Slavi Pantaleev
ad22bdb884
Do not run matrix-user-verification-service validation tasks unless the service is enabled
2 years ago
Slavi Pantaleev
7142ff422d
Ensure matrix_user_verification_service_uvs_access_token is always defined
...
The playbook tries to avoid such variables which are sometimes defined
and sometimes not. We'd rather not check for `is defined`.
2 years ago
Slavi Pantaleev
97f65e8dff
Minor fixes to allow for Traefik without SSL
2 years ago
Aine
a1ef28681a
Update Hydrogen 0.3.6 -> 0.3.7
2 years ago
Slavi Pantaleev
28d2eb593c
Add matrix_playbook_reverse_proxy_type variable which influences all other services
2 years ago
Slavi Pantaleev
06ccd71edc
Merge branch 'master' into traefik
2 years ago
Slavi Pantaleev
f6ab162fff
Remove systemd-reloading handler in matrix-user-verification-service
...
None of the other roles use handlers.
We rely on com.devture.ansible.role.systemd_service_manager to reload services when it's necessary to do so.
2 years ago
Slavi Pantaleev
e1bfa2a7d6
Fix ansible-lint-reported errors
2 years ago
Slavi Pantaleev
43a6a035a0
Skip removing /.well-known/element directory to suppress ansible-lint error
...
Leaving an orphan directory is okay and can be improved later on.
2 years ago
Slavi Pantaleev
01ccec2dbe
Merge branch 'master' into pr-jitsi-matrix-authentication
2 years ago
Slavi Pantaleev
7cdf59d79b
Merge pull request #2451 from FSG-Cat/draupnir
...
Add Draupnir support to the project.
2 years ago
Slavi Pantaleev
d6c8ea3742
Merge pull request #2452 from borisrunakov/update-matrix-chatgpt-bot
...
update matrix-chatgpt-bot
2 years ago
ntallasv
f71cd3a760
fix linting in validate_config.yml
2 years ago
ntallasv
b738486684
update validate_config.yml
2 years ago
Aine
d32f80bf29
Update postmoogle 0.9.11 -> 0.9.12
...
* fix uploads from incoming emails into matrix threads
* fix emails dequeue (account data cleanup)
* rewrite recipients handling (Cc, To, etc.)
2 years ago
ntallasv
9615855cfa
update matrix-chatgpt-bot
2 years ago
Catalan Lover
ddcb1735e2
Add draupnir as valid prefix to resolve a bug
...
Current draupnir does not listen to its name. This config change fixes this bug. This bodge is able to be removed once this is fixed upstream.
2 years ago
Catalan Lover
a717590aa5
Rename systemd service file from mjolnir to draupnir
2 years ago
Slavi Pantaleev
88a26758e1
Merge branch 'master' into traefik
2 years ago
Catalan Lover
9092d4bb6b
Push draupnir version from develop to v1.80.0-beta.0
2 years ago
Catalan Lover
78b1ebd5af
commit main.yml for draupnir and set target ver to develop
2 years ago
Catalan Lover
563cf1a4ba
Initial commit for draupnir.
...
main.yml is not included due to that its changed separately.
2 years ago
Slavi Pantaleev
49a1985750
Fix Postmoogle systemd service description
2 years ago
Slavi Pantaleev
d44d4b637f
Allow Coturn to work with SSL certificates extracted from Traefik
2 years ago
Aine
2eb2ad0ad7
Update heisenbridge 1.14.1 -> 1.14.2
2 years ago
Slavi Pantaleev
2b9061a5d3
Add support for reverse-proxying the base domain via Traefik
2 years ago
Slavi Pantaleev
6c17671abd
Upgrade synapse-admin (0.8.6 -> 0.8.7) and drop reverse-proxy workaround
...
Related to 6a31fba346
, 6a31fba346
.
Related to https://github.com/Awesome-Technologies/synapse-admin/issues/322
2 years ago
Slavi Pantaleev
66baef5bf6
Fix matrix-synapse-reverse-proxy-companion.service stopping during uninstallation
...
