Jaka Hudoklin
099eabb490
nixos: add chronos service
2014-12-03 15:49:14 +01:00
Jaka Hudoklin
665cc41e5c
nixos/peerflix: fix enable option description
2014-12-03 15:13:50 +01:00
Domen Kožar
7a140096e0
whitespace change for kde4 test to force rebuild :(
2014-12-03 12:31:10 +01:00
Domen Kožar
55cf272c19
fixes #5198
2014-12-02 12:59:14 +01:00
Jaka Hudoklin
a0cf449fa5
mesos: add docker support
2014-12-02 12:22:12 +01:00
Luca Bruno
41cb91a4fd
Revert "Merge pull request #5184 from daogames/tb/fix-systemd-udev-net-rules"
...
This reverts commit ddeee82b31
, reversing
changes made to 75ead8812b
.
2014-12-02 10:54:48 +01:00
lethalman
ddeee82b31
Merge pull request #5184 from daogames/tb/fix-systemd-udev-net-rules
...
Fix filename for udev network interface rules
2014-12-02 10:50:16 +01:00
William A. Kennington III
75ead8812b
nixos/tests: Fix nfs
2014-12-02 01:34:20 -08:00
William A. Kennington III
8a94c06595
nixos: Add network-pre.target and adjust firewall start ordering
2014-12-01 17:19:44 -08:00
William A. Kennington III
2b06a92c2a
nixos/nfs: Fix dependency ordering
2014-12-01 17:19:44 -08:00
William A. Kennington III
1716c12b54
iwlwifi: Split into separate package with more up to date firmware
2014-12-01 16:25:20 -08:00
wmertens
3cecef15d7
Revert $GIT_SSL_CAINFO removal
...
Users have an older git in their user environment and it doesn't work without it. We should keep it around for a while.
2014-12-01 23:07:50 +01:00
Jaka Hudoklin
40d73c5eb7
nixos/docker: fix module, add simple test
2014-12-01 17:20:35 +01:00
Jaka Hudoklin
4fe3e44645
nixos/mesos: restart on failure
2014-12-01 16:57:56 +01:00
Jaka Hudoklin
827ad85a1e
nixos/mesos: convert quorum to string
2014-12-01 16:57:17 +01:00
Jaka Hudoklin
5fa87a9df7
nixos/peerflix: add test to release.nix
2014-12-01 16:45:38 +01:00
Jaka Hudoklin
3424ded286
nixos: add peerflix module
2014-12-01 16:42:40 +01:00
William A. Kennington III
1c04e69bce
nixos/networking: Fix more harmless errors
2014-12-01 01:18:32 -08:00
Tino Breddin
d0327c052c
Fix filename for udev network interface rules
...
From http://www.freedesktop.org/wiki/Software/systemd/PredictableNetworkInterfaceNames/
You disable the assignment of fixed names, so that the unpredictable
kernel names are used again. For this, simply mask udev's rule file for
the default policy: ln -s /dev/null
/etc/udev/rules.d/80-net-setup-link.rules (since v209: this file was
called 80-net-name-slot.rules in release v197 through v208)
2014-12-01 09:32:41 +01:00
Domen Kožar
1ad22e8c55
Merge pull request #5189 from NixOS/almir
...
almir: pin the sqlalchemy version used by zope.sqlalchemy to 8
2014-11-30 17:23:53 +01:00
Luca Bruno
93fcefe126
nixos/tests: add networking-proxy.nix to release
2014-11-30 15:22:12 +01:00
Antoine R. Dumont
da47d6bd59
Improve readability - from https://github.com/NixOS/nixpkgs/pull/5058#discussion_r21043552
2014-11-30 15:19:30 +01:00
Antoine R. Dumont
e54f9ffcf4
Ensure nix-daemon sees the proxy defined options
...
(Not sure about this one)
Here are the incomplete and a little contradictory discussions about
it (or at least my interpretations of them):
- https://github.com/NixOS/nixpkgs/pull/5058#discussion_r20830855
- https://github.com/NixOS/nixpkgs/pull/5058#discussion_r21043552
cc @edolstra @wmertens
What did I get wrong?
2014-11-30 15:19:30 +01:00
Antoine R. Dumont
3c7e779602
Introduce a dedicated networking.proxy option
...
Following the discussion NixOS#5021:
- obsolete the nix.proxy option
- add the networking.proxy option
- open a default no_proxy environment variable
- add a rsync option
- Manual tests ok.
- Automatic tests ok.
Amended by lethalman to simplify the option descriptions.
