Aaron Raimist
9028e3714e
Add utf8 encoding option to log config
6 years ago
Hugues Morisset
f8987cb775
Set default mautrix-telegram image to 0.4.0
6 years ago
Slavi Pantaleev
9dad4c7c2d
Fix /.well-known/matrix/client for CORS
...
This is provoked by Github issue #46 .
No client had made use of the well-known mechanism
so far, so the set up performed by this playbook was not tested
and turned out to be a little deficient.
Even though /.well-known/matrix/client is usually requested with a
simple request (no preflight), it's still considered cross-origin
and [CORS](https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS )
applies. Thus, the file always needs to be served with the appropriate
`Access-Control-Allow-Origin` header.
Github issue #46 attempts to fix it at the "reverse-proxying" layer,
which may work, but would need to be done for every server.
It's better if it's done "upstream", so that all reverse-proxy
configurations can benefit.
6 years ago
Thomas vO
bb849bd34f
Merge branch 'master' of https://github.com/spantaleev/matrix-docker-ansible-deploy into new-cmds
6 years ago
Thomas vO
caba16ea0d
add script + doc to remove everything
6 years ago
Thomas vO
2bdc35de63
add script + doc to change a user to admin
6 years ago
Slavi Pantaleev
9f212adc1d
Rename variable (matrix_synapse_ext_password_provider_ldap -> matrix_synapse_ext_password_provider_ldap_enabled)
...
This makes it more consistent with other usage throughout the playbook.
6 years ago
Thomas vO
bbf8928831
fix template and vars for ldap auth, add setup
6 years ago
Thomas vO
9cf9a1ec54
[auth-ldap] add template + vars for ldap auth
6 years ago
Slavi Pantaleev
18e1dda4c8
Revert "Update riot-web (0.17.6 -> 0.17.7)"
...
As Github issue #42 says, 0.17.7 is not available.
We shouldn't have tried to use it.
This reverts commit 529b5b222d
.
6 years ago
Slavi Pantaleev
529b5b222d
Update riot-web (0.17.6 -> 0.17.7)
6 years ago
Slavi Pantaleev
5b70ec67a4
Add support for controlling Synapse's autocreate_auto_join_rooms
6 years ago
Slavi Pantaleev
de91293d0d
Update homeserver.yaml with new options and comments from upstream
6 years ago
Slavi Pantaleev
a454feb5df
Render trusted_third_party_id_servers more prettily
6 years ago
Slavi Pantaleev
bc15db3316
Fix a few minor things for consistency
...
Trying to:
- stay closer to naming in Synapse (autojoin -> auto_join)
- not create new variable namespaces (`matrix_homeserver_`),
when existing ones (`matrix_synapse_`) are more suitable
- allow `null` (`~`) values for `matrix_riot_web_welcome_user_id`
- render things like `auto_join_rooms` in `homeserver.yaml` more prettily
- fix breakage in `config.json` where `matrix_riot_web_roomdir_servers`
was rendered as YAML and not as JSON
- simplify code (especially in riot-web's `config.json`), which used
`if` statements that could have been omitted
- avoid changing comments in `homeserver.yaml` which are not ours,
so that we can keep closer to the configuration file generated by upstream
6 years ago
anadahz
4febb117f4
Merge remote-tracking branch 'upstream/master' into fix/add/config
6 years ago
anadahz
792bed3f5a
Fix add/config based on comments by @spantaleev
6 years ago
Aaron Raimist
d13aa7316e
Remove riot.im from list of trusted identity servers
...
This brings the list in line with the new default as of https://github.com/matrix-org/synapse/pull/4207
6 years ago
Slavi Pantaleev
0e02dbd569
Update dependencies
6 years ago
anadahz
3cb3f17a90
Add more configured options for riot-web and homeserver.
6 years ago
Slavi Pantaleev
d3c9be2cdf
Merge pull request #37 from aaronraimist/fix-well-known-self-check
...
Fix well known self check
6 years ago
Aaron Raimist
5a2069fa63
Fix well known self check
6 years ago
Aaron Raimist
ddec99b899
Allow Synapse log levels to be configured ( #23 )
6 years ago
Slavi Pantaleev
12c4591a58
Update mxisd
6 years ago
Slavi Pantaleev
19257677c5
Update dependencies
6 years ago
Slavi Pantaleev
f88b0ca33f
Merge branch 'master' into riot-web-config-json
6 years ago
Aaron Raimist
ef2e330d22
Allow a few parts of Riot config.json to be configured ( #24 )
6 years ago
Aaron Raimist
ebab95c9ec
Add new variable matrix_nginx_proxy_ssl_protocols
6 years ago
Aaron Raimist
3254a4d161
Disable TLS 1.0 and enable TLS 1.3
6 years ago
Slavi Pantaleev
9e8f216b9b
Upgrade Synapse (v0.33.7 -> v0.33.8)
6 years ago
Slavi Pantaleev
4c0970d31e
Make postgres_start_wait_time (affecting upgrades) configurable
...