Fixes https://github.com/spantaleev/matrix-docker-ansible-deploy/issues/2444
2 years ago
jakicoll
6a205a83f6
Change renamed variables matrix_systemd_path -> devture_systemd_docker_base_systemd_path
2 years ago
jakicoll
6cffec14ea
fixup! Remove the self-build stub, because self-build was not implemented
2 years ago
jakicoll
be634168ac
Make the linter happy.
2 years ago
jakicoll
f3ca4a0632
Remove unnecessary comment.
2 years ago
jakicoll
7848d865a5
Also define the vars to be overwritten in group vars within the role vars.
2 years ago
Paul N
70bea81df7
Introduced flags to (1) enable/disable Auth (2) enable/disable openid_server_name pinning. Updated validate_config.yml and added new checks to verify.
2 years ago
Paul N
96dd86d33b
Set default values where sensible and remove unnecessary conditionals in .env.j2.
...
Check for empty string instead of Null to verify if an openid_server_name is pinned.
2 years ago
jakicoll
6b206b3763
Move checks into validate_config.yml.
2 years ago
jakicoll
6499b6536a
Decoupling: Do not use variables user-verification-service role inside the jitsi role.
2 years ago
Paul N
50c1e9d695
Set matrix_user_verification_service_uvs_homeserver_url in the role defaults and updated docs accordingly.
2 years ago
jakicoll
0e0ae2f3e6
Assign default log level in role instead of matrix_servers file.
2 years ago
jakicoll
bf5e633656
Remove the self-build stub, because self-build was not implemented
2 years ago
Paul N
b89f5b7ff5
Clarify task name and add user and group to templated env file
...
Co-authored-by: Slavi Pantaleev <slavi@devture.com>
2 years ago
Jakob S
6913d368c8
Consolidate conditionals into a block, keep image
...
Co-authored-by: Slavi Pantaleev <slavi@devture.com>
2 years ago
Slavi Pantaleev
8155f780e5
Add support for reverse-proxying Matric (Client & Federation) via Traefik
2 years ago
Slavi Pantaleev
f983604695
Initial work on Traefik support
...
This gets us started on adding a Traefik role and hooking Traefik:
- directly to services which support Traefik - we only have a few of
these right now, but the list will grow
- to matrix-nginx-proxy for most services that integrate with
matrix-nginx-proxy right now
Traefik usage should be disabled by default for now and nothing should
change for people just yet.
Enabling these experiments requires additional configuration like this:
```yaml
devture_traefik_ssl_email_address: '.....'
matrix_playbook_traefik_role_enabled: true
matrix_playbook_traefik_labels_enabled: true
matrix_ssl_retrieval_method: none
matrix_nginx_proxy_https_enabled: false
matrix_nginx_proxy_container_http_host_bind_port: ''
matrix_nginx_proxy_container_federation_host_bind_port: ''
matrix_nginx_proxy_trust_forwarded_proto: true
matrix_nginx_proxy_x_forwarded_for: '$proxy_add_x_forwarded_for'
matrix_coturn_enabled: false
```
What currently works is:
reverse-proxying for all nginx-proxy based services **except** for the Matrix homeserver
(both Client-Server an Federation traffic for the homeserver don't work yet)
2 years ago
Slavi Pantaleev
4d6a8d049d
Add matrix_nginx_proxy_container_network variable
2 years ago
Slavi Pantaleev
e018663ba4
Attach ma1sd/nginx-proxy/synapse-reverse-proxy-companion to additional networks in a better way
...
Switching from doing "post-start" loop hacks to running the container
in 3 steps: `create` + potentially connect to additional networks + `start`.
This way, the container would be connected to all its networks even at
the very beginning of its life.
2 years ago
Slavi Pantaleev
be78b74fbd
Switch from matrix-prometheus-postgres-exporter to an external prometheus_postgres_exporter role
2 years ago
Slavi Pantaleev
2d7d5d4bab
Use new security-opt syntax (: -> =)
...
Related to https://docs.docker.com/engine/deprecated/#separator--of---security-opt-flag-on-docker-run
2 years ago
Catalan Lover
4d49f1f56e
Update Prometheus to v2.42.0 from v2.41.0
...
