a09dd925ac
rift: open firewall for mc-proxy (443, 8443, 9443) and exod (8080, 9090)
...
Remove implicit reliance on temp iptables rules. All externally
accessible ports are now declared in NixOS config.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-25 19:51:38 -07:00
87be4e34d3
Add WNTRMUTE issuing CA to system trust store
...
All NixOS machines now trust the Metacircular platform CA. This
allows curl, browsers, and Go services to verify TLS certificates
issued by Metacrypt without --insecure or custom CA flags.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-25 19:30:24 -07:00
73be02eaae
vade: route mcp.metacircular.net zone to rift via resolved
...
Link-level DNS from DHCP and Tailscale takes priority over global
nameservers in systemd-resolved. Use domain routing (~mcp.metacircular.net)
so resolved sends only internal zone queries to rift's CoreDNS.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-25 19:22:35 -07:00
0268a0c721
Disable exo flake input (broken flake.nix upstream)
...
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-25 19:20:59 -07:00
eecb3973b1
rift: allow port 53 for CoreDNS, vade: use rift as DNS
...
rift: sysctl to allow rootless containers to bind port 53, open
firewall for DNS queries from LAN clients.
vade: point nameservers at rift (LAN + Tailscale) for internal
service resolution via CoreDNS (MCNS precursor). Falls back to
1.1.1.1/8.8.8.8 via systemd-resolved.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-25 19:19:02 -07:00
b49b7ca2e3
let's get exo working
2026-03-25 17:07:09 -07:00
998a1d9aaf
fix stylus support
2026-03-25 16:29:04 -07:00
27ce85ebda
update lector
2026-03-25 15:44:17 -07:00
55a93d3aac
update sgard
2026-03-25 14:09:49 -07:00
8d34ac5dc3
update sgard
2026-03-25 11:30:34 -07:00
8ac8e389c0
add xclip
2026-03-25 11:07:03 -07:00
38d782cdf8
add poppler-utils
2026-03-25 10:41:44 -07:00
7684c673f2
update lector, kte
2026-03-25 10:39:48 -07:00
76f1f534d0
add poppler
2026-03-25 10:39:02 -07:00
59fd091632
enable FIDO2/U2F PAM authentication
...
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-25 00:04:51 -07:00
d1aee2f30e
vade: prefer FIDO2 over passphrase for LUKS unlock
...
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-03-24 23:56:40 -07:00
6db72017e0
kte update
2026-03-24 23:27:42 -07:00
efe0252473
flake updates and systemd initrd
2026-03-24 23:23:15 -07:00
5796f737cf
update lector, sgard
2026-03-24 16:27:35 -07:00
8d36fcc960
ghostscript
2026-03-24 12:13:01 -07:00
806c92dc78
zathura and nh clean when rebuilding.
2026-03-24 12:02:03 -07:00
86b4309360
update lector
2026-03-24 11:16:05 -07:00
fe8618e620
jpg2pdf for mini-essays
2026-03-24 11:12:11 -07:00
e6b77c5445
Add arca.
2026-03-24 09:28:42 -07:00
2c5a7510a0
arca update
2026-03-24 09:25:21 -07:00
ab5c2be404
scrub images tooling
2026-03-24 09:01:57 -07:00
cbd300d7f7
flake update
2026-03-24 08:57:27 -07:00
3a14eee43c
add arca
2026-03-24 08:13:39 -07:00
1dbcfb409e
mat2
2026-03-24 08:11:14 -07:00
ccac624f0f
add mutt and signal
2026-03-24 07:47:34 -07:00
055fd26e36
update lector, sgard
2026-03-24 07:36:55 -07:00
15a2d99993
update lector
2026-03-24 00:27:15 -07:00
d7a3ecdc8f
add sgard, update lector.
2026-03-23 22:40:48 -07:00
4aec63b408
lector v1.0.2
2026-03-23 20:29:08 -07:00
a4e8701b6e
lector updates
2026-03-23 20:00:10 -07:00
2e83f21dcf
Update flake.lock
2026-03-23 19:16:54 -07:00
024b09fea8
lector
2026-03-23 19:16:23 -07:00
784991633e
add libGL
2026-03-23 10:27:23 -07:00
7ce38a2e0f
sensors
2026-03-23 08:03:36 -07:00
34ce33ed10
i3blocks
2026-03-23 07:56:54 -07:00
d1992fd406
mesa
2026-03-22 15:01:35 -07:00
62c58ab08e
adding yk tooling
2026-03-21 11:53:45 -07:00
4b2344e9f1
typo
2026-03-21 11:52:44 -07:00
7df99a4e42
fido2 tooling
2026-03-21 11:49:41 -07:00
b3e2f25f28
adding exo packages
2026-03-21 11:27:43 -07:00
e98d46dc45
flake update
2026-03-20 10:32:44 -07:00
a5a356e20c
add heroku to vade
2026-03-19 14:42:22 -07:00
fd6f699068
add power optimizations for vade laptop
...
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-03-17 18:12:25 -07:00
155f8d4aac
add nixos-hardware module for framework 12 laptop
...
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-03-17 18:03:03 -07:00
43a93f75a7
add acpi
2026-03-17 17:47:01 -07:00