176 Commits

Author SHA1 Message Date
John Lancaster
1d3847ec12 adjusted timings 2026-03-17 13:26:52 -05:00
John Lancaster
f3b503fc9e broke out the password file 2026-03-17 13:05:23 -05:00
John Lancaster
d9f1d9593b added to soteria 2026-03-17 13:05:12 -05:00
John Lancaster
6a7e78a19e started restic rest server 2026-03-17 13:05:02 -05:00
John Lancaster
61c1c5d80e prune 2026-03-17 13:00:47 -05:00
John Lancaster
754e7cc1a0 moved some excludes 2026-03-17 12:52:14 -05:00
John Lancaster
d9fcbe68ad restic mtls opts 2026-03-17 12:43:40 -05:00
John Lancaster
f8c40ff627 restic env vars 2026-03-17 11:57:40 -05:00
John Lancaster
e61bec46d2 customized timing 2026-03-16 14:18:37 -05:00
John Lancaster
27c8f6d86d added lifetime option 2026-03-16 12:39:51 -05:00
John Lancaster
ab5bda0c37 passing thru args in mtls-generate 2026-03-16 12:30:20 -05:00
John Lancaster
5fb80498b5 generalized mtls-renew script 2026-03-16 12:28:05 -05:00
John Lancaster
7b258b3eb9 prune 2026-03-16 12:12:20 -05:00
John Lancaster
a92fd22c65 indentation 2026-03-16 12:05:06 -05:00
John Lancaster
4af0cf7ca7 added mk functions for home manager side 2026-03-16 12:04:23 -05:00
John Lancaster
3af6ab0819 case structure 2026-03-16 08:37:40 -05:00
John Lancaster
2231c5910c broke out systemd service definitions 2026-03-16 08:27:33 -05:00
John Lancaster
853fe3c556 added mtls renewal service to motd 2026-03-16 08:27:09 -05:00
John Lancaster
1d210457b5 tweaked login-text 2026-03-16 08:23:04 -05:00
John Lancaster
acbd86f589 added restic user options 2026-03-16 08:02:28 -05:00
John Lancaster
30c4a648ff prune 2026-03-16 08:00:34 -05:00
John Lancaster
3f743280ee changing to real restic service 2026-03-15 23:08:24 -05:00
John Lancaster
621dda40eb changed certs dir 2026-03-15 22:09:12 -05:00
John Lancaster
e4767ad30d broke out certDir for home manager module 2026-03-15 22:03:42 -05:00
John Lancaster
e72b27e59d mtls home manager module 2026-03-15 21:27:44 -05:00
John Lancaster
67688c2aa6 added mtls renewal service 2026-03-15 21:12:03 -05:00
John Lancaster
3e2ad120fe provisioner option 2026-03-15 21:05:38 -05:00
John Lancaster
e38689fb82 disabled ssh user cert for janus 2026-03-15 21:03:20 -05:00
John Lancaster
ba72aec338 SAN args 2026-03-15 21:02:09 -05:00
John Lancaster
a8a9a73e08 working mtls for janus system 2026-03-15 20:52:34 -05:00
John Lancaster
3800ae7502 mtls options 2026-03-15 20:32:49 -05:00
John Lancaster
8a95c9f27a flake.lock update 2026-03-15 20:20:39 -05:00
John Lancaster
9466238db9 moved specifics 2026-03-15 20:19:41 -05:00
John Lancaster
dfefb9682f options organization 2026-03-15 20:18:01 -05:00
John Lancaster
832149305b commonized root CA pattern 2026-03-15 20:14:23 -05:00
John Lancaster
f9a8ad47e3 moved step-ssh-host service 2026-03-15 20:10:34 -05:00
John Lancaster
ddc4b4e5a4 added keep monthly 2026-03-15 18:47:06 -05:00
John Lancaster
0830a8d0a4 fixed rp-test 2026-03-15 18:46:27 -05:00
John Lancaster
e83f6939e8 started mtls stuff 2026-03-15 18:15:45 -05:00
John Lancaster
f5ae40c3e7 added ssh host cert renewal 2026-03-15 17:05:58 -05:00
John Lancaster
cd13e56e15 added login-text to janus 2026-03-15 16:54:48 -05:00
John Lancaster
3339cd6b0c removed default for principals option 2026-03-15 16:21:02 -05:00
John Lancaster
6315ac0143 provisioner explicitly defined 2026-03-15 16:16:59 -05:00
John Lancaster
b3bcfdcfcb step-ssh-user 2026-03-15 16:15:27 -05:00
John Lancaster
2ace9cd2dd formatting 2026-03-15 16:15:17 -05:00
John Lancaster
8735ef24d5 hostKeyFile variable 2026-03-15 15:52:45 -05:00
John Lancaster
85a1127e1d userCAPath variable 2026-03-15 15:51:09 -05:00
John Lancaster
9c26c962ff slight reorg 2026-03-15 15:44:24 -05:00
John Lancaster
da2de12193 moved sign-ssh-cert 2026-03-15 15:20:34 -05:00
John Lancaster
ff9a817ef8 better known_hosts 2026-03-15 15:06:48 -05:00