Docker images are released now so this change can now be pushed.
2 years ago
Aine
c11f772e78
Fix python packages path in synapse container
2 years ago
Slavi Pantaleev
7cb140b987
Downgrade Prometheus (v2.42.0 -> v2.41.0) until a container image gets published
...
Container image not published yet.
Reverts #2438
2 years ago
Slavi Pantaleev
d42ef7d243
Merge pull request #2439 from etkecc/patch-160
...
Update synapse 1.75.0 -> 1.76.0; default room version 9 -> 10
2 years ago
Slavi Pantaleev
c8ce83c725
Merge pull request #2438 from etkecc/patch-159
...
Update prometheus 2.41.0 -> 2.42.0
2 years ago
Aine
0f208ed053
Update synapse 1.75.0 -> 1.76.0; default room version 9 -> 10
2 years ago
Aine
82d870fddf
Update prometheus 2.41.0 -> 2.42.0
2 years ago
Aine
5300740f70
Update element 1.11.21 -> 1.11.22
2 years ago
Slavi Pantaleev
c7767e9bc8
Upgrade Coturn (4.6.1-r0 -> 4.6.1-r1)
2 years ago
Slavi Pantaleev
66bb2943b4
Merge pull request #2436 from etkecc/patch-157
...
Update jitsi stable-8218 -> stable-8252
2 years ago
Aine
68ca23d709
Update jitsi stable-8218 -> stable-8252
2 years ago
Aine
d70076c805
Update element 1.11.20 -> 1.11.21
2 years ago
Aine
8c2b77bf0c
Update cinny 2.2.3 -> 2.2.4
2 years ago
Slavi Pantaleev
611a74bde2
Use |to_json in mautrix metrics configuration
...
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/2427
2 years ago
Slavi Pantaleev
d82d0ad84b
Add _metrics_proxying_enabled variables to mautrix bridges
...
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/2427
`metrics_enabled` should only expose the metrics locally, on the
container network, so that a local Prometheus can consume them.
Exposing them publicly should be done via a separate toggle (`metrics_proxying_enabled`).
This is how all other roles work, so this makes these mautrix roles consistent with the rest.
2 years ago
Slavi Pantaleev
cad83ddca6
Merge pull request #2427 from alemairebe/mautrix-metrics
...
Mautrix metrics
2 years ago
Slavi Pantaleev
f9a496c29c
Merge pull request #2432 from shalzz/patch/slack
...
mautrix-slack: add team name in channel name template
2 years ago
Shaleen Jain
df9931f719
mautrix-slack: add team name in channel name template
2 years ago
Slavi Pantaleev
389d6c978f
Merge pull request #2431 from etkecc/patch-154
...
Update borgmatic 1.7.5 -> 1.7.6
2 years ago
Slavi Pantaleev
5482a9d5d0
Merge pull request #2429 from etkecc/patch-152
...
Update mautrix-discord latest -> 0.1.0
2 years ago
Aine
4f69b22a6e
Update borgmatic 1.7.5 -> 1.7.6
2 years ago
Aine
a9a17d803e
Update maubot 0.3.1 -> 0.4.0
2 years ago
Aine
111303208a
Update mautrix-discord latest -> 0.1.0
2 years ago
Adrien le Maire
9eaf6944e3
add nginx proxy connfig for mautrix metrics
2 years ago
Adrien le Maire
691ef13cab
template metric toggle for mautrix bridges supporting it
2 years ago
Slavi Pantaleev
e588c42088
Improve synapse-admin reverse-proxying fix
...
Fixup for 6a31fba346
2 years ago
Slavi Pantaleev
6a31fba346
Fix synapse-admin reverse-proxying regression caused by 0.8.6
...
Related to f165aa5d48
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/2424
2 years ago
Aine
f165aa5d48
Update synapse-admin 0.8.5 -> 0.8.6
2 years ago
bertybuttface
7b5ced3037
Fix linting issue.
2 years ago
bertybuttface
d66a2949f6
Update env.j2
...
