From: mhoellein Date: Wed, 24 Oct 2018 22:06:05 +0000 (+0200) Subject: daily autocommit X-Git-Url: https://git.hoellein.online/?a=commitdiff_plain;h=6751311af72ba05ba3d57cb7267cfdaf59905a58;p=homeserver daily autocommit --- diff --git a/.etckeeper b/.etckeeper index b75243c5..e1f122e7 100755 --- a/.etckeeper +++ b/.etckeeper @@ -3093,7 +3093,7 @@ maybe chmod 0700 'letsencrypt/accounts/acme-v01.api.letsencrypt.org/directory/68 maybe chmod 0644 'letsencrypt/accounts/acme-v01.api.letsencrypt.org/directory/68cd3c6cd795fdbdaf6878faa17c3290/meta.json' maybe chmod 0400 'letsencrypt/accounts/acme-v01.api.letsencrypt.org/directory/68cd3c6cd795fdbdaf6878faa17c3290/private_key.json' maybe chmod 0644 'letsencrypt/accounts/acme-v01.api.letsencrypt.org/directory/68cd3c6cd795fdbdaf6878faa17c3290/regr.json' -maybe chmod 0700 'letsencrypt/archive' +maybe chmod 0755 'letsencrypt/archive' maybe chmod 0755 'letsencrypt/archive/ck.moellein.homeip.net' maybe chmod 0644 'letsencrypt/archive/ck.moellein.homeip.net/cert1.pem' maybe chmod 0644 'letsencrypt/archive/ck.moellein.homeip.net/cert2.pem' @@ -3281,7 +3281,7 @@ maybe chmod 0600 'letsencrypt/keys/0042_key-certbot.pem' maybe chmod 0600 'letsencrypt/keys/0043_key-certbot.pem' maybe chmod 0600 'letsencrypt/keys/0044_key-certbot.pem' maybe chmod 0600 'letsencrypt/keys/0045_key-certbot.pem' -maybe chmod 0700 'letsencrypt/live' +maybe chmod 0755 'letsencrypt/live' maybe chmod 0755 'letsencrypt/live/ck.moellein.homeip.net' maybe chmod 0644 'letsencrypt/live/ck.moellein.homeip.net/README' maybe chmod 0755 'letsencrypt/live/gitweb.moellein.homeip.net' diff --git a/apache2/mods-available/proxy.conf b/apache2/mods-available/proxy.conf index 786ccd5c..c631628b 100644 --- a/apache2/mods-available/proxy.conf +++ b/apache2/mods-available/proxy.conf @@ -24,25 +24,25 @@ ProxyRequests Off - - - AddDefaultCharset off - - AuthUserFile /etc/apache2/.htpasswd - - AuthName EnterPassword - - AuthType Basic - - require user admin - - Order deny,allow - - Allow from all - - #Allow from .example.com - - +# +# +# AddDefaultCharset off +# +# AuthUserFile /etc/apache2/.htpasswd +# +# AuthName EnterPassword +# +# AuthType Basic +# +# require user admin +# +# Order deny,allow +# +# Allow from all +# +# #Allow from .example.com +# +# # vim: syntax=apache ts=4 sw=4 sts=4 sr noet diff --git a/apache2/sites-available/ccu.conf b/apache2/sites-available/ccu.conf index 3f6a7c53..0873284e 100644 --- a/apache2/sites-available/ccu.conf +++ b/apache2/sites-available/ccu.conf @@ -1,14 +1,14 @@ ServerAdmin mhoellein@freenet.de - ServerName ccu.moellein.homeip.net + ServerName ccu.moellein.homeip.net:443 ServerAlias ccu.moellein.homeip.net ProxyRequests Off AddDefaultCharset off AuthUserFile /etc/apache2/.htpasswd - AuthName EnterPassword + AuthName "EnterPassword for ccu" AuthType Basic require user ccu Order deny,allow diff --git a/apache2/sites-available/ck.conf b/apache2/sites-available/ck.conf index 0b248c14..bc4140a5 100644 --- a/apache2/sites-available/ck.conf +++ b/apache2/sites-available/ck.conf @@ -13,7 +13,7 @@ AuthUserFile /etc/apache2/.htpasswd - AuthName EnterPassword + AuthName "Enter Password for ck" AuthType Basic require user ck Order deny,allow diff --git a/apache2/sites-available/collabora.conf b/apache2/sites-available/collabora.conf index b67beaa9..a39f468a 100644 --- a/apache2/sites-available/collabora.conf +++ b/apache2/sites-available/collabora.conf @@ -1,6 +1,6 @@ ServerName collabora.moellein.homeip.net:443 - ServerAlias collabora.moellein.homeip.net +# ServerAlias collabora.moellein.homeip.net Options -Indexes # SSL configuration, you may want to take the easy route instead and use Lets Encrypt! @@ -9,9 +9,6 @@ SSLProtocol all -SSLv2 -SSLv3 