628 Commits

Author SHA1 Message Date
19c8ed8db5 communication: disable Synapse OIDC under MAS 2025-12-31 16:11:33 -03:00
6571902ac6 communication: fix Synapse delegated auth 2025-12-31 16:05:32 -03:00
84ca5d9275 communication: restart MAS on config change 2025-12-31 15:59:46 -03:00
b219e89f72 communication: make MAS listen on IPv4 2025-12-31 15:57:33 -03:00
f72bb1b7ad communication: enable MAS delegated auth 2025-12-31 15:53:35 -03:00
5b09584750 communication: wire MAS secrets via init render 2025-12-31 15:49:21 -03:00
38a2d14ffa communication: fix MAS config permissions 2025-12-31 15:44:17 -03:00
e6e7f2f87d communication: fix MAS container entrypoint 2025-12-31 15:41:15 -03:00
5b4078c775 communication: add matrix-authentication-service 2025-12-31 15:37:54 -03:00
480ca49e89 communication: make pin job mutable 2025-12-31 15:23:17 -03:00
f480b17d44 communication: remove plaintext secrets 2025-12-31 15:15:54 -03:00
ef67977a5f comms: avoid Synapse PVC rollout deadlock 2025-12-31 13:49:49 -03:00
787eced189 chat.ai: gate root with API key 2025-12-31 13:43:24 -03:00
cca5c093ea comms: move LiveKit media to UDP 443 2025-12-31 13:25:45 -03:00
1f3918dafe communication: prune guest-helper and synapse-federation 2025-12-31 12:16:59 -03:00
0f41408841 communication: stage guest-helper for prune 2025-12-31 12:15:18 -03:00
2e042dc0a6 communication: disable livekit room auto-create 2025-12-31 12:11:54 -03:00
ca3a5dec6a communication: add Othrys stack via Flux 2025-12-31 12:00:12 -03:00
30ae48111c jitsi-launcher: add oauth2-proxy error middleware for redirects 2025-12-25 16:57:40 -03:00
3b2aba2bff jitsi-launcher: allow any authenticated user (no group gate) 2025-12-25 16:54:33 -03:00
31752314ca jitsi-launcher: add health endpoint and readiness 2025-12-25 16:40:37 -03:00
3f1dc83b70 jitsi-launcher: pull image from docker hub 2025-12-25 16:35:44 -03:00
81f040fef2 jitsi: add vault-backed jwt launcher 2025-12-25 16:33:56 -03:00
5bc84c9b3e vault: use dedicated service account for k8s auth 2025-12-25 03:43:17 -03:00
ecac747489 jitsi: fix secrets-store csi driver name 2025-12-25 03:36:55 -03:00
b41eac80b9 vault-csi: deploy vault provider daemonset 2025-12-25 03:20:13 -03:00
d67bff3413 jitsi: use vault jwt via csi 2025-12-25 03:15:06 -03:00
78099cd6b9 platform: add vault csi driver 2025-12-25 03:14:50 -03:00
55462116dc ci-demo: fix image tag value 2025-12-24 21:49:59 -03:00
9d0ff422b5 jitsi: enforce auth flags on web/jicofo/jvb 2025-12-24 21:27:57 -03:00
1ca0201ec1 vault: revert ui default auth block (not supported) 2025-12-24 20:16:33 -03:00
a09044f528 jitsi: fix prosody auth init shell 2025-12-24 20:12:48 -03:00
2c6d2a9ebd jitsi: require auth to start rooms; vault ui default oidc 2025-12-24 20:11:29 -03:00
0813003c7b crypto: handle nested p2pool archive layout 2025-12-24 19:16:47 -03:00
1992a197a1 crypto: fetch p2pool from github with debug 2025-12-24 19:14:44 -03:00
5f28764074 crypto: download p2pool v4.9 arm64 at runtime 2025-12-24 19:09:40 -03:00
cde8f0b8ab crypto: fetch p2pool binary at runtime 2025-12-24 19:06:40 -03:00
f4434c860e grafana,jitsi: enable pkce and tcp fallback 2025-12-24 18:15:25 -03:00
0c9ebe4666 jitsi: keep tcp config on pvc only 2025-12-24 17:53:59 -03:00
0dffad8009 jitsi: include sip communicator tcp props 2025-12-24 17:49:47 -03:00
b2904dba30 grafana: allow public overview via oidc 2025-12-24 17:43:07 -03:00
0af536ad57 jellyfin: enforce ldap auth provider on start 2025-12-24 17:25:07 -03:00
a7702eb41f jellyfin: drop OIDC plugin and strip injected script 2025-12-24 15:28:47 -03:00
5881017882 jitsi: add tcp harvester config for 4443 2025-12-24 15:28:47 -03:00
flux-bot
797bfe2eb5 chore(bstein-dev-home): automated image update 2025-12-22 19:58:37 +00:00
flux-bot
e732bcc03b chore(bstein-dev-home): automated image update 2025-12-22 19:57:34 +00:00
d594cf2130 jitsi: add sip-communicator tcp harvester props 2025-12-22 13:51:05 -03:00
50050d5d38 jitsi: force tcp harvester via system props 2025-12-22 13:49:28 -03:00
a934b6b7f6 jitsi: fix init container placement 2025-12-22 13:47:18 -03:00
5c4187e612 jitsi: copy tcp custom config via init 2025-12-22 13:45:50 -03:00