Use matrix_bot_chatgpt_context for CHATGPT_CONTEXT
2 years ago
bertybuttface
7e1408ea65
Bump ChatGPT version and add new config settings
...
matrix_bot_chatgpt_context=thread
2 years ago
Slavi Pantaleev
430a55902c
Merge pull request #2420 from bertybuttface/patch-1
...
Upgrade matrix-chatgpt-bot to latest
2 years ago
Slavi Pantaleev
784043cc5d
Ensure OPENAI_PRO is true/false (not True/False)
2 years ago
Slavi Pantaleev
867737fe0b
Upgrade Grafana (9.3.4 -> 9.3.6)
2 years ago
Slavi Pantaleev
aafa8f019c
Allow matrix_coturn_docker_network to be set to 'host' to use host-networking
...
This helps large deployments which need to open up thousands of ports
(matrix_coturn_turn_udp_min_port, matrix_coturn_turn_udp_min_port)
On a test VM, opening 1k ports takes 17 seconds for Docker to "publish"
all of these ports (setting up forwarding rules with the firewall, etc),
so service startup and shutdown take a long amount of time.
If host-networking is used, there's no need to open any ports at all
and startup/shutdown can be quick.
2 years ago
Slavi Pantaleev
bb0faa6bc3
Block various private network ranges via denied_peer_ips for Coturn by default
...
Inspired by: https://www.rtcsec.com/article/cve-2020-26262-bypass-of-coturns-access-control-protection/
2 years ago
Slavi Pantaleev
773cb7d37e
Make no-tcp-relay Coturn configuration property configurable
2 years ago
Slavi Pantaleev
bf23d63f82
Add matrix_coturn_additional_configuration
2 years ago
Slavi Pantaleev
4c9f96722f
Add no-multicast-peers to Coturn config by default
...
Part of a security hardening provoked by:
https://www.rtcsec.com/article/cve-2020-26262-bypass-of-coturns-access-control-protection/
2 years ago
bertybuttface
18c3903def
Update env.j2
...
Set OPEN_AI to matrix_bot_chatgpt_openai_pro
2 years ago
bertybuttface
ad58858a96
Upgrade matrix-chatgpt (1.2.3 -> 1.3.2)
...
Add support for OPENAI_PRO for ChatGPT pro subscriptions.
2 years ago
rhys
d01de9f33d
Fix lint errors
2 years ago
rhys
547b01d618
Added option to allow user to set jigasi user and password for AUTH
2 years ago
Aine
6afd3c59eb
Update grafana 9.3.2 -> 9.3.4
2 years ago
Array in a Matrix
47165e8902
updated dendrite version
2 years ago
Slavi Pantaleev
54e5e4b6b9
Merge pull request #2416 from moan0s/fix_cactus_comments
...
Fix client js and css download (load compiled version)
2 years ago
Slavi Pantaleev
c4d1347466
Fix typos
2 years ago
Julian-Samuel Gebühr
18d8d41e14
Fix client js and css download (load compiled version)
2 years ago
Slavi Pantaleev
9ed2e04d80
Switch from matrix-prometheus-node-exporter to an external prometheus_node_exporter role
2 years ago
Slavi Pantaleev
5f7ed722f6
Merge pull request #2415 from etkecc/patch-148
...
Update hookshot 2.6.1 -> 2.7.0
2 years ago
Aine
32292b1f02
Update hookshot 2.6.1 -> 2.7.0
2 years ago
Aine
b71e267221
Update element 1.11.19 -> 1.11.20
2 years ago
Aine
8804a15821
Update element 1.11.18 -> 1.11.19
2 years ago
Vladimir Panteleev
6c332da7d3
Fix ChatGPT container
...
This container needs a writable $HOME, and will fail at startup if
there isn't one.
Provide one by pointing HOME to a path under the mounted /data
directory.
2 years ago
Aine
63a3764f51
Update element 1.11.17 -> 1.11.18
2 years ago
Slavi Pantaleev
70a35f17fe
Merge pull request #2402 from etkecc/patch-144
...
