From 100ab568e3aeb512e86fd1155a73454d22e24895 Mon Sep 17 00:00:00 2001 From: EuAndreh Date: Mon, 10 Aug 2020 12:15:49 -0300 Subject: Migration: Remove Ansible and Docker code, move only to NixOS --- TODOs.org | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'TODOs.org') diff --git a/TODOs.org b/TODOs.org index 22f762a..bbe8a7e 100644 --- a/TODOs.org +++ b/TODOs.org @@ -1,4 +1,7 @@ * Tasks - v4 +** TODO Run =sudo= as =nixos= user in server +** TODO nginx magic =sslCiphers= value +Why not the default? What do those mean? ** TODO How to handle IP changes in mail server? ** TODO Add borg backup to crontab ** TODO Add 2FA to Vultr @@ -55,6 +58,8 @@ If I move vps-state into vps, I'll have to remove the terraform steps from the p It makes the deploying less automatic, but this removes the IP reputation email issue. This means that the Terraform provisioning should stay out of the CI and be run only locally. +** Run locally instead of on CI +It makes it less automagic, but greatly simplifies the configuration, like removing custom =ssh.env.conf=, =mail.sh=, =vps-box-client.pub=, etc. ** Configuration of =StrictHostKeyChecking= We have 3 cases where I'm pushing things to the server and I'm dealing with it differently: *** 1. Pushing updates to the =vps-state= repository -- cgit v1.2.3