| Age | Commit message (Collapse) | Author | Files | Lines | |
|---|---|---|---|---|---|
| 2025-09-15 | Add prometheus role (with node exporter) | Ahmed Abdelhalim | 6 | -0/+126 | |
| 2025-09-15 | Fix uv idempotent install for the tool versions | Ahmed Abdelhalim | 1 | -8/+38 | |
| 2025-09-15 | Fix idempotent testing for python role | Ahmed Abdelhalim | 1 | -1/+1 | |
| 2025-09-15 | Refactor python and ansible roles to use uv package manager | Ahmed Abdelhalim | 7 | -138/+30 | |
| 2025-09-15 | Refactor go role to simplify version management | Ahmed Abdelhalim | 3 | -64/+23 | |
| 2025-09-15 | Update network role to remove dhcpcd dependency | Ahmed Abdelhalim | 6 | -6/+15 | |
| Fix install on ubuntu not having networking service stated by default on ubuntu | |||||
| 2025-09-14 | Fix linting issues in nginx role | Ahmed Abdelhalim | 1 | -5/+5 | |
| 2025-09-14 | Fix wireguard stopping vpn when it's not necessary | Ahmed Abdelhalim | 1 | -1/+1 | |
| It's only necessary to stop the VPN to set another one running instead (as the configurations are not built to stack VPN although possible) | |||||
| 2025-09-14 | Put back the idempotent ignore test | Ahmed Abdelhalim | 2 | -0/+4 | |
| The idempotent test is only failing on the second run, the reason is, on the first run the wireguard files are created with default permissions, then the wg_portal role update the ACL. On the second run, the wireguard role recognizes the difference in the permissions, and update the files (expectedly), the default ACL then takes place and set the permissions correctly with ACLs On any successive run, the role is idempotent and doesn't update the files again. | |||||
| 2025-09-14 | nginx serves .local domain over http otherwise redirects http to https | Ahmed Abdelhalim | 1 | -0/+12 | |
| 2025-09-13 | Remove the idempotence ignore test in wireguard | Ahmed Abdelhalim | 1 | -2/+0 | |
| Since the ACL fix probably fixed this one too | |||||
| 2025-09-13 | Add pihole port configurations and integration with nginx | Ahmed Abdelhalim | 4 | -0/+43 | |
| 2025-09-13 | Add wg_portal nginx integration (enabled by flag, default false) | Ahmed Abdelhalim | 4 | -0/+37 | |
| 2025-09-13 | Add nginx role | Ahmed Abdelhalim | 8 | -0/+250 | |
| 2025-09-13 | Add logrotate role (dependency for nginx) | Ahmed Abdelhalim | 3 | -0/+30 | |
| 2025-09-13 | Add openssl role (dependency for nginx) | Ahmed Abdelhalim | 3 | -0/+30 | |
| 2025-09-12 | Fix idempotence for wg-portal role | Ahmed Abdelhalim | 1 | -9/+2 | |
| Delegate the /etc/wireguard directory creation to the package, this way, if later the wg-portal role was to be installed and update that directory ACL, it won't fail idempotent test. Ignore the wireguard configuration creation, for some reason the usage of dictionary is not preventing the detection of when items change! | |||||
| 2025-09-12 | Fix the testing of gateway role in containers/CI | Ahmed Abdelhalim | 2 | -2/+3 | |
| 2025-09-12 | Fix testing ansible role on 2.19.2 | Ahmed Abdelhalim | 1 | -1/+1 | |
| The issue is that regex_match either returns a string or none which was implicitly converted to a boolean, this breaks on 2.19.2+ This ensure compatibility with newer versions. | |||||
| 2025-09-12 | Fix looping over wireguard connection dict | Ahmed Abdelhalim | 1 | -1/+1 | |
| 2025-09-12 | Fix linting issues | Ahmed Abdelhalim | 1 | -1/+1 | |
| 2025-09-12 | Implement the gateway role (replacing old wireguard-gateway) | Ahmed Abdelhalim | 11 | -0/+364 | |
| 2025-09-11 | Fix the wg-portal role to be idempotent and withstand install/uninsall | Ahmed Abdelhalim | 1 | -5/+42 | |
| 2025-09-10 | Refactor site playbooks to be more host oriented | Ahmed Abdelhalim | 3 | -0/+32 | |
| This also improves the dependency management, making the roles less repeating when not needing to execute multiple times | |||||
| 2025-09-10 | Add recommended argument_specs | Ahmed Abdelhalim | 23 | -3/+91 | |
| 2025-09-10 | Follow the ansible recommendation of using systemd_service | Ahmed Abdelhalim | 7 | -14/+14 | |