Update buscarron v1.3.0 -> v1.3.1
2 years ago
Aine
2fc02abfdc
Update buscarron v1.3.0 -> v1.3.1
2 years ago
Aine
903db54959
Update postmoogle 0.9.10 -> 0.9.11
2 years ago
Slavi Pantaleev
424f79df3a
Replace synapse.app.pusher and synapse.app.federation_sender with synapse.app.generic_worker
...
Related to https://github.com/matrix-org/synapse/commit/3479599387164aca2613e88d169719
2 years ago
Slavi Pantaleev
34745b5206
Upgrade Synapse (v1.74.0 -> v1.75.0)
2 years ago
Slavi Pantaleev
3ff6e755a9
Upgrade Hookshot (2.6.0 -> 2.6.1)
2 years ago
Aine
e053b2b0fc
update mautrix-whatsapp 0.8.0 -> 0.8.1
2 years ago
Aine
5c8bad6091
update borg image tag
2 years ago
Slavi Pantaleev
34c448c3bb
Upgrade Cinny (2.2.2 -> 2.2.3)
2 years ago
Aine
d1b4a6ebe1
unify docker images urls
2 years ago
Slavi Pantaleev
5d10001712
Merge pull request #2394 from etkecc/patch-141
...
Update hookshot 2.5.0 -> 2.6.0
2 years ago
Aine
627d8557ae
Update hookshot 2.5.0 -> 2.6.0
2 years ago
Aine
e8c6267e9a
Update jitsi stable-8138-1 -> stable-8218
2 years ago
Slavi Pantaleev
ae1ad3baf6
Improve block tasks indentation to make yamllint happy
...
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/2392
2 years ago
Slavi Pantaleev
673ee508dc
Upgrade matrix-chatgpt (1.2.2 -> 1.2.3)
2 years ago
Slavi Pantaleev
ab8cb21a45
Upgrade matrix-chatgpt (1.2.1 -> 1.2.2)
2 years ago
Slavi Pantaleev
17438bd0dd
Upgrade mjolnir (v1.6.3 -> v1.6.4)
2 years ago
Slavi Pantaleev
0c472c172e
Upgrade mjolnir (v1.6.1 -> v1.6.3)
2 years ago
Slavi Pantaleev
4e40ac5ad8
Merge pull request #2227 from xangelix/add-matrix-mautrix-slack-role
...
Add matrix-bridge-mautrix-slack role
2 years ago
Slavi Pantaleev
226d81318a
Merge branch 'bertybuttface-master'
2 years ago
Slavi Pantaleev
a96a22c925
chatgpt docs updates
2 years ago
bertybuttface
0b88293393
Bump ChatGPT version.
2 years ago
bertybuttface
0ec1868b95
Add matrix-bot-chatgpt.
...
Co-Authored-By: Slavi Pantaleev <slavi@devture.com>
2 years ago
Slavi Pantaleev
d2416365d2
Merge pull request #2220 from xangelix/synapse-s3-sse-c
...
Add S3 SSE-C config support for synapse-s3-storage-provider
2 years ago
Slavi Pantaleev
f0d1e23c9d
Move around whitelines
2 years ago
Cody Wyatt Neiman
fc9eaa6ec5
Remove git version for s3 storage provider
2 years ago
Aine
6bd909bbb7
add mode var for synapse ext ldap auth
2 years ago
Slavi Pantaleev
1d1fd7053c
ewoutp/goofys:latest -> docker.io/ewoutp/goofys:latest
2 years ago
Aine
b487bb6749
unify image prefixes
2 years ago
Aine
38151c9fd3
Update heisenbridge 1.14.0 -> 1.14.1
2 years ago
James Collier
36d8ea281c
Allow the mautrix whatsapp relaybot to be enabled with a variable ( #2381 )
...
* Allow the mautrix whatsapp relaybot to be enable with a variable
This allows a user to enable the relaybot by setting a variable in
`vars.yml` in the same way that the mautrix signal relaybot is
configured.
* Correct default values for mautrix whatsapp relaybot variables
* Add documentation for using the relaybot with mautrix whatsapp
* Adjust variable names to better reflect what they do
* Set default variables properly and use to_json in template
2 years ago
jakicoll
42e4e50f5b
Matrix Authentication Support for Jitsi
...