This also raises the default from 5 seconds to 15 seconds.
6 years ago
Slavi Pantaleev
e417ac4922
Add support for Postgres 11
6 years ago
Slavi Pantaleev
a0a4ee526e
Fix bug in Postgres dump/import causing upgrades to fail
...
Regression since 3fd6fd647f
6 years ago
Slavi Pantaleev
009bb1b776
Add support for configuring Postgres auto-upgrade-backup path
6 years ago
Slavi Pantaleev
ac8d5a839d
Merge pull request #21 from Cadair/flags
...
Allow specifying which parts of the role run from playbooks
6 years ago
Slavi Pantaleev
fb5115a544
Rename playbook variables so they are consistently prefixed
...
Pretty much all variables live in their own `matrix_<whatever>`
prefix now and are grouped closer together in the default
variables file (`roles/matrix-server/defaults/main.yml`).
6 years ago
Aaron Raimist
1955aac4bd
Update riot-web (0.17.0 -> 0.17.3)
6 years ago
Stuart Mumford
67e2bf285d
A simple idea to allow playbooks to control which bit of the role to run
6 years ago
Slavi Pantaleev
2186031be2
Remove unnecessary code causing troubles on Debian-based systems
...
It should be `/bin/mkdir` and `/bin/chown` on Ubuntu 18.04 for example.
Still, it doesn't seem like we need to create and chown these
directories at all, since the playbook takes care of creating them
and setting appropriate permission by itself.
6 years ago
Stuart Mumford
8498c4c5de
comment out all the things
6 years ago
Slavi Pantaleev
cf0a5b3d2e
Merge pull request #20 from izissise/mautrix-whatsapp
...
Mautrix whatsapp
6 years ago
Slavi Pantaleev
95a6519876
Fix yaml syntax breakage
...
Regression since 67a445a74a
6 years ago
Slavi Pantaleev
67a445a74a
Add support for controlling Matrix federation
6 years ago
Hugues Morisset
b3fcc641c4
Add documentation and fix templates
6 years ago
Hugues Morisset
7a94fc0e24
Add mautrix-whatsapp
6 years ago
Slavi Pantaleev
3ecb16bbef
Use disable_guests=true for Riot
6 years ago
Hugues Morisset
83a17f8439
Expose mautrix-telegram public endpoint through nginx
...
It used to allow user to logging with their own account to the bot
see: https://github.com/tulir/mautrix-telegram/wiki/Authentication#replacing-telegram-accounts-matrix-puppet-with-matrix-account
for more informations
6 years ago
Slavi Pantaleev
c7188e06f9
Relocate some playbook task files to make it easier to navigate
6 years ago
Slavi Pantaleev
d0c2ef10e4
Add self-check command
6 years ago
anadahz
2313907faa
Add missing tag to task
...
The setup-all should include the setup_well_known task as well
6 years ago
Slavi Pantaleev
a0320346e1
Upgrade Synapse (v0.33.7rc2 -> 0.33.7)
6 years ago
Slavi Pantaleev
9b3c882483
Update riot-web (0.16.4 -> 0.17.0)
6 years ago
Slavi Pantaleev
6cc528ba5a
Upgrade Synapse (v0.33.5.1 -> v0.33.7rc2)
...
We skipped v0.33.6 because of matrix-org/synapse#4014 ,
but v0.33.7rc2 fixed the problem.
6 years ago
Slavi Pantaleev
36658addcd
Work around buggy docker_network sometimes failing to work
...
If a network like `matrix-whatever` already exists for some reason,
the `docker_network` module would not create our `matrix` network.
Working around it by avoiding `docker_network` and doing it manually.
Fixes Github issue #12
6 years ago
Slavi Pantaleev
17ea05683b
Fix yum/apt module invocation
...
The old way is deprecated and would stop working
after Ansible 2.11.
6 years ago
Slavi Pantaleev
a1c1ec9b7f
Update dependencies
6 years ago
Slavi Pantaleev
2185177957
Remove `lt-cred-mech` Coturn option
...
Coturn reports it as an option that conflicts with `use-auth-secret`.
Some reasoning is here: fa523e8d09
6 years ago
Slavi Pantaleev
cc3e34b128
Fix to_yaml silliness
6 years ago
Slavi Pantaleev
b49f4531e8
Make user presence-status tracking configurable
6 years ago
Slavi Pantaleev
7350842d9b
Pull in homeserver.yaml template updates
6 years ago
Slavi Pantaleev
242f388af3
Make Synapse cache factor configurable
6 years ago
Slavi Pantaleev
161854e6d7
Disable Docker container logging
...
`--log-driver=none` is used for all Docker containers now.
All these containers are started through systemd anyway and get logged in journald,
so there's no need for Docker to be logging the same thing using the default `json-file` driver.
Doing that was growing `/var/lib/docker/containers/..` infinitely until service/container restart.
As a result of this, things like `docker logs matrix-synapse` won't work anymore.
`journalctl -u matrix-synapse` is how one can see the logs.