2014-11-30 15:19:25 +01:00
William A. Kennington III
74ed5eee41
nixos/network: Fix typo
2014-11-30 05:16:07 -08:00
William A. Kennington III
47d3db5c30
nixos/network: Only check slave interfaces which are configured
2014-11-30 05:12:49 -08:00
William A. Kennington III
01332149d4
nixos/networkd: Fix dhcp being enabled when it should be disabled
2014-11-30 04:46:59 -08:00
Cillian de Róiste
1d5aecd356
Almir module: set a working default sqlalchemy_engine_url
2014-11-30 13:11:55 +01:00
Arseniy Seroka
f8e1087209
Merge pull request #5121 from coreyoconnor/primus-upstream
...
Add primus and extend bumblebee to support 32bit/64bit multilib
2014-11-30 13:23:30 +03:00
William A. Kennington III
4b9c5ebee6
nixos/networking: Fix dependencies for macvlan which should be on bridges
2014-11-30 01:25:09 -08:00
William A. Kennington III
9a11132fe5
nixos/network: Remove debug output in tests
2014-11-30 01:21:37 -08:00
William A. Kennington III
a911f9989c
nixos/networkd: Fix macvlan called with null mode
2014-11-30 01:19:54 -08:00
William A. Kennington III
16827ff287
nixos/nfs: Fix Test
2014-11-30 01:14:57 -08:00
William A. Kennington III
66f45268ab
nixos/networking: Improve service ordering
2014-11-29 22:47:04 -08:00
William A. Kennington III
7ecb084b77
nixos/networking: More fixes
2014-11-29 22:35:03 -08:00
William A. Kennington III
bcfe7b2200
Merge pull request #5043 from wkennington/master.networkd
...
nixos/networking: Revamp networking configuration and add an experimental networkd option.
2014-11-29 19:59:31 -08:00
William A. Kennington III
a403379b88
nixos/tests: Add networking tests for basic functionality
2014-11-29 19:53:37 -08:00
Corey O'Connor
b2f3e10a35
Add primus and extend bumblebee to support 32bit/64bit multilib architectures.
...
Using primusrun will work as expected in a multilib environment. Even if the initial program
executes a antoehr program of the another architecture. Assuming the program does not modify
LD_LIBRARY_PATH inappropriately.
This does not update virtualgl for seemless multilib. I was unable to get a mixed 64/32 bit
environment to work with VirtualGL. The mechanism VirtualGL uses to inject the fake GL library would
fail if both 32bit and 64 bit libraries were in the environment. Instead the bumblebee package
creates a optirun32 executable that can be used to run a 32bit executable with optimus on a 64 bit
host. This is not created if the host is 32bit.
For my usage, gaming under wine, the primusrun executable works as expected regardless of
32bit/64bit.
2014-11-29 16:42:00 -08:00
Jaka Hudoklin
20487919b2
nixos/kubernetes: try to fix test by incrising memory size
2014-11-30 01:36:10 +01:00
Jaka Hudoklin
04cfe045eb
nixos: run etcd, docker-registry and kubernetes tests only on supported platforms
2014-11-30 01:33:25 +01:00
aszlig
3e49487c1a
virtualbox: Enable hardening by default.
...
VirtualBox with hardening support requires the main binaries to be
setuid root. Using VBOX_WITH_RUNPATH, we ensure that the RPATHs are
pointing to the libexec directory and we also need to unset
VBOX_WITH_ORIGIN to make sure that the build system is actually setting
those RPATHs.
The hardened.patch implements two things:
* Set the binary directory to the setuid-wrappers dir so that
VboxSVC calls them instead of the binaries from the store path. The
reason behind this is because nothing in the Nix store can have the
setuid flag.
* Excempt /nix/store from the group permission check, because while it
is group-writeable indeed it also has the sticky bit set (and also
the whole store is mounted read-only on most NixOS systems), so we're
checking on that as well.
Right now, the hardened.patch uses /nix/store and /var/setuid-wrappers
directly, so someone would ever want to change those on a NixOS system,
please provide a patch to set those paths on build time. However, for
simplicity, it's best to do it when we _really_ need it.
Signed-off-by: aszlig <aszlig@redmoonstudios.org>
2014-11-29 19:21:46 +01:00
Jaka Hudoklin
8c766dcc90
nixos/kubernetes: fix user id
2014-11-29 16:46:39 +01:00
Jaka Hudoklin
bd32da69bc
Merge pull request #5088 from offlinehacker/nixos/kubernetes
...
nixos: add kubernetes module
2014-11-29 16:44:42 +01:00
Jaka Hudoklin
2b261c1edf
nixos: add kubernetes module
2014-11-29 02:27:17 +01:00
aszlig
c37611f3e5
nixos: Use vendor zones instead of N.pool.ntp.org.
...
