| Age | Commit message (Collapse) | Author | |
|---|---|---|---|
| 43 hours | Use sing-box gVisor stack for routing instead of system, fixing VPN TCP | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 43 hours | Don't shatter VPN ingress packets on local transmission between interfaces | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 43 hours | Define VPN egress & ingress default MTUs, routes, reverse paths, ... | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Extend Xray config generation service | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Let systemd-networkd handle VPN egress interface on ingress machine | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Fix VPN ingress private key file permissions | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Update sing-box deprecated seperate IPv4 TUN settings key | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Remove deprecated network config keys in VPN module | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Ingress VPN on truite | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Add static IPv6 address to truite | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Remove default WireGuard servers in favor of future VPN | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Update Tailscale IP for truite | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Update keys for truite | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 4 days | Move truite to a better machine and Russian hosting provider | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-03-31 | VLESS/Reality VPN configuration for DPI evasion | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-03-13 | Disable printer probe (for now) | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-03-09 | Re-key base secrets for loup | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-03-09 | Transfer 'Wolfram' from minerals as new 'Loup' server | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-21 | Update nixpkgs-unstable | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-17 | Fix ACME Tailnet certificate service override naming | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-15 | Fix Mullvad country listings | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-14 | Move over deprecated option paths to new paths for 25.11 | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-14 | Move VPN container stack from PIA to Mullvad | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-14 | Remove options deleted in 25.11 | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-14 | Upgrade to 25.11 | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-02-14 | Add Matter server to HM stack | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2026-01-16 | Nix/NixOS shortcut script `nx` | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-04 | Factor out common public VPN peers to own module | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-03 | Rename Russian VPN server "zibeline" into "truite" | Mel | |
| I think when all our VPN server names start with a "T", it looks pretty nice! If you didn't notice: The "T" stands for "Tunnel"! :) Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-03 | Serve random files under rnrd.eu/stuff/ from /var/www/html on renard | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-03 | Add VPN configuration to taureau | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-03 | Make IPv6 forwarding sysctl options in service network configuration 'default' | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-03 | Add new taureau host | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-10-02 | Rekey secrets for new Taureau machine | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-15 | Add dmidecode | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-06 | Set manually-probed Klipper Z endstop | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-06 | Fixup Klipper printer config | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-06 | Update generated Klipper firmware configuration | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-05 | Place alternative web UI (Flood) in front of BT clients | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-04 | Add alternative BitTorrent client service (qBittorrent) | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-01 | Force MTU for VPN container and disable IPv6 | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-09-01 | Allow disabling IPv6 for foundation service networks | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-31 | After long last, re-enable corsac firewall | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-31 | Make IPv6 custom docker foundation networks work with various ip6tables ↵ | Mel | |
| rules... Phew... Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-31 | Define gateway for foundation docker networks | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-31 | Add MTU option to foundation service network options | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-31 | Clean up & integrate service network configuration into foundation module | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-28 | Rekey WireGuard secret for renard | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-27 | Move WireGuard server peer definitions to configuration option | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
| 2025-08-22 | Add goatcounter to mel.gg | Mel | |
| Signed-off-by: Mel <mel@rnrd.eu> | |||
