628 Commits

Author SHA1 Message Date
385df610be communication: disable Synapse OIDC under MAS 2025-12-31 16:11:33 -03:00
07ae28e1b1 communication: fix Synapse delegated auth 2025-12-31 16:05:32 -03:00
20df5cfb6e communication: restart MAS on config change 2025-12-31 15:59:46 -03:00
683f495bd8 communication: make MAS listen on IPv4 2025-12-31 15:57:33 -03:00
cb82a44e2e communication: enable MAS delegated auth 2025-12-31 15:53:35 -03:00
940e0cc613 communication: wire MAS secrets via init render 2025-12-31 15:49:21 -03:00
45f62bc331 communication: fix MAS config permissions 2025-12-31 15:44:17 -03:00
d9c003ce5a communication: fix MAS container entrypoint 2025-12-31 15:41:15 -03:00
716059d9ac communication: add matrix-authentication-service 2025-12-31 15:37:54 -03:00
6203faae3f communication: make pin job mutable 2025-12-31 15:23:17 -03:00
d8d741bbd9 communication: remove plaintext secrets 2025-12-31 15:15:54 -03:00
aca05266fc comms: avoid Synapse PVC rollout deadlock 2025-12-31 13:49:49 -03:00
ee6bcec3c5 chat.ai: gate root with API key 2025-12-31 13:43:24 -03:00
a815322f6e comms: move LiveKit media to UDP 443 2025-12-31 13:25:45 -03:00
5ed650d19c communication: prune guest-helper and synapse-federation 2025-12-31 12:16:59 -03:00
6759817518 communication: stage guest-helper for prune 2025-12-31 12:15:18 -03:00
71c58ee081 communication: disable livekit room auto-create 2025-12-31 12:11:54 -03:00
a6bd6b8cc8 communication: add Othrys stack via Flux 2025-12-31 12:00:12 -03:00
c0a53e59b5 jitsi-launcher: add oauth2-proxy error middleware for redirects 2025-12-25 16:57:40 -03:00
c9ebcfc869 jitsi-launcher: allow any authenticated user (no group gate) 2025-12-25 16:54:33 -03:00
0e3d36a5ae jitsi-launcher: add health endpoint and readiness 2025-12-25 16:40:37 -03:00
a8fdcc5931 jitsi-launcher: pull image from docker hub 2025-12-25 16:35:44 -03:00
a55203a909 jitsi: add vault-backed jwt launcher 2025-12-25 16:33:56 -03:00
77ecf3229e vault: use dedicated service account for k8s auth 2025-12-25 03:43:17 -03:00
bb93f730d5 jitsi: fix secrets-store csi driver name 2025-12-25 03:36:55 -03:00
2acc7a06b2 vault-csi: deploy vault provider daemonset 2025-12-25 03:20:13 -03:00
5666eceec7 jitsi: use vault jwt via csi 2025-12-25 03:15:06 -03:00
fbe2490ef7 platform: add vault csi driver 2025-12-25 03:14:50 -03:00
9bbdbb5fab ci-demo: fix image tag value 2025-12-24 21:49:59 -03:00
25758b1cd9 jitsi: enforce auth flags on web/jicofo/jvb 2025-12-24 21:27:57 -03:00
4d47e2c693 vault: revert ui default auth block (not supported) 2025-12-24 20:16:33 -03:00
bd21e775ab jitsi: fix prosody auth init shell 2025-12-24 20:12:48 -03:00
cf2e4c8bb2 jitsi: require auth to start rooms; vault ui default oidc 2025-12-24 20:11:29 -03:00
bbe4fb2cff crypto: handle nested p2pool archive layout 2025-12-24 19:16:47 -03:00
1bbb88d9a3 crypto: fetch p2pool from github with debug 2025-12-24 19:14:44 -03:00
b71c145e6e crypto: download p2pool v4.9 arm64 at runtime 2025-12-24 19:09:40 -03:00
7876e4389c crypto: fetch p2pool binary at runtime 2025-12-24 19:06:40 -03:00
0db786c343 grafana,jitsi: enable pkce and tcp fallback 2025-12-24 18:15:25 -03:00
23f5f03047 jitsi: keep tcp config on pvc only 2025-12-24 17:53:59 -03:00
ad79ad0a3c jitsi: include sip communicator tcp props 2025-12-24 17:49:47 -03:00
39a8e551eb grafana: allow public overview via oidc 2025-12-24 17:43:07 -03:00
cd7ba1e8a8 jellyfin: enforce ldap auth provider on start 2025-12-24 17:25:07 -03:00
cecde3e197 jellyfin: drop OIDC plugin and strip injected script 2025-12-24 15:28:47 -03:00
e9308b6bd1 jitsi: add tcp harvester config for 4443 2025-12-24 15:28:47 -03:00
flux-bot
ebebd19a13 chore(bstein-dev-home): automated image update 2025-12-22 19:58:37 +00:00
flux-bot
0cd6d47940 chore(bstein-dev-home): automated image update 2025-12-22 19:57:34 +00:00
25c32da81e jitsi: add sip-communicator tcp harvester props 2025-12-22 13:51:05 -03:00
bde4002362 jitsi: force tcp harvester via system props 2025-12-22 13:49:28 -03:00
453776967a jitsi: fix init container placement 2025-12-22 13:47:18 -03:00
5baf62c915 jitsi: copy tcp custom config via init 2025-12-22 13:45:50 -03:00