Jérémy Lecour
|
a5a2c6e335
|
haproxy: dedicated internal address/binding (without SSL)
|
2021-04-06 14:41:03 +02:00 |
|
Jérémy Lecour
|
2686eea2b1
|
Release 10.5.0
|
2021-04-01 15:38:10 +02:00 |
|
Jérémy Lecour
|
7041a70eeb
|
elasticsearch: log rotation is more readable/maintainable
|
2021-04-01 15:36:34 +02:00 |
|
Ludovic Poujol
|
f2ebe2d878
|
lxc-php: Add php 7.4 support
|
2021-03-31 10:57:29 +02:00 |
|
Jérémy Lecour
|
d7d057e435
|
filebeat: fix Ansible syntax error
|
2021-03-23 16:29:03 +01:00 |
|
Jérémy Lecour
|
2593784ab0
|
metricbeat: new variables to configure SSL mode
|
2021-03-23 16:28:14 +01:00 |
|
Jérémy Lecour
|
3a3cf1395e
|
listupgrade: update script from upstream
|
2021-03-23 16:27:15 +01:00 |
|
Jérémy Lecour
|
5a4bd28eaf
|
nagios-nrpe: libfcgi-client-perl is not available before Debian 10
|
2021-03-18 15:16:23 +01:00 |
|
Jérémy Lecour
|
5582d6e724
|
redis: socket/pid directories have the correct permissions
|
2021-03-18 15:15:39 +01:00 |
|
Patrick Marchand
|
e5511eafc6
|
Revert changes to bind log path from apparmor fix
I realised it wasnt the best idea to change the path we are used to using just for this, so I overwrite the apparmor configuration instead.
|
2021-03-09 16:58:14 -05:00 |
|
Patrick Marchand
|
ffd3ff97f1
|
Fix conflict in changelog
|
2021-03-09 12:28:01 -05:00 |
|
Patrick Marchand
|
7da22e243e
|
Changed log directory for bind9
It is now /var/log/named, this is what debian 10 and apparmor expect by default. This fixes the bind9 service crashing at start.
|
2021-03-09 12:25:15 -05:00 |
|
Jérémy Lecour
|
3103af67a7
|
redis: escape password in Munin configuration
|
2021-03-09 18:24:15 +01:00 |
|
Ludovic Poujol
|
3cb18faf28
|
evolinux-users: Add sudo rights for nagios for multi-php lxc
|
2021-03-04 16:48:55 +01:00 |
|
Jérémy Lecour
|
1f4079b1b3
|
haproxy: possible admin access with login/pass
|
2021-02-27 18:43:59 +01:00 |
|
Ludovic Poujol
|
df9db31725
|
deny requests to ^/evolinux_fpm_status-.*
|
2021-02-22 16:06:57 +01:00 |
|
Jérémy Lecour
|
3709808fdc
|
redis: use /run instead or /var/run
|
2021-02-18 16:42:54 +01:00 |
|
Ludovic Poujol
|
ddd3e1aa06
|
nagios-nrpe: new script check_phpfpm_multi
|
2021-02-17 17:23:11 +01:00 |
|
Jérémy Lecour
|
f862ffc42e
|
beats packages can be upgraded to latest (default: False)
|
2021-02-16 16:35:25 +01:00 |
|
Jérémy Lecour
|
622bbca4c2
|
apache: rotate logs daily instead of weekly
|
2021-02-12 18:05:47 +01:00 |
|
Ludovic Poujol
|
b0cb14eb5b
|
* nagios-nrpe: update check_phpfpm_status.pl & install perl dependencies
|
2021-02-12 15:22:57 +01:00 |
|
Jérémy Lecour
|
2b328dc764
|
postfix: add smtpd_relay_restrictions in configuration
|
2021-02-12 14:10:04 +01:00 |
|
Jérémy Lecour
|
17f1a1a55e
|
update changelog
|
2021-02-11 12:09:32 +01:00 |
|
Jérémy Lecour
|
dde2672715
|
nginx: no more "minimal" mode, but the package remains customizable.
