| Commit message (Collapse) | Author | Age |
|
|
|
|
|
|
|
|
|
| |
The current `remotes` option is a string option containing nullmailer remote
definitions. However, those definitions may contain secret credentials and
should therefore not be put world-readable in the nix store.
I added a `remotesFile` option, which allows to specify a path to the remotes
definition file instead. This way, the definitions can be kept outside of the
nix store with more secure file permissions.
|
| |
|
| |
|
|
|
|
| |
Iff interface is set, it makes sense to add device route by default.
|
|\
| |
| | |
nixos/tinc: add "restartTriggers" back
|
| |
| |
| |
| | |
Add "restartTriggers" back to restart the Tinc daemon when its peer is removed.
Reverted #27660
|
|/ |
|
|
|
|
|
|
| |
Still does not succeed but advances further
(cherry picked from commit 30d09f717aa94a78105bff22da548b904887b394)
|
|
|
|
|
| |
This makes it easy to identify which NixOS version is written to an USB
stick without actually booting it.
|
|
|
|
|
| |
Consul is a service you typically want to have running all the time;
it's not supposed to quit by itself.
|
|\
| |
| | |
GDM fixes
|
| | |
|
| |
| |
| |
| | |
nvidia drivers.
|
| | |
|
|\ \
| |/
|/| |
znc: fix openFirewall option
|
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| | |
The current version is broken:
- there's no `openFirewall` attribute directly in the `cfg` set
- the `port` option is an attribute of the `confOptions` set
I used the proper attribute for the firewall port and moved the `openFirewall`
option directly up to the `services.znc` set, as it's rather a general option
for the whole service than a znc-specific option (which are located inside the
`confOptions` set).
|
| | |
|
| |
| |
| |
| | |
cc #22470
|
| |
| |
| |
| |
| |
| |
| |
| |
| | |
We now wait for dhcpcd to acquire a lease but dhcpcd is restarted on
system activation. As wpa_supplicant is stopped while dhcpcd is
restarting a significant delay is introduced on systems with wireless
network connections only. This changes the wpa_supplicant service to
also be restarted together with dhcpcd in case both services were
changed.
|
| |
| |
| |
| |
| |
| |
| | |
This reverts commit 0c81594a29d99d9ee9c9c88c680340d56823cfb2.
It's no longer needed since systemd-vconsole-setup enumerates all ttys
until it finds a suitable one since systemd v234.
|
|/ |
|
|
|
|
| |
see #29516
|
|
|
|
|
| |
I didn't notice the cherry-pick, but Globin found out immediately.
/cc #29180.
|
|
|
|
| |
/cc #29180.
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
* Grants enough privileges to the configured user so that it can run
mysqldump.
* Adds a nixos test.
* Use systemd timers instead of a cronjob (by @fadenb).
* Creates a new user for backups by default, instead of using mysql
user.
* Ensures that backup user has write permissions on backup location.
* Write backup to a temporary file before renaming so that a failed
backup won't overwrite the previous backup, and so that the backup
location will never contain a partial backup.
Breaking changes:
* Renamed period to calendar to reflect the change in how to
configure the backup time.
* A failed backup will no longer result in cron sending an e-mail --
users' monitoring systems must be updated.
Resolves #24728
|
|
|
|
| |
ExecStart is sufficient and more transparent to the user.
|
|
|
|
|
| |
tinc can figure this out based on DeviceType.
I also got `/dev/net/tun FD in bad state` after a particular upgrade.
|
|
|
|
|
| |
While it's annoying to pollute the user database with a lot of nixbld*
users, 10 users is really too low for many modern systems.
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
Spamassassin expects its system-wide configuration at /etc/spamassassin, and
some user tools (like sa-learn) need to read those configuration files.
Therefore, we provide a symlink from /etc/spamassassin to the appropriate Nix
store path to make sure those tools work without the user having to pass an
elaborate --siteconfig path that, potentially, changes every time the system
updates.
Fixes https://github.com/NixOS/nixpkgs/issues/29414.
|
| |
|
|\
| |
| | |
nixos-install: re-enable --chroot option
|
| |
| |
| | |
I forgot to implement it the first time around. Whoops!
|
|\ \
| | |
| | | |
nixos/zfs: import encrypted datasets by default for zfsUnstable
|
| | | |
|
|\ \ \
| |/ /
|/| | |
mediawiki: 1.27.3 -> 1.29.1
|
| | | |
|
| | | |
|
| | |
| | |
| | |
| | | |
Documents a possible migration step required to use the new options.
|
|\ \ \
| | | |
| | | | |
gnome3.at-spi2-core: fix service not found error
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
The service was not registered as a systemd service resulting in errors
in the system journal every time a GNOME application was launched.
See: #16327
|
| | | | |
|
| | | | |
|
|\ \ \ \
| | | | |
| | | | | |
networking.wireguard: added `allowedIpsAsRoutes` boolean to control p…
|
| | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | | |
Sometimes (especially in the default route case) it is required to NOT
add routes for all allowed IP ranges. One might run it's own custom
routing on-top of wireguard and only use the wireguard addresses to
exchange prefixes with the remote host.
|
|\ \ \ \ \
| | | | | |
| | | | | | |
Fusion inventory: Init at 2.3.18
|
| | | | | | |
|
| | |_|/ /
| |/| | | |
|
| | | | |
| | | | |
| | | | |
| | | | | |
Fixes #28620.
|