Commit Graph
14 Commits
Author SHA1 Message Date
emmatherockandClaude Sonnet 5 09b138391b feat(vps): add wireguard peer 10.20.0.3
Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-09-07 22:55:53 -03:00
emmatherockandClaude Sonnet 5 52c6a60404 feat(vps): enable IP forwarding for exit node support
Required so the host can route traffic as a Tailscale/Headscale exit node.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-09-01 15:43:17 -03:00
emmatherock b4f0765591 feat(neovim): add Neovim configuration and integrate with home profiles 2026-08-29 13:09:27 -03:00
emmatherock 01753a10f6 feat(default.nix): add extraPrograms to myHomeProfile for agent configuration 2026-08-26 03:49:00 -03:00
emmatherock 58a47d94fb fix(users): update authorizedKeys for user emmatherock 2026-08-26 01:46:15 -03:00
emmatherock 2ecc910de4 feat(networking): enable useNetworkd option for static IP configuration 2026-08-18 13:24:02 -03:00
emmatherock 40f0dc0d45 feat(networking): add onlinkGateway option for static IP configuration 2026-08-13 21:34:30 -03:00
emmatherock 7a276567c6 fix(vps): update network interface from eth0 to ens3 2026-08-13 02:47:07 -03:00
emmatherockandClaude Sonnet 5 5a4b51112f feat(home-manager): add core+extras profile and wire it into vps
Introduce myHomeProfile.extraPrograms (mirrors myPackages.extra) so each
host's NixOS config declares which extra Home Manager modules it needs
on top of a shared core (fish, starship, btop, git). miku-homelab's
former home.nix becomes its extras list; vps gets home-manager for the
first time using core alone.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-13 02:43:27 -03:00
emmatherockandClaude Sonnet 5 e008288d52 feat(vps): switch to systemd-boot, set Buenos Aires timezone, bump stateVersion
Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-12 04:00:48 -03:00
emmatherockandClaude Sonnet 5 1dcd29fd96 chore(vps): remove stale placeholder comment for vps-wg secret
Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-12 03:54:31 -03:00
emmatherockandClaude Sonnet 5 f3ddbb162c feat(secrets): wire up real vps SSH host key and new admin key
Fills in the real vps host key (replacing the install placeholder) and
registers vps-wg.age for agenix. Also adds Emma's NixOS-machine SSH key
as an admin decrypt key and to the vps host's authorizedKeys.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-12 03:41:10 -03:00
emmatherockandClaude Sonnet 5 7c2a09a360 refactor(packages): split core packages from per-host extras
modules/system/packages.nix now exposes myPackages.extra so hosts can
add their own tools on top of the always-installed core set, instead
of hardcoding every host's packages in one shared list.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-12 03:20:28 -03:00
emmatherockandClaude Sonnet 5 42e60a3bb5 feat(hosts): make config multi-host and add vps host
Parametrize networking, users, and containers modules under
myNetworking/myUsers/myContainers so both hosts share the same logic
instead of duplicating it, and split desktop/server module imports
into modules/profiles/. Adds hosts/vps (not installed yet, hardware
config and bootloader device are placeholders) to run Traefik,
Headscale, Headplane, and Gitea via a combined Docker Compose stack.

Wires up agenix for secrets and migrates miku-homelab's WireGuard
private key off a plain filesystem path into an encrypted
secrets/miku-homelab-wg.age. The vps side of that tunnel still needs
its own key generated and encrypted after install.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-12 00:07:55 -03:00