Kevin Veen-Birkenbach kevinveenbirkenbach
kevinveenbirkenbach synced new reference feature/keycloak-service-account-client to kevinveenbirkenbach/computer-playbook from mirror 2025-10-03 21:28:17 +00:00
kevinveenbirkenbach synced commits to feature/keycloak-service-account-client at kevinveenbirkenbach/computer-playbook from mirror 2025-10-03 21:28:17 +00:00
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-10-02 21:08:11 +00:00
a327adf8db Removed failing healthcheck
7a38cb90fb Added correct resources for baserow
9d6cf03f5b Fix: Replace unsupported /dev/tcp healthcheck with onboard PHP socket check for websocket service
Compare 3 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-10-02 12:59:18 +00:00
9439ac7f76 fix(web-app-xwiki): raise XWiki container resources and align YAML formatting
23353ac878 infra(sys-service): centralize async control + pre-deploy backup safeguard
8beda2d45d fix(svc-db-postgres): pin Postgres version to 17-3.5, add entity_name var, and dynamically resolve major version for dev package
5773409bd7 Changed nextcloud domain to next.cloud.primary_domain
b3ea962338 Implemented sleeping time for server
Compare 7 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-10-01 12:28:12 +00:00
5cdcc18a99 Fix PeerTube OIDC plugin automation
e7702948b8 EspoCRM role: custom image + single data volume + runtime flag setter
Compare 2 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-30 20:08:12 +00:00
09a4c243d7 Add centralized include for Access-Control-Allow headers across proxy/service Nginx templates and align ACA vars for simpleicons task.
1d5a50abf2 Optimized path building
Compare 2 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-30 11:58:12 +00:00
0d99c7f297 Nextcloud: refactor Talk → HPB, switch to bridge mode, and template cleanups
0a17e54d8c Nextcloud: set conservative Docker resource limits and template cleanups
bf94338845 Nextcloud/Nginx: wire Talk signaling WS location via reusable snippet
5d42b78b3d Nextcloud: extend CSP for Talk & disable keeporsweep
26a1992d84 Nextcloud/Talk: add Janus config & fix WebSocket proxying
Compare 6 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-29 19:38:13 +00:00
251f7b227d Add healthchecks for all Taiga services, fix RabbitMQ env var names, and define TAIGA_HOSTNAME
3fbb9c38a8 Solved coturn volume bug
29e8b3a590 Deactivated recording for Big Blue Button
27b89d8fb6 Taiga: refactor service naming & resource limits
55f2d15e93 Fix coturn container/volume separation: use COTURN_CONTAINER for container_name and map COTURN_VOLUME to /var/lib/coturn
Compare 5 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-29 11:28:12 +00:00
aa19a97ed6 CORS/CSP hardening & centralization
c06d1c4d17 Refactor yay update handling:
Compare 2 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-28 19:08:13 +00:00
66f294537d Replaced fixed 'web' service call for exec with 'ESPOCRM_SERVICE' variable for exec call
a9097a3ec3 web-app-espocrm: add resource limits, init/stop settings and cleanups
Compare 2 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-27 18:39:40 +00:00
fc59c64273 Nextcloud Talk: fix virtual-background web check by
dbbb3510f3 Refactor TURN/STUN config:
eb3bf543a4 Removed turn and stun protocol prefix
4f5602c791 Nextcloud Talk: fix TURN/STUN config
Compare 4 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-27 10:29:39 +00:00
75d476267e Optimized Nextcloud variables
c3e5db7f2e Cleaned up LDAP entries to keep it more clean
dfd2d243b7 Enabled recordings for BBB because https://github.com/bigbluebutton/bigbluebutton/issues/9202 was solved
78ad2ea4b6 nextcloud(spreed): output valid JSON via to_json for signaling/stun/turn; keep internal_secret plain https://chatgpt.com/share/68d75f71-6de8-800f-854c-207771c8d883
c362e160fc Nextcloud: switch Talk to host networking; update proxy routing and compose; centralize Talk secrets & spreed config; remove Greenlight block
Compare 6 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-27 02:19:40 +00:00
7405883b48 BigBlueButton & Nextcloud:
85db0a40db Refactor Coturn port configuration: unify STUN and TURN into stun_turn and stun_turn_tls, update vars, docker-compose template, and add robust healthcheck [https://chatgpt.com/share/68d73a2d-ef34-800f-90d2-1628822ca541]
8af39c32ec Override docker conf variables from parents
31e86ac0fc Optimized networks
4d223f1784 feat(web-svc-coturn): add configurable network_mode (default host) and adjust credential generation
Compare 10 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-26 18:09:40 +00:00
7572134e9d Removed leftover
97af4990aa refactor(webserver): rename roles and update references
b6d0535173 Cleaned up comment
27d33435f8 fix(bbb): align TURN/STUN configuration with shared coturn service
3cc4014edf feat(coturn): add dedicated web-svc-coturn role with schema, ports, network, and docker-compose template
Compare 18 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-26 09:59:39 +00:00
7c5ad8e6a1 Optimized XWIKI Nextcloud Bridge
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-25 17:46:40 +00:00
a26538d1b3 web-app-openproject: upgrade to OpenProject 15
f55b0ca797 web-app-openproject: migrate from OpenProject 13 to 14
6f3522dc28 fix(csp): resolve all CSP-related issues and extend webserver health checks
5186eb5714 Optimized OpenProject and CSP rules
73bcdcaf45 Deactivated proxying of bluesky web domain
Compare 10 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-25 09:36:24 +00:00
189aaaa9ec Deactivated OpenProject LDAP Administrator Flag
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-24 17:16:26 +00:00
ca52dcda43 Refactor OpenProject role:
4f59e8e48b Added cdn.jsdelivr.net to connect-src for web-app-desktop
a993c153dd fix(docker-container): ensure service_name and context are passed correctly to resource.yml.j2 by switching from lookup() to include with indent filter
8d6ebb4693 Mailu/Redis: add explicit service resource limits & clamav_db volume
567babfdfc Fix CPU resource calculation by enforcing a minimum of 0.5 cores per container using list-based max filter. See: https://chatgpt.com/share/68d3d645-e4c4-800f-8910-b6b27bb408e7
Compare 7 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-24 09:06:24 +00:00
c181c7f6cd fix(webserver): ensure numeric casting for worker_processes and worker_connections
929cddec0e Refactor resource_filter to delegate default handling to get_app_conf and update unittests accordingly https://chatgpt.com/share/68d3ad6d-76b4-800f-b04e-5e1fb70b44f3
9ba0efc1a1 Refactor resource configuration:
Compare 3 commits »
kevinveenbirkenbach synced commits to master at kevinveenbirkenbach/computer-playbook from mirror 2025-09-24 00:56:25 +00:00
9bf77e1e35 mastodon: tighten resources, robust exec tasks, and env defaults
426ba32c11 feat(services): add CPU/RAM/PIDs defaults for heavy roles and align service names
ff7b7aeb2d feat(filters): add active_docker_container_count filter and use it for fair resource splits
c523d8d8d4 Casted WWW_REDIRECT_ENABLED to bool
12d05ef013 Bluesky: add redirects for deactivated web/view domains to BLUESKY_API_DOMAIN via web-opt-rdr-domains
Compare 5 commits »