6 years ago
Slavi Pantaleev
4fbaa02bef
Update Synapse (v0.33.4 -> v0.33.5.1)
6 years ago
Slavi Pantaleev
de5f4f7a05
Update matrix-corporal dependency
6 years ago
Slavi Pantaleev
2df4349606
Fix matrix-corporal nginx configuration trouble in certain conditions
...
If the playbook were to run with `--tags=setup-nginx-proxy`,
it wouldn't go into `setup_corporal.yml`, which meant it wouldn't
perform a bunch of `set_fact` calls which override important
nginx proxy configuration.
We run these variable overrides on each call now (tagged with `always`)
to avoid such problems in the future.
6 years ago
Slavi Pantaleev
0d0ccde286
Add Service Discovery (/.well-known/matrix/client) support
6 years ago
Slavi Pantaleev
38e3ffa29c
Rename variable (matrix_riot_web_default_identity_server_url -> matrix_identity_server_url)
6 years ago
Slavi Pantaleev
4f48508014
Rename variable (matrix_nginx_riot_web_data_path -> matrix_riot_web_data_path)
6 years ago
Slavi Pantaleev
3fed0ec594
Remove now-useless file
6 years ago
Slavi Pantaleev
2446b4845c
Update matrix-corporal dependency
6 years ago
Slavi Pantaleev
8bbb6f0c60
Update dependencies
6 years ago
Slavi Pantaleev
21916c1a3c
Update matrix-corporal (1.1 -> 1.1.1)
6 years ago
Slavi Pantaleev
620553e408
Update README
6 years ago
Hugues Morisset
6ef934a416
Mautrix telegram minimum config variable requirement
6 years ago
Hugues Morisset
45fb2df43f
Fix some problem with permissions
...
Fix typo
Move mautrix variable in `defaults/main.yml` exclusively
6 years ago
Hugues Morisset
7b5f68c431
Add mautrix-telegram to bridge with telegram services
6 years ago
Slavi Pantaleev
7adcdf3040
Add the ability to control event_cache_size for Synapse
...
I've found the previous 10K default value to be way too low
on a bunch of servers I'm running, so it's now up to
100K and made configurable.
6 years ago
Slavi Pantaleev
b52d91e180
Add the ability to controll password-peppering for Synapse
...
Closes Github issue #5
6 years ago
Slavi Pantaleev
6d6a6412fa
Add the ability to control statistics-reporting for Synapse
...
Closes Github issue #3
6 years ago
Slavi Pantaleev
88b4434da9
Fix incorrect path
6 years ago
Slavi Pantaleev
7310498f71
Update certbot
6 years ago
Slavi Pantaleev
49e0d0e6db
Update dependencies
6 years ago
Slavi Pantaleev
7428b941c8
Remove old s3fs stuff
...
We've been using Goofys for a long time instead.
6 years ago
Slavi Pantaleev
23e4a4734b
Switch from acmetool to certbot for SSL certificate retrieval
6 years ago
Slavi Pantaleev
d5346656e3
Use 0.16.1 for riot-web, as the image for 0.16.2 is still unavailable
6 years ago
Slavi Pantaleev
51ac3421b5
Update matrix-corporal (1.0.1 -> 1.1)
6 years ago
Slavi Pantaleev
314ff09846
Update dependencies
6 years ago
Slavi Pantaleev
92e6fdd279
Update dependencies
6 years ago
Slavi Pantaleev
861957b6f1
Add missing when statement
6 years ago
Slavi Pantaleev
5398d80f01
Add support for matrix-corporal
6 years ago
Slavi Pantaleev
02d5b54fa5
Add controls for influencing Matrix Synapse's rate-limiting
6 years ago
Slavi Pantaleev
14d7d3e670
Add support for matrix-synapse-shared-secret-auth
6 years ago
Slavi Pantaleev
f72882fe1a
Fix user registration regression
...
Regression since a302a7d748
,
which made the Matrix Client API only available on
the http port (8008) and not over the federation port (8448).
6 years ago
Slavi Pantaleev
b0f1a1c80f
Fix nginx warning: adding already-default text/html to gzip_types
6 years ago
Slavi Pantaleev
832a4d71c1
Default to INFO logging for matrix-synapse-rest-auth, not DEBUG
6 years ago
Slavi Pantaleev
21a108262f
Remove some leftover debug statements
6 years ago
Slavi Pantaleev
25becc63d5
Minor fixups for the matrix-synapse-rest-auth handling
6 years ago
Slavi Pantaleev
ea43d46b70
Add matrix-synapse-rest-auth support
6 years ago
Slavi Pantaleev
df79901f8b
Improve compression support
6 years ago
Slavi Pantaleev
a302a7d748
Only run federation on 8448 and client on 80
...
This disables federation on the 80 port, as it's
not necessary. We also disable the old Angular webclient.
For the federation port (8448), we disable the client APIs
as those are not necessary. Those can even cause trouble
if one doesn't know about them and thinks that guarding the client
APIs at the 80 port is enough.
6 years ago