| Age | Commit message (Collapse) | Author | Files | Lines | |
|---|---|---|---|---|---|
| 2025-09-13 | Add wg_portal and pihole port and nginx configurations | Ahmed AbdelHalim | 1 | -0/+0 | |
| 2025-09-13 | Add nginx role to playbook and testing | Ahmed AbdelHalim | 5 | -0/+5 | |
| 2025-09-13 | Remove the idempotence ignore test in wireguard | Ahmed AbdelHalim | 1 | -2/+0 | |
| Since the ACL fix probably fixed this one too | |||||
| 2025-09-13 | Add pihole port configurations and integration with nginx | Ahmed AbdelHalim | 4 | -0/+43 | |
| 2025-09-13 | Add wg_portal nginx integration (enabled by flag, default false) | Ahmed AbdelHalim | 4 | -0/+37 | |
| 2025-09-13 | Add nginx role | Ahmed AbdelHalim | 8 | -0/+250 | |
| 2025-09-13 | Add logrotate role (dependency for nginx) | Ahmed AbdelHalim | 3 | -0/+30 | |
| 2025-09-13 | Add openssl role (dependency for nginx) | Ahmed AbdelHalim | 3 | -0/+30 | |
| 2025-09-12 | Split the playbooks into bootstrap and configure | Ahmed AbdelHalim | 3 | -51/+48 | |
| This is to allow the ansible-distro-install to safely call the bootstrap playbook without getting validation errors about the other configure roles (especially if they are not configured yet, or if running on CI) | |||||
| 2025-09-12 | Fix idempotence for wg-portal role | Ahmed AbdelHalim | 1 | -9/+2 | |
| Delegate the /etc/wireguard directory creation to the package, this way, if later the wg-portal role was to be installed and update that directory ACL, it won't fail idempotent test. Ignore the wireguard configuration creation, for some reason the usage of dictionary is not preventing the detection of when items change! | |||||
| 2025-09-12 | Fix the testing of gateway role in containers/CI | Ahmed AbdelHalim | 6 | -10/+10 | |
| 2025-09-12 | Fix testing ansible role on 2.19.2 | Ahmed AbdelHalim | 1 | -1/+1 | |
| The issue is that regex_match either returns a string or none which was implicitly converted to a boolean, this breaks on 2.19.2+ This ensure compatibility with newer versions. | |||||
| 2025-09-12 | Update example/test variables | Ahmed AbdelHalim | 6 | -12/+20 | |
| 2025-09-12 | Fix looping over wireguard connection dict | Ahmed AbdelHalim | 1 | -1/+1 | |
| 2025-09-12 | Fix linting issues | Ahmed AbdelHalim | 1 | -1/+1 | |
| 2025-09-12 | Update variables and ignore claud.md file | Ahmed AbdelHalim | 2 | -0/+1 | |
| 2025-09-12 | Fix wg-portal dependencies (ACL) | Ahmed AbdelHalim | 1 | -0/+2 | |
| 2025-09-12 | Add gateway role to playbooks/tests | Ahmed AbdelHalim | 5 | -1/+5 | |
| 2025-09-12 | Implement the gateway role (replacing old wireguard-gateway) | Ahmed AbdelHalim | 11 | -0/+364 | |
| 2025-09-11 | Remove claude | Ahmed AbdelHalim | 1 | -138/+0 | |
| 2025-09-11 | Update vars to rename the wireguard interfaces wg-x (standard) | Ahmed AbdelHalim | 5 | -10/+11 | |
| 2025-09-11 | Fix the wg-portal role to be idempotent and withstand install/uninsall | Ahmed AbdelHalim | 1 | -5/+42 | |
| 2025-09-10 | Refactor site playbooks to be more host oriented | Ahmed AbdelHalim | 4 | -21/+55 | |
| This also improves the dependency management, making the roles less repeating when not needing to execute multiple times | |||||
| 2025-09-10 | Add recommended argument_specs | Ahmed AbdelHalim | 24 | -4/+91 | |
| 2025-09-10 | Follow the ansible recommendation of using systemd_service | Ahmed AbdelHalim | 7 | -14/+14 | |
| 2025-09-10 | Remove wireguard_gateway | Ahmed AbdelHalim | 10 | -237/+0 | |
| This implementation doesn't work properly after testing. The iptable configuration didn't allow for changing the VPN state without running into networking issues. Either have to change the VPN by running the role, which is inconvenient or reimplement the role differently to allow for control over network/interfaces | |||||