This extends the collection with support for seamless authentication at the Jitsi server using Matrix OpenID.
1. New role for installing the [Matrix User Verification Service](https://github.com/matrix-org/matrix-user-verification-service )
2. Changes to Jitsi role: Installing Jitsi Prosody Mods and configuring Jitsi Auth
3. Changes to Jitsi and nginx-proxy roles: Serving .well-known/element/jitsi from jitsi.DOMAIN
4. We updated the Jitsi documentation on authentication and added documentation for the user verification service.
2 years ago
Cody Wyatt Neiman
7e5e1712f5
Encode s3 sse-c key for utf-8
2 years ago
Cody Wyatt Neiman
f5390562ed
Fix synapse s3 storage provider container indentation
2 years ago
Cody Wyatt Neiman
6d96bcee1d
Allow 'git' as a version for s3 storage provider
2 years ago
Cody Wyatt Neiman
4d44f7b49e
Use base64 encoded string for sse-c key
2 years ago
Cody Wyatt Neiman
4c60b1dabf
Merge branch 'master' into synapse-s3-sse-c
2 years ago
Cody Wyatt Neiman
12b8cb3aab
Fix localpart slack id regex for mautrix-slack
2 years ago
Cody Wyatt Neiman
e977242022
Pull more mautrix-slack defaults from upstream
2 years ago
Cody Wyatt Neiman
f4874d2e4a
Pull upstream mautrix-slack config defaults
2 years ago
Cody Wyatt Neiman
2e0dfb2dc1
Update slack bridge implementation
2 years ago
Cody Wyatt Neiman
d07480a883
Remove hardcoded matrix-postgres references
2 years ago
Cody Wyatt Neiman
97c45676de
Update paths and vars for mautrix-slack to roles/custom
2 years ago
Cody Wyatt Neiman
d6022d851e
Move mautrix-sack role files to new roles/custom path
2 years ago
Cody Wyatt Neiman
6fb0f26b30
Add mautrix/appservice slack bridge bot username checks
2 years ago
Cody Wyatt Neiman
784e5492d5
Add matrix-bridge-mautrix-slack role
2 years ago
Slavi Pantaleev
1abba4c918
Upgrade matrix-corporal (2.5.0 -> 2.5.1)
2 years ago
Slavi Pantaleev
73e689e48e
Fix --tags=register-user not working on Dendrite due to broken Jinja syntax
...
Fixes https://github.com/spantaleev/matrix-docker-ansible-deploy/issues/2369
2 years ago
Slavi Pantaleev
ba09705f7f
Make Jitsi auth setup not show credentials in the shell
...
Fixes https://github.com/spantaleev/matrix-docker-ansible-deploy/issues/2363
2 years ago
Aine
6795fe3578
Update ntfy 1.29.1 -> 1.30.1
2 years ago
Aine
8b2a86e35e
update beeper-linkedin 0.5.3 -> 0.5.4
2 years ago
Kuchenmampfer
d1442dec15
Upgrade Signald
...
Fixes the following issue when trying to use the !pm <phone number> command: https://gitlab.com/signald/signald/-/issues/345
2 years ago
adam-kress
bef4fe5d9e
Update element v1.11.16 -> v1.11.17
2 years ago
Samuel Meenzen
0179b0f165
Remove conduit workaround
...
Conduit update 0.5.0 fixed the issue, so this is no longer needed.
2 years ago
Samuel Meenzen
33fb5a4665
Upgrade Conduit (0.4.0 -> 0.5.0)
2 years ago
Slavi Pantaleev
40aa42e982
Add reference to push.enabled to homeserver.yaml
...
Related to:
- https://github.com/matrix-org/synapse/pull/14551/files
- https://github.com/matrix-org/synapse/pull/14619/files
2 years ago
Slavi Pantaleev
42c4f0450d
Upgrade Prometheus (2.40.7 -> 2.41.0)
2 years ago
Slavi Pantaleev
d0b2a50768
Upgrade Hydrogen (v0.3.5 -> v0.3.6)
2 years ago
Joe Kappus
deabd79452
Upgrade Synapse (1.73.0 -> 1.74.0)
...