|
2021-02-04 11:31:36 +01:00 |
|
Jérémy Lecour
|
cff309ff41
|
nginx: add access to server status on default VHost
|
2021-02-04 11:30:32 +01:00 |
|
Jérémy Lecour
|
5588ed6009
|
minifirewall: change some defaults
Only SSH (22) is open on privilegied IPs
Remove volatile.debian.org domain
|
2021-02-04 10:55:31 +01:00 |
|
Jérémy Lecour
|
024d30ea43
|
evoacme: upstream release 21.01
|
2021-01-07 19:16:06 +01:00 |
|
Jérémy Lecour
|
0e32e0d2aa
|
certbot: use a fixed 1.9.0 version of the certbot-auto script (renamed "letsencrypt-auto")
|
2021-01-07 18:55:44 +01:00 |
|
Jérémy Lecour
|
8c54fd8c16
|
apache: new variables for logrotate + server-status
|
2021-01-05 17:47:56 +01:00 |
|
Jérémy Lecour
|
19da5ea1f7
|
Release 10.4.0
|
2020-12-24 14:00:37 +01:00 |
|
Jérémy Lecour
|
7ec0748383
|
certbot: detect domains if missing
|
2020-12-24 13:56:43 +01:00 |
|
Jérémy Lecour
|
442e9bcda8
|
cerbot: hook to sync certificates to remote servers
|
2020-12-24 13:56:43 +01:00 |
|
Jérémy Lecour
|
4dbd1b0bee
|
certbot: disable auth for Let's Encrypt challenge
|
2020-12-24 10:33:48 +01:00 |
|
Jérémy Lecour
|
1d56e002b4
|
nginx: change from "nginx_status-XXX" to "server-status-XXX"
|
2020-12-23 15:53:36 +01:00 |
|
Jérémy Lecour
|
66a6e67de2
|
varnish: variable for jail configuration
|
2020-12-21 23:33:14 +01:00 |
|
Jérémy Lecour
|
1922b51fbe
|
Release 10.3.0
|
2020-12-21 16:03:49 +01:00 |
|
Jérémy Lecour
|
67ce8de85e
|
varnish: custom reload script is now useless
|
2020-12-20 23:25:34 +01:00 |
|
Jérémy Lecour
|
3e72d6961c
|
varnish: no threadpool delay by default
|
2020-12-20 23:03:37 +01:00 |
|
Jérémy Lecour
|
8861169a04
|
varnish: config file name is configurable
|
2020-12-20 23:03:10 +01:00 |
|
Jérémy Lecour
|
81fbd98a5f
|
evolinux-users: improve uid/login checks
|
2020-12-17 15:25:48 +01:00 |
|
Jérémy Lecour
|
0b528f15da
|
tomcat-instance: fail if uid already exists
|
2020-12-17 08:06:44 +01:00 |
|
Jérémy Lecour
|
5b2d3b09d0
|
Create system users for vmail (dovecot) and evoadmin
|
2020-12-17 08:05:16 +01:00 |
|
Jérémy Lecour
|
3c4986275c
|
evocheck: upstream release 20.12
|
2020-12-08 11:07:42 +01:00 |
|
Jérémy Lecour
|
772bce8c0b
|
dovecot: vmail uid/gid are configurable
|
2020-12-07 17:26:45 +01:00 |
|
Jérémy Lecour
|
4d6f88f0f4
|
minifirewall: add variables to force upgrade the script and the config (default: False)
|
2020-12-07 17:23:37 +01:00 |
|
Jérémy Lecour
|
98f798b9fb
|
cerbot: parse HAProxy config file only if HAProxy is found
|
2020-12-03 17:26:16 +01:00 |
|
Jérémy Lecour
|
fc71bb5945
|
minifirewall: upstream release 20.12
|
2020-12-01 22:57:13 +01:00 |
|
Jérémy Lecour
|
9aa24f4cde
|
minifirewall: Docker support
|
2020-12-01 22:47:38 +01:00 |
|
Jérémy Lecour
|
b6817cb62c
|
evoacme: upstream release 20.12
|
2020-12-01 22:27:05 +01:00 |
|
Jérémy Lecour
|
18ac1e7279
|
redis: check maxmemory in NRPE check
If "maxmemory" is set and "maxmemory-policy" is missing or set to
"noeviction" then we enforce the "maxmemory" limit
|
2020-12-01 19:02:42 +01:00 |
|