| 2025-09-10 | Refactor role dependencies to be more module modular | Ahmed AbdelHalim | 22 | -49/+157 | |
| This modularity means that each role can be installed in a playbook by itself as long as the other roles exist around it. This also straps the ensure dependency packages exist in any of the roles tasks, they should be moved to their own roles and configured properly if needed. | |||||
| 2025-09-10 | Add wg_portal role to install vpn web interface manager | Ahmed AbdelHalim | 7 | -0/+72 | |
| 2025-09-10 | Fix password policy on debian don't have gnome installed by default | Ahmed AbdelHalim | 1 | -0/+2 | |
| 2025-09-09 | Remove old pihole 5 related paths | Ahmed AbdelHalim | 1 | -3/+0 | |
| 2025-09-04 | [skip-ci] fix typo in notes | Ahmed AbdelHalim | 1 | -2/+2 | |
| 2025-09-04 | Make the testing commands generic | Ahmed AbdelHalim | 1 | -2/+2 | |
| 2025-09-04 | Skip idempotence test because the ipv6 default isn't set on CI | Ahmed AbdelHalim | 1 | -10/+6 | |
| 2025-09-04 | Fix CI | Ahmed AbdelHalim | 8 | -3/+54 | |
| 2025-09-04 | Refactor molecule testing to run a scenario per distro and fix ipv6 | Ahmed AbdelHalim | 12 | -6/+22 | |
| 2025-09-04 | Refactor molecule testing to run a scenario per distro | Ahmed AbdelHalim | 14 | -66/+282 | |
| 2025-09-03 | Fix archlinux failure | Ahmed AbdelHalim | 1 | -0/+1 | |
| The root causes why the idempotence test to fail is that Docker bridge creation sends netlink events to socket Socket activation starts systemd-networkd.service despite disabled state Idempotence test finds service running when expecting stopped | |||||
| 2025-09-03 | Fix pihole interface configuration | Ahmed AbdelHalim | 1 | -0/+0 | |
| 2025-09-03 | Add ansible role | Ahmed AbdelHalim | 8 | -0/+223 | |
| 2025-09-03 | Update claude | Ahmed AbdelHalim | 1 | -15/+16 | |
| 2025-09-03 | Revert change to network and disable filtering | Ahmed AbdelHalim | 3 | -0/+0 | |
| 2025-09-03 | Revert "Fix networking issue" | Ahmed AbdelHalim | 1 | -24/+0 | |
| This reverts commit 06e686bc12ee10697431f056efbaecdcba1681d2. | |||||
| 2025-09-03 | Revert "Refactor: rename wireguard_gateway to gateway" | Ahmed AbdelHalim | 13 | -25/+25 | |
| This reverts commit fdd0b5b58f0ebd39ad05e2dcb17faa6603145f97. | |||||
| 2025-09-03 | Revert "Experimental: adding iptables persistence through reboots" | Ahmed AbdelHalim | 2 | -48/+1 | |
| This reverts commit 025abf3ce9497f51d21b14aa31907c0c3bd75ecf. | |||||
| 2025-09-03 | Add Claude context | Ahmed AbdelHalim | 1 | -0/+112 | |
| 2025-09-03 | Experimental: adding iptables persistence through reboots | Ahmed AbdelHalim | 2 | -1/+48 | |
| 2025-09-03 | Refactor: rename wireguard_gateway to gateway | Ahmed AbdelHalim | 13 | -25/+25 | |
| As the role now functions as a gateway and not just a wireguard gateway it's better name for clarity | |||||
| 2025-09-03 | Fix networking issue | Ahmed AbdelHalim | 1 | -0/+24 | |
| This allows forwarding the traffic through the pi (similar to how the VPN is routing all the traffic using it's iptables) This means that the role is more of a general gateway When the vpn is activated it handles routing all the traffic through it This commits provide the same functionality when the VPN isn't active | |||||
| 2025-09-03 | Add podman role with configuration to work over ssh with cgroupfs | Ahmed AbdelHalim | 4 | -0/+68 | |
| 2025-09-03 | Fix the user groups to be appended | Ahmed AbdelHalim | 1 | -1/+1 | |
| It's more modular and each role can manage its own group memberships | |||||
