Wie Sie sehen, sehen sie nix! https://docs.hacc.space
Find a file
stuebinm 8f413da05a services/nextcloud: remove mail & redis
(both of these have lots of options, which either do nothing at all or
are misconfigured in some way and don't work. If we want redis-caching,
we can re-add it later, but the current state suggest it's already
working, which it isn't, which is worse)
2022-07-09 20:27:46 +02:00
common common/users: update schwebys ssh key 2022-05-22 15:08:42 +02:00
desktop cleanup default apps 2021-12-30 22:30:17 +01:00
hosts feat: new SSO!!!! 🎉 2022-04-30 20:43:12 +00:00
modules feat: new SSO!!!! 🎉 2022-04-30 20:43:12 +00:00
nix update sources 2022-06-09 14:56:38 +02:00
pkgs feat: new SSO!!!! 🎉 2022-04-30 20:43:12 +00:00
services services/nextcloud: remove mail & redis 2022-07-09 20:27:46 +02:00
websites Add uffd application icons 2022-05-02 16:28:37 +00:00
.gitignore repo: add vim swapfiles to gitignore 2020-11-29 12:53:03 +00:00
.gitlab-ci.yml gitlab-ci.yml: disable nixda build 2022-02-27 12:22:30 +01:00
default.nix sources: update nixpkgs to 21.05 2021-08-07 12:05:25 +00:00
README.md update readme 2022-01-07 18:16:31 +01:00

hacc nixfiles

welcome to hacc nixfiles (haccfiles). this is the code describing our nix-based infrastructure.

structure

  • default.nix: Entrypoint to the config
  • common/: configuration common to all hosts
  • desktop/: desktop-relevant communication
  • modules/: home-grown modules for hacc-specific services
  • nix/: sources files, managed with niv
  • pkgs/: packages we built and don't want to upstream
  • hosts/: configuration.nix per host
  • services/: all services we run; imported in appropriate host config

working with the haccfiles

deploy:

nix build -f . deploy.$hostname && ./result switch

$hostname can be replaced with any hostname or group

I don't want to build this long dependency / want a cached version!

If it's still available on parsons from a previous deploy, do:

nix copy --from ssh://parsons /nix/store/...

Note: don't just copy the .drv file (which Nix complains about if it can't build something), that's just the description of how to build it! If you don't know the actual outpath, look in the .drv file (should start with Derive([("out","[the path you want]"...)

committing to haccfiles

  • Golden Rule: DO NOT COMMIT TO MAIN
    • exceptions apply, if you are not sure where to commit, don't commit to main
  • split up commits, every commit is one atomic change
    • e.g. no big "did some changes" but instead "updated service x", "updated service y", "update service z"
  • follow the commit format: "$prefix$place: $change"
    • prefix: one of fixup, nothing
    • place: one of "modules/$module", "$hostname/service", "common/($place)", "pkgs/$pkgs" or "sources"
    • change: describe your change, don't go over the character limit where git starts hiding/wrapping
  • Exception: autogenerated messages (merge commits, reverts, etc)