Signed-off-by: Joe Kappus <joe@wt.gd>
2 years ago
Catalan Lover
5e30f6d4c4
Update Mjolnir from 1.5.0 to 1.6.1
...
Please note that This Mjolnir version bump technnically is missing some extra stuff that mjolnir claims we should do but it didnt work when i tried it and well my mjolnir deployment has been running this since release day almost and its fine. No errors in log that are unexpected. (Mjolnir throws errors in the log for anyone who wonders for various things that are fine. Like if a protection is off that is an error. Its due to how matrix-bot-lib works.)
2 years ago
Slavi Pantaleev
f2e68469cb
Upgrade nginx (1.23.2 -> 1.23.3)
2 years ago
Slavi Pantaleev
576eb0006c
Upgrade Grafana (9.3.1 -> 9.3.2)
2 years ago
Slavi Pantaleev
a7d39b109a
Upgrade Redis (7.0.6 -> 7.0.7)
2 years ago
Slavi Pantaleev
fa73513064
Upgrade mautrix-whatsapp (0.7.2 -> 0.8.0)
2 years ago
Aine
455b8aff15
Update prometheus 2.40.6 -> 2.40.7
2 years ago
Slavi Pantaleev
60127cdffd
Merge pull request #2339 from etkecc/patch-135
...
update redis 7.0.5 -> 7.0.6
2 years ago
Slavi Pantaleev
190f241bf5
Merge pull request #2340 from etkecc/patch-136
...
Update jitsi stable-8138 -> stable-8138-1
2 years ago
Aine
bd0f21588f
Update jitsi stable-8138 -> stable-8138-1
2 years ago
Aine
07ca0267f1
update redis 7.0.5 -> 7.0.6
2 years ago
Aine
f642f6fae7
update mautrix-instagram 0.2.2 -> 0.2.3
2 years ago
Slavi Pantaleev
1f593f708f
Upgrade Jitsi (stable-8044 -> stable-8138)
...
Untested
2 years ago
Slavi Pantaleev
3f4ab0bd7e
Upgrade Redis (7.0.4 -> 7.0.5)
2 years ago
Slavi Pantaleev
e8ed318908
Merge pull request #2335 from gardar/fix-tag-typo
...
fix: unclosed tags typo
2 years ago
gardar
b9afcead42
fix: unclosed tags typo
2 years ago
ikkemaniac
108ada75e8
update dashboard, fix typo, fix using original user ip
...
improve nginxlog matches to group URI's
2 years ago
Slavi Pantaleev
f69d90c1e6
Upgrade Prometheus (2.40.5 -> 2.40.6)
2 years ago
Slavi Pantaleev
86d177266a
Upgrade matrix-corporal (2.4.0 -> 2.5.0)
2 years ago
Slavi Pantaleev
b0030bd62f
Merge pull request #2333 from mattcen/hydrogen-prebuilt-docker
...
Use upstream Docker image for amd64 rather than self-build
2 years ago
Matthew Cengia
3453fff901
Use upstream Docker image for amd64 rather than self-build
2 years ago
Slavi Pantaleev
2b89d5d92f
Upgrade exim-relay (4.95-r0-4 -> 4.96-r1-0)
2 years ago
Luke Moch
dd51ad2ba2
fail if matrix_synapse_ext_synapse_s3_storage_provider_config_endpoint_url 'not' startswith('http')
2 years ago
Slavi Pantaleev
d81e7d6328
Make matrix_synapse_ext_synapse_s3_storage_provider_config_endpoint_url required
...
Fixes https://github.com/spantaleev/matrix-docker-ansible-deploy/issues/2330
2 years ago
Slavi Pantaleev
3824139908
Rename inject_into_nginx_proxy.yml to init.yml when it does more than injection
2 years ago
Slavi Pantaleev
f186d6236d
Add some missing tags to Synapse role
...
