53 Commits

Author SHA1 Message Date
Jan-Bulthuis
0d25c1deff Fixed wireguard VPNs 2025-06-11 17:13:53 +02:00
Jan-Bulthuis
3603fe28a7 Removed authorizedKeys integration from sssd 2025-06-11 14:27:16 +02:00
Jan-Bulthuis
ce7c940f65 Switched to openssh package with kerberos support 2025-06-11 14:21:57 +02:00
Jan-Bulthuis
d8327c3edf Updated SSH to use GSSAPI 2025-06-11 14:13:25 +02:00
Jan-Bulthuis
af9f7e0ee0 Updated sssd dyndns config 2025-06-11 13:01:02 +02:00
Jan-Bulthuis
3285b483e2 Created standard local user hm config for VMs 2025-06-11 12:42:06 +02:00
Jan-Bulthuis
affa333969 Moved to systemd for initrd, added integration for vmWithDisko 2025-06-11 11:58:54 +02:00
Jan-Bulthuis
3c20190709 Create additional directories 2025-06-10 03:27:46 +02:00
Jan-Bulthuis
0305b8d33a Moved to bind mounts 2025-06-10 03:23:30 +02:00
Jan-Bulthuis
5ade637e57 Included package path 2025-06-10 03:07:57 +02:00
Jan-Bulthuis
029ff0c9a3 Added link creation to activation script 2025-06-10 03:04:44 +02:00
Jan-Bulthuis
db4bd8cfd9 Used persistence for mounting network folders 2025-06-10 02:37:26 +02:00
Jan-Bulthuis
41d25d9695 Updated autofs 2025-06-10 02:12:19 +02:00
Jan-Bulthuis
7e2e012f3a Changed autofs map 2025-06-10 01:56:23 +02:00
Jan-Bulthuis
071e904990 Updated autofs setup 2025-06-10 01:27:47 +02:00
Jan-Bulthuis
b68ca558d8 Set up autofs 2025-06-10 01:15:50 +02:00
Jan-Bulthuis
cf760b8b85 Simplified sude config 2025-06-10 00:07:58 +02:00
Jan-Bulthuis
7d4ee43283 Filter out locally defined users and groups 2025-06-10 00:07:22 +02:00
Jan-Bulthuis
d9dab5b9d3 Resource bashrc 2025-06-09 13:24:58 +02:00
Jan-Bulthuis
cdd94eefb3 Enabled base profile for domain users 2025-06-09 13:06:29 +02:00
Jan-Bulthuis
209dbea02a Disable sanity checks 2025-06-09 13:01:56 +02:00
Jan-Bulthuis
c683809a78 Added initial homeConfiguration for domain users 2025-06-09 12:50:30 +02:00
Jan-Bulthuis
739e335c28 Added test loginShellInit 2025-06-09 04:29:25 +02:00
Jan-Bulthuis
3c6758b343 Quick fix 2025-06-09 04:07:18 +02:00
Jan-Bulthuis
799b91a509 Update PAM 2025-06-09 04:05:52 +02:00
Jan-Bulthuis
50ff958d35 Setup strict ssh auth 2025-06-09 03:42:25 +02:00
Jan-Bulthuis
ecc2779ce9 Made SSSD strict for login in PAM 2025-06-09 03:28:39 +02:00
Jan-Bulthuis
10dab81fb5 Disable PTR update 2025-06-09 03:09:14 +02:00
Jan-Bulthuis
03e96662cc Set ad_gpo_implicit_deny to true 2025-06-09 02:57:06 +02:00
Jan-Bulthuis
d6d54e213e Implement SSH domain integration 2025-06-09 02:36:07 +02:00
Jan-Bulthuis
f491be0ace Added sudo domain integration 2025-06-09 02:17:05 +02:00
Jan-Bulthuis
fef1eff181 Simplified kerberos config 2025-06-09 01:54:39 +02:00
Jan-Bulthuis
e869e5d790 Setup kerberos config 2025-06-09 01:47:48 +02:00
Jan-Bulthuis
48caacd9e5 Enforce GPO access control 2025-06-09 01:34:29 +02:00
Jan-Bulthuis
ce4401033a Enabled dyndns 2025-06-08 03:45:33 +02:00
Jan-Bulthuis
8b331ad3ae Added SSSD config 2025-06-08 03:39:12 +02:00
Jan-Bulthuis
417383f89b Updated adcli script 2025-06-08 03:22:10 +02:00
Jan-Bulthuis
cc75c95ad4 Moved domain config 2025-06-08 03:04:14 +02:00
Jan-Bulthuis
0cf53a97cf Restricted SSH access 2025-05-30 16:15:52 +02:00
Jan-Bulthuis
f1dcb8c72b Updated sops-nix to also directly point at /persist 2025-05-30 14:35:59 +02:00
Jan-Bulthuis
d53e395d42 Added a module for SOPS 2025-05-30 13:56:50 +02:00
Jan-Bulthuis
76e609372f Added persistence to ssh host keys 2025-05-29 20:28:07 +02:00
Jan-Bulthuis
81c37abadd Fixed impermanence not mounting persist 2025-05-29 17:05:15 +02:00
Jan-Bulthuis
b0a8874a93 Set up impermanence 2025-05-29 16:34:24 +02:00
Jan-Bulthuis
51ab89cd98 Better disko setup 2025-05-29 14:19:19 +02:00
Jan-Bulthuis
9a97168950 Moved profiles to dedicated directory 2025-05-29 12:16:38 +02:00
Jan-Bulthuis
ea290d9158 Install tmux 2025-05-28 16:13:49 +02:00
Jan-Bulthuis
9d50a66388 Set up admin user 2025-05-28 13:59:30 +02:00
Jan-Bulthuis
01374fe5b0 Added vpn vm with wstunnel server 2025-05-28 12:23:31 +02:00
Jan-Bulthuis
daab746b40 Fixed printing 2025-05-28 12:21:45 +02:00