
      or when encryption is desired but not easily implementable.
      664deb67
    • Kristian Klausen's avatar
      Add WireGuard role · 107488dd
      Kristian Klausen authored
      This is initial to be used for communicating between
      {lists,mailman3}.archlinux.org as mailman{2,3} can't run on the same
      server.
      107488dd
  14. Jul 04, 2021
  15. Jun 30, 2021
  16. Jun 26, 2021
  17. May 13, 2021
  18. Mar 24, 2021
  19. Feb 01, 2021
    • Jelle van der Waa's avatar
      Add hedgedoc as new service · 3124cfd9
      Jelle van der Waa authored
      This adds a collaborative markdown editor as newly offered service which
      is available via login for all Arch Linux Staff with an option to allow
      anonymous edits by users (not default). Users are managed via keycloak
      and require the Staff role to be allowed in, non staff keycloak users
      currently will receive an internal server error due to an upstream
      issue.
      3124cfd9
  20. Jan 31, 2021
  21. Jan 26, 2021
  22. Jan 11, 2021
  23. Jan 10, 2021
  24. Jan 03, 2021
  25. Dec 29, 2020
  26. Dec 26, 2020
  27. Dec 25, 2020
  28. Dec 24, 2020
  29. Dec 21, 2020
  30. Dec 12, 2020
  31. Dec 07, 2020
    • Jelle van der Waa's avatar
      Add Kape donated servers · 7fe487ad
      Jelle van der Waa authored
      Setup Kape servers as archive mirrors (asia,europe,america), Gitlab
      runner and Rebuilderd worker. All machines except runner1 are EFI
      machines with grub setup and a EFI parition which is not supported by
      our ansible install role and is manually rolled out.
      7fe487ad
  32. Dec 03, 2020
  33. Nov 21, 2020
  34. Nov 02, 2020
    • Sven-Hendrik Haase's avatar
      Remove secure-runner2 · af1c54c3
      Sven-Hendrik Haase authored
      As it turns out, secure-runner2 isn't fast enough to serve as CI/CD and if we keep rescaling it to be
      large enough, it'll be more expensive than secure-runner1 which is a lot faster. So, it'd be most
      useful to just get rid of this VPS.
      af1c54c3
Loading