- Feb 06, 2017
-
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
roles/flyspray: Remove duplicated register and created a task to enable and start the php-fpm@flyspray.socket.
-
Giancarlo Razzolini authored
roles/flyspray: Create a setting for the user flyspray uses and change tasks accordingly. Also created a task to deploy the php-fpm configuration.
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
roles/flyspray: Continuing the work on flyspray. We have the tasks.yml installing and configuring flyspray with nginx, still left to do the php-fpm service.
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
roles/flyspray: Initial work on the flyspray role. Created a vault for the db password and a defaults file.
-
Giancarlo Razzolini authored
-
- Feb 05, 2017
-
-
Florian Pritz authored
CVE-2016-1247 is a symlink attack on the log dir of nginx since a reopening of the logs (triggered by logrotate) opens the logs as nginx instead of root. logrotate creates the proper log files already so nginx doesn't need write permissions to those directories. Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
The config is based on my personal one, but stripped of many unnecessary parts. It's an initial config to get a somewhat useable root shell on our server. Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
- Jan 30, 2017
-
-
Jan Alexander Steffens (heftig) authored
-
- Jan 29, 2017
-
-
Florian Pritz authored
https://lists.archlinux.org/pipermail/aur-general/2017-January/033168.html Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Having this in could cause partial upgrades when installing new packages. Remove it. Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Giancarlo Razzolini authored
One of the things missing from the preload submission was that we included the STS header on http connections also. Using this: https://trac.nginx.org/nginx/ticket/289#comment:3 we are able to only include the STS header on https connections.
-
- Jan 26, 2017
-
-
Giancarlo Razzolini authored
After some weeks since it was proposed the addition of archlinux.org to the HSTS Preload list, since there were no objections, we are introducing this change and in the coming hours will add archlinux.org domain to the list.
-
Giancarlo Razzolini authored
The domain packages.archlinux.org, used to redirect to www.archlinux.org but, retaining the last part of the URL. That behavior was lost on the domain redirects change, now it was added again.
-
- Jan 23, 2017
-
-
Giancarlo Razzolini authored
roles/archweb: Properly template the archweb_admins variable to put the ADMINS when they are configured.
-
Giancarlo Razzolini authored
-
- Jan 21, 2017
-
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
- Jan 18, 2017
-
-
Jan Alexander Steffens (heftig) authored
A full VACUUM takes quite a long time and requires an exclusive lock on the table. Since our current quassel host is not starved for disk space, use a normal VACUUM instead. This speeds up cleaning from about 50s to about 6s. Most of that is the CLUSTER, which also requires an exclusive lock. However, stalling the quassel core for just 6 seconds every night is a lot less likely to cause timeouts.
-
- Jan 17, 2017
-
-
Giancarlo Razzolini authored
roles/php-fpm: Removed the requirement of naming php-fpm users with php- prefix. Now the user is the same as the file containing the configuration.
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
roles/php-fpm: Change the InaccessibleDirectories directive to InaccessiblePaths, remove the /srv/vmail folder from it and make /var/lib/mysql optional.
-
Florian Pritz authored
Requested by jleclanche Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
- Jan 16, 2017
-
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
Florian Pritz authored
Signed-off-by:
Florian Pritz <bluewind@xinu.at>
-
- Jan 13, 2017
-
-
Giancarlo Razzolini authored
-
Giancarlo Razzolini authored
-
- Jan 11, 2017
-
-
Giancarlo Razzolini authored
-
- Jan 10, 2017
-
-
Bartłomiej Piotrowski authored
-