Closes #4824 , thanks to @abh for processing my stupidity.
Signed-off-by: aszlig <aszlig@redmoonstudios.org>
2014-11-28 19:37:03 +01:00
William A. Kennington III
299b59d1c4
nixos/network-interfaces: More fixes
2014-11-27 22:54:01 -08:00
Domen Kožar
28a1af6e06
fix printing test
2014-11-27 20:01:18 +01:00
Domen Kožar
b4cedc7965
nixos: reverse logic in nixos interactive tests documentation
2014-11-27 20:01:18 +01:00
aszlig
2249474632
nixos/sshd: Fix build if knownHosts is empty.
...
Introduced by 77ff279f27
.
Build failure: https://headcounter.org/hydra/build/583158/nixlog/5/raw
Signed-off-by: aszlig <aszlig@redmoonstudios.org>
2014-11-27 19:03:41 +01:00
aszlig
14f09e01c1
nixos: Add enable option for programs/virtualbox.
...
We will simply rename the previous module and add a warning whenever the
module is included directly, pointing the user to the right option and
also enable it as well (in case somebody has missed the option and is
wondering why VirtualBox doesn't work anymore).
Signed-off-by: aszlig <aszlig@redmoonstudios.org>
2014-11-27 18:42:22 +01:00
aszlig
444987193e
nixos: Rename virtualbox to virtualboxGuest.
...
Especially new users could be confused by this, so we're now marking
services.virtualbox.enable as obsolete and defaulting to
services.virtualboxGuest.enable instead. I believe this now makes it
clear, that this option is for guest additions only.
Signed-off-by: aszlig <aszlig@redmoonstudios.org>
2014-11-27 18:42:22 +01:00
Rickard Nilsson
77ff279f27
nixos/services.openssh: Allow knownHost keys to have multiple lines.
...
Useful for adding several public keys of different types for the same host.
2014-11-27 18:40:21 +01:00
Eelco Dolstra
e7cd18e907
Don't set $MANPATH
...
The default is derived automatically from $PATH, so it's in fact
better *not* to set it.
2014-11-27 17:36:46 +01:00
wmertens
45c1b9147f
Merge pull request #5130 from wmertens/git-ssl-env
...
Let git use $SSL_CERT_FILE
2014-11-27 13:24:08 +01:00
Domen Kožar
91bdca38a0
NetworkManager.service -> network-manager.service
2014-11-27 12:10:20 +01:00
William A. Kennington III
fbe9ac05d3
nixos/network-interfaces: Add maclvan support
2014-11-26 16:29:24 -08:00
William A. Kennington III
1860ee27b0
nixos/networking: Fixes
2014-11-26 16:29:24 -08:00
Matej Cotman
084fb3a0d3
e18: remove old desktop manager
2014-11-26 21:44:23 +01:00
Matej Cotman
959946a5af
e17: remove old desktop manager
2014-11-26 21:44:23 +01:00
William A. Kennington III
4f2a041345
nixos/network-interfaces: Make it clear that networkd is experimental
2014-11-26 11:22:03 -08:00
William A. Kennington III
2c42738231
nixos/network-interfaces: Refactor scripts for reliability and dependency removal
2014-11-26 11:22:03 -08:00
William A. Kennington III
c417012c1b
nixos/dhcpcd: Respect per interface dhcp options
2014-11-26 11:22:03 -08:00
William A. Kennington III
7005e289da
nixos/network-interfaces: Promote secondary addresses when primary addresses expire
2014-11-26 11:22:03 -08:00
William A. Kennington III
c7d46687c5
nixos/network-interfaces: Support mac address and mtu universally
2014-11-26 11:22:03 -08:00
William A. Kennington III
2057d9087f
nixos: Support network-online target in addition to ip-up
2014-11-26 11:22:03 -08:00
William A. Kennington III
0626c1ecf0
nixos/systemd: ip-up and network-online targets should come after networkd-wait-online
2014-11-26 11:22:02 -08:00
William A. Kennington III
c234e7b115
nixos/networking: Rebuild resolvconf during activation
...
This is needed when /etc/resolv.conf is being overriden by networkd
and other configurations. If the file is destroyed by an environment
activation then it must be rebuilt so that applications which interface
with /etc/resolv.conf directly don't break.