SSLCipherSuite ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA:ECDHE-RSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-RSA-AES256-SHA256:DHE-RSA-AES256-SHA:ECDHE-ECDSA-DES-CBC3-SHA:ECDHE-RSA-DES-CBC3-SHA:EDH-RSA-DES-CBC3-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:DES-CBC3-SHA:!DSS SSLHonorCipherOrder on - - Require all granted - # Encoded slashes need to be allowed AllowEncodedSlashes NoDecode # Enable and configure SSL Proxy @@ -41,6 +38,7 @@ # Download as, Fullscreen presentation and Image upload operations ProxyPass /lool https://127.0.0.1:9980/lool ProxyPassReverse /lool https://127.0.0.1:9980/lool + SSLCertificateFile /etc/letsencrypt/live/moellein.homeip.net/cert.pem SSLCertificateKeyFile /etc/letsencrypt/live/moellein.homeip.net/privkey.pem SSLCertificateChainFile /etc/letsencrypt/live/moellein.homeip.net/chain.pem diff --git a/apache2/sites-available/fhem.conf b/apache2/sites-available/fhem.conf index 3548248f..ce2f83b3 100644 --- a/apache2/sites-available/fhem.conf +++ b/apache2/sites-available/fhem.conf @@ -1,14 +1,14 @@ ServerAdmin mhoellein@freenet.de - ServerName fhem.moellein.homeip.net + ServerName fhem.moellein.homeip.net:443 ServerAlias fhem.moellein.homeip.net ProxyRequests Off AddDefaultCharset off AuthUserFile /etc/apache2/.htpasswd - AuthName EnterPassword + AuthName "Enter Password for fhem" AuthType Basic require user fhem # Order deny,allow diff --git a/apache2/sites-available/git.conf b/apache2/sites-available/git.conf index 03f1dd95..8174ffa3 100644 --- a/apache2/sites-available/git.conf +++ b/apache2/sites-available/git.conf @@ -1,6 +1,6 @@ - ServerName git.moellein.homeip.net + ServerName git.moellein.homeip.net:443 ServerAlias git.moellein.homeip.net DocumentRoot /var/www/gitweb/ ScriptAlias /gitweb.cgi /usr/lib/cgi-bin/gitweb.cgi @@ -10,7 +10,7 @@ Alias /static/git-logo.png /usr/share/gitweb/static/git-logo.png AuthUserFile /etc/apache2/.htpasswd - AuthName EnterPassword + AuthName "Enter Password for git" AuthType Basic require user git Options +ExecCGI +FollowSymLinks +SymLinksIfOwnerMatch diff --git a/apache2/sites-available/wiki.ssl.conf b/apache2/sites-available/wiki.ssl.conf index 8754bc44..58a52c18 100644 --- a/apache2/sites-available/wiki.ssl.conf +++ b/apache2/sites-available/wiki.ssl.conf @@ -2,7 +2,7 @@ ServerAdmin webmaster@localhost DocumentRoot /var/www/wiki/ - ServerName moellein.homeip.net + ServerName wiki.moellein.homeip.net:443 ServerAlias wiki.moellein.homeip.net Options FollowSymLinks diff --git a/hosts b/hosts index 08a84c76..71fdae9c 100644 --- a/hosts +++ b/hosts @@ -1,4 +1,4 @@ -127.0.0.1 localhost moellein.homeip.net +127.0.0.1 localhost moellein.homeip.net collabora.moellein.homeip.net nextcloud.moellein.homeip.net 127.0.1.1 moellein.homeip.net raspberrypi homeserver wiki wiki.moellein.homeip.net # The following lines are desirable for IPv6 capable hosts diff --git a/loolwsd/ca-chain.cert.pem b/loolwsd/ca-chain.cert.pem new file mode 120000 index 00000000..5326410e --- /dev/null +++ b/loolwsd/ca-chain.cert.pem @@ -0,0 +1 @@ +/etc/letsencrypt/live/moellein.homeip.net/fullchain.pem \ No newline at end of file diff --git a/loolwsd/cert.pem b/loolwsd/cert.pem new file mode 120000 index 00000000..9c3c7b58 --- /dev/null +++ b/loolwsd/cert.pem @@ -0,0 +1 @@ +/etc/letsencrypt/live/moellein.homeip.net/cert.pem \ No newline at end of file diff --git a/loolwsd/key.pem b/loolwsd/key.pem new file mode 120000 index 00000000..3918aa10 --- /dev/null +++ b/loolwsd/key.pem @@ -0,0 +1 @@ +/etc/letsencrypt/live/moellein.homeip.net/privkey.pem \ No newline at end of file diff --git a/loolwsd/loolwsd.xml b/loolwsd/loolwsd.xml index 28b5f089..1d4e8a27 100644 --- a/loolwsd/loolwsd.xml +++ b/loolwsd/loolwsd.xml @@ -1,132 +1,115 @@ - - - - - de_DE en_GB en_US es_ES fr_FR it nl pt_BR pt_PT ru - - - - - - - - - - - 1 - - 4 - 3600 - - 30 - 300 - 0 - 0 - 8000 - 0 - 0 - - - - 60 - 900 - - - loleaflet.html - - - true - warning - - /var/log/loolwsd.log - never - timestamp - true - 10 days - 10 - true - false - - - false - false - - - - false - - - - - - - - false - - - - - all - any - - - 192\.168\.