Without these:
- `--tags=install-synapse` and `--tags=install-all` would be incomplete
and will not contain Synapse worker configuration
- `--tags=install-synapse-reverse-proxy-companion` and
`--tags=setup-synapse-reverse-proxy-companion` would not contain
Synapse worker configuration
2 years ago
Dan Arnfield
5823f1f298
Only delete playbook scripts from /usr/local/bin
2 years ago
Rhys
fd79140201
Changes to allow a user to set the max participants on a jitsi conference ( #2323 )
...
* Changes to allow a user to set the max participants on a jitsi
conference
* changed var name from jitsi_max_participants to matrix_prosody_jitsi_max_participants
2 years ago
ikkemaniac
8ebf18a885
add prometheus-nginxlog-exporter role ( #2315 )
...
* add prometheus-nginxlog-exporter role
* Rename matrix_prometheus_nginxlog_exporter_container_url to matrix_prometheus_nginxlog_exporter_container_hostname
* avoid referencing variables from other roles, handover info using group_vars/matrix_servers
* fix: stop service when uninstalling
fix: typo
move available arch's into a var
fix: text
* fix: prometheus enabled condition
Co-authored-by: ikkemaniac <ikkemaniac@localhost>
2 years ago
Aine
fda65a0a56
postmoogle - add missing join()s
2 years ago
Aine
ba13231c58
update postmoogle 0.9.9 -> 0.9.10
2 years ago
Aine
ba4580a1fd
Update element v1.11.15 -> v1.11.16
2 years ago
Slavi Pantaleev
9edc7da67d
Do not specify now-unnecessary worker_main_http_uri Synapse worker setting
...
Related to
- c15e9a0edb
- 01a0527892
2 years ago
Slavi Pantaleev
13e7399104
Handle /timestamp_to_event via Synapse workers
...
Related to 8f10c8b054
2 years ago
Slavi Pantaleev
663fe29ddb
Do not specify start_pushers in Synapse config
...
It's unnecessary when `pusher_instances` is populated.
Source: 6acb6d772a
2 years ago
Slavi Pantaleev
135bb5af3e
Do not specify send_federation in Synapse config
...
It's unnecessary when `federation_sender_instances` is populated.
Source: 6acb6d772a
2 years ago
Slavi Pantaleev
84d529b542
Upgrade Synapse (v1.72.0 -> v1.73.0)
...
Synapse Worker configuration updates are coming later.
2 years ago
Slavi Pantaleev
b1c77f9bf2
Add comment to matrix-backup-borg.service
...
Related to 8005557061
2 years ago
Slavi Pantaleev
8005557061
Give backup-borg container more permissions to perform the backup
...
Running with a user (like `matrix:matrix`) fails if Etherpad is enabled,
because `/matrix/etherpad` is owned by `matrix_etherpad_user_uid`/`matrix_etherpad_user_gid` (`5001:5001`).
The `matrix` user can't acccess the Etherpad directory for this reason
and Borgmatic fails when trying to make a backup.
There may be other things under `/matrix` which similarly use
non-`matrix:matrix` permissions.
Another workaround might have been to add `/matrix/etherpad` (and
potentially other things) to `matrix_backup_borg_location_exclude_patterns`, but:
- that means Etherpad won't be backed up - not great
- only excluding Etherpad may not be enough. There may be other files we
need to exclude as well
---
Running with `root` is still not enough though.
We need at least the `CAP_DAC_OVERRIDE` capability, or we won't be able to read the
`/etc/borgmatic.d/config.yaml` configuration file (owned by
`matrix:matrix` with `0640` permissions).
---
Additionally, it seems like the backup process tries to write to at least a few directories:
- `/root/.borgmatic`
- `/root/.ssh`
- `/root/.config`
> [Errno 30] Read-only file system: '/root/.borgmatic'
> Error while creating a backup.
> /etc/borgmatic.d/config.yaml: Error running configuration file
We either need to stop mounting the container filesystem as readonly
(remove `--read-only`) or to allow writing via a `tmpfs`.
I've gone the `tmpfs` route which seems to work.
In any case, the mounted source directories (`matrix_backup_borg_location_source_directories`)
are read-only regardless, so our actual source files are protected from unintentional changes.
2 years ago