2014-11-26 11:22:02 -08:00
William A. Kennington III
8cffa37787
networkd: Support Host Resolvconf
2014-11-26 11:22:02 -08:00
William A. Kennington III
295a17f872
nixos/network-interfaces-scripted: Fix network-setup triggering
2014-11-26 11:22:02 -08:00
William A. Kennington III
59f512ef7d
nixos/network-interfaces: Provide a networkd implementation
2014-11-26 11:22:02 -08:00
William A. Kennington III
045132a9b0
systemd-network: Add assertions for user clarity
2014-11-26 11:22:02 -08:00
William A. Kennington III
a332c4eac5
systemd: Enable more network services
2014-11-26 11:22:02 -08:00
William A. Kennington III
08e74f2791
systemd: Add ability to define networks
2014-11-26 11:22:02 -08:00
Igor Pashev
1dd53cc990
Mediawiki: updated for Apache 2.4
2014-11-26 16:51:30 +01:00
Wout Mertens
72b81cf8bb
Remove unnecessary $GIT_SSL_CAINFO from sys env
2014-11-26 00:30:07 +01:00
Eelco Dolstra
dd2dedafa3
Style fixes
2014-11-25 16:01:27 +01:00
Igor Pashev
4c33004e1f
Added strongSwan service
2014-11-25 15:29:34 +01:00
Aristid Breitkreuz
82f2be6a26
containers: add test that stopping and starting a container works ( #4989 )
2014-11-24 23:19:34 +01:00
Vladimír Čunát
d39c6ceffc
nvidia_x11: current long-lived becomes a new legacy
...
CC: #5070 .
2014-11-24 22:39:00 +01:00
cillianderoiste
04d62f6643
Merge pull request #5006 from daogames/este/customgitoliteuser
...
enable different useraccount name for gitolite user
2014-11-24 22:03:20 +01:00
William A. Kennington III
f83aa6c0ea
nixos/unifi: Properly depend on mountpoints
2014-11-24 12:40:07 -08:00
aszlig
cc28e819e4
nixos/cupsd: Ignore collisions in cups-progs.
...
There currently are collisions between the main CUPS package and the
filters package, which are:
* $storepath/share/cups/banners/classified
* $storepath/share/cups/banners/confidential
* $storepath/share/cups/banners/secret
* $storepath/share/cups/banners/standard
* $storepath/share/cups/banners/topsecret
* $storepath/share/cups/banners/unclassified
* $storepath/share/cups/data/testprint
And they actually have different content, so let's ignore those for now
until we have a better fix.
Signed-off-by: aszlig <aszlig@redmoonstudios.org>
2014-11-24 17:40:03 +01:00
Oliver Charles
ac616e17b3
opentsdb: Enable chunked API requests by default
2014-11-24 14:40:48 +00:00
Oliver Charles
abd24523f3
scollector: Allow users to specify external collectors
2014-11-24 14:40:48 +00:00
Oliver Charles
ced9e83732
OpenTSDB should create its schema on start up
2014-11-24 14:40:48 +00:00
Oliver Charles
5c670c81d5
hbase should use dataDir to specify where to store data
2014-11-24 14:40:48 +00:00
Oliver Charles
1280c6aa64
Add an extraConfig
option to bosun
2014-11-24 14:40:48 +00:00
Oliver Charles
fb67616588
scollector should talk to Bosun, not OpenTSDB
2014-11-24 14:40:48 +00:00
Oliver Charles
891c262e9a
Add a NixOS module to run bosun
2014-11-24 14:40:47 +00:00
Oliver Charles
2ed07c6cc1
scollector: New NixOS module
2014-11-24 14:40:47 +00:00
Oliver Charles
751a2943f4
opentsdb: Upgrade to 2.1.0-RC1
2014-11-24 14:40:47 +00:00
Oliver Charles
764cca613d
opentsdb: New package and NixOS module
2014-11-24 14:40:47 +00:00
Oliver Charles
8964667bcd
hbase: New package and NixOS module
2014-11-24 14:40:47 +00:00
Arseniy Seroka
fd5566da41
Merge pull request #5080 from joachifm/dnscrypt-refactor
...
dnscrypt-proxy: minor superficial improvements
2014-11-24 15:48:47 +03:00
William A. Kennington III
8309aa04b2
unifi: Actually remove webapps at shutdown
2014-11-24 02:30:04 -08:00
William A. Kennington III
8f0d65e2df
unifi: Clean all of webapps at start and stop
2014-11-24 00:22:24 -08:00
William A. Kennington III
3f7b2bc70d
unifi: Fix typo
2014-11-24 00:06:42 -08:00
Domen Kožar
23567ac200
cups-pdf-filter -> cups-filters, enable by default for cups
2014-11-23 17:51:55 +01:00
Michael Raskin
48a1b59f6a
Remove cups_pdf_filter from the default set - adding to default set is easier than removing...
2014-11-23 16:27:28 +03:00
Aristid Breitkreuz
5ff169f4d7
containers: remove obsolete comment
2014-11-23 12:30:03 +01:00