[0-9]{1,3}\.[0-9]{1,3} - ::ffff:192\.168\.[0-9]{1,3}\.[0-9]{1,3} - 127\.0\.0\.1 - ::ffff:127\.0\.0\.1 - ::1 - - - - - true - false - /etc/loolwsd/cert.pem - /etc/loolwsd/key.pem - /etc/loolwsd/ca-chain.cert.pem - - - 1000 - - - - - - - - - true - true - - - - - - localhost - 10\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3} - 172\.1[6789]\.[0-9]{1,3}\.[0-9]{1,3} - 172\.2[0-9]\.[0-9]{1,3}\.[0-9]{1,3} - 172\.3[01]\.[0-9]{1,3}\.[0-9]{1,3} - 192\.168\.[0-9]{1,3}\.[0-9]{1,3} - 192\.168\.1\.1 - 0 - - - localhost - - - - true - - - true - false - - - - - - - + + + de_DE en_GB en_US es_ES fr_FR it nl pt_BR pt_PT ru + + + + + + + + 1 + + 4 + 3600 + + 30 + 300 + 0 + 0 + 8000 + 0 + 0 + + + 60 + 900 + + loleaflet.html + + true + warn + + /var/log/loolwsd.log + never + timestamp + true + 10 days + 10 + true + false + + + false + false + + + true + + + + + + + false + + + + IPv4 + any + + + 192\.168\.[0-9]{1,3}\.[0-9]{1,3} + ::ffff:192\.168\.[0-9]{1,3}\.[0-9]{1,3} + 127\.0\.0\.1 + ::ffff:127\.0\.0\.1 + ::1 + + + + true + false + /etc/loolwsd/cert.pem + /etc/loolwsd/key.pem + /etc/loolwsd/ca-chain.cert.pem + + + 1000 + + + + + + + + true + true + + + + + localhost + nextcloud\.moellein\.homeip\.net + 10\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3} + 172\.1[6789]\.[0-9]{1,3}\.[0-9]{1,3} + 172\.2[0-9]\.[0-9]{1,3}\.[0-9]{1,3} + 172\.3[01]\.[0-9]{1,3}\.[0-9]{1,3} + 192\.168\.[0-9]{1,3}\.[0-9]{1,3} + 192\.168\.1\.1 + 0 + + + localhost + + + true + + true + false + admin + + pbkdf2.sha512.10000.54506d4d97532e8ee4d72f145b1982de106647650ec5e3f6284cc62230aabdf8543789f9a51542be239158f3d489d85cfffe5c635e4752918c9378a6ec0b8fe9f88c31d925670009c1245e0121dca9804038dccb97a25301389a448afc422cff42c02f4f6463cb1185eeb4334b83dab6891f9b6412417effd11a8dbe407578ea.5d7517827580225aa18360aef95830d43361cf7fc87750ad4b7f75c4121ea8d303d3701aa92f521512b12837d7798a5546fa2a0b6ea45811535af1afea0ef6bcac2ca1c8aa0c19a7bc664139e54ad8efccd1f49a37a4984cef226923aa895e162d712ec8ef77736d5f227cb127e0e6f1ecf4d66b64179be21a1a115f882e9b21 + + diff --git a/rc0.d/K01docker b/rc0.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc0.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/rc1.d/K01docker b/rc1.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc1.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/rc2.d/K01docker b/rc2.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc2.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/rc3.d/K01docker b/rc3.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc3.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/rc4.d/K01docker b/rc4.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc4.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/rc5.d/K01docker b/rc5.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc5.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/rc6.d/K01docker b/rc6.d/K01docker new file mode 120000 index 00000000..567023b7 --- /dev/null +++ b/rc6.d/K01docker @@ -0,0 +1 @@ +../init.d/docker \ No newline at end of file diff --git a/systemd/system/multi-user.target.wants/docker.service b/systemd/system/multi-user.target.wants/docker.service deleted file mode 120000 index a06e3f51..00000000 --- a/systemd/system/multi-user.target.wants/docker.service +++ /dev/null @@ -1 +0,0 @@ -/lib/systemd/system/docker.service \ No newline at end of file