| 2025-09-10 | Remove wireguard_gateway | Ahmed Abdelhalim | 6 | -233/+0 | |
| This implementation doesn't work properly after testing. The iptable configuration didn't allow for changing the VPN state without running into networking issues. Either have to change the VPN by running the role, which is inconvenient or reimplement the role differently to allow for control over network/interfaces | |||||
| 2025-09-10 | Refactor role dependencies to be more module modular | Ahmed Abdelhalim | 22 | -49/+157 | |
| This modularity means that each role can be installed in a playbook by itself as long as the other roles exist around it. This also straps the ensure dependency packages exist in any of the roles tasks, they should be moved to their own roles and configured properly if needed. | |||||
| 2025-09-10 | Add wg_portal role to install vpn web interface manager | Ahmed Abdelhalim | 4 | -0/+70 | |
| 2025-09-10 | Fix password policy on debian don't have gnome installed by default | Ahmed Abdelhalim | 1 | -0/+2 | |
| 2025-09-09 | Remove old pihole 5 related paths | Ahmed Abdelhalim | 1 | -3/+0 | |
| 2025-09-04 | [skip-ci] fix typo in notes | Ahmed Abdelhalim | 1 | -2/+2 | |
| 2025-09-04 | Skip idempotence test because the ipv6 default isn't set on CI | Ahmed Abdelhalim | 1 | -10/+6 | |
| 2025-09-04 | Fix CI | Ahmed Abdelhalim | 7 | -3/+29 | |
| 2025-09-04 | Refactor molecule testing to run a scenario per distro and fix ipv6 | Ahmed Abdelhalim | 1 | -0/+3 | |
| 2025-09-03 | Fix archlinux failure | Ahmed Abdelhalim | 1 | -0/+1 | |
| The root causes why the idempotence test to fail is that Docker bridge creation sends netlink events to socket Socket activation starts systemd-networkd.service despite disabled state Idempotence test finds service running when expecting stopped | |||||
| 2025-09-03 | Add ansible role | Ahmed Abdelhalim | 6 | -0/+221 | |
| 2025-09-03 | Revert "Fix networking issue" | Ahmed Abdelhalim | 1 | -24/+0 | |
| This reverts commit 06e686bc12ee10697431f056efbaecdcba1681d2. | |||||
| 2025-09-03 | Revert "Refactor: rename wireguard_gateway to gateway" | Ahmed Abdelhalim | 7 | -22/+22 | |
| This reverts commit fdd0b5b58f0ebd39ad05e2dcb17faa6603145f97. | |||||
| 2025-09-03 | Revert "Experimental: adding iptables persistence through reboots" | Ahmed Abdelhalim | 2 | -48/+1 | |
| This reverts commit 025abf3ce9497f51d21b14aa31907c0c3bd75ecf. | |||||
| 2025-09-03 | Experimental: adding iptables persistence through reboots | Ahmed Abdelhalim | 2 | -1/+48 | |
| 2025-09-03 | Refactor: rename wireguard_gateway to gateway | Ahmed Abdelhalim | 7 | -22/+22 | |
| As the role now functions as a gateway and not just a wireguard gateway it's better name for clarity | |||||
| 2025-09-03 | Fix networking issue | Ahmed Abdelhalim | 1 | -0/+24 | |
| This allows forwarding the traffic through the pi (similar to how the VPN is routing all the traffic using it's iptables) This means that the role is more of a general gateway When the vpn is activated it handles routing all the traffic through it This commits provide the same functionality when the VPN isn't active | |||||
| 2025-09-03 | Add podman role with configuration to work over ssh with cgroupfs | Ahmed Abdelhalim | 2 | -0/+66 | |
| 2025-09-03 | Fix the user groups to be appended | Ahmed Abdelhalim | 1 | -1/+1 | |
| It's more modular and each role can manage its own group memberships | |||||
| 2025-09-03 | Revert back to using brew module as it has better idempotency handling | Ahmed Abdelhalim | 2 | -24/+23 | |
| 2025-09-03 | Add docker role | Ahmed Abdelhalim | 2 | -0/+38 | |
| 2025-09-02 | Revert the pyenv full path change | Ahmed Abdelhalim | 1 | -4/+12 | |
| It should be cosmetic, but apparently failing on debian | |||||
| 2025-09-02 | Add bash as a role and use it in role dependencies when bash is needed | Ahmed Abdelhalim | 8 | -15/+32 | |
| 2025-09-02 | Fix CI failures and ignore intentionally changing tasks for idem test | Ahmed Abdelhalim | 3 | -2/+27 | |
