402 Commits

Author SHA1 Message Date
Jan-Bulthuis
cdd94eefb3 Enabled base profile for domain users 2025-06-09 13:06:29 +02:00
Jan-Bulthuis
209dbea02a Disable sanity checks 2025-06-09 13:01:56 +02:00
Jan-Bulthuis
c683809a78 Added initial homeConfiguration for domain users 2025-06-09 12:50:30 +02:00
Jan-Bulthuis
739e335c28 Added test loginShellInit 2025-06-09 04:29:25 +02:00
Jan-Bulthuis
3c6758b343 Quick fix 2025-06-09 04:07:18 +02:00
Jan-Bulthuis
799b91a509 Update PAM 2025-06-09 04:05:52 +02:00
Jan-Bulthuis
50ff958d35 Setup strict ssh auth 2025-06-09 03:42:25 +02:00
Jan-Bulthuis
ecc2779ce9 Made SSSD strict for login in PAM 2025-06-09 03:28:39 +02:00
Jan-Bulthuis
10dab81fb5 Disable PTR update 2025-06-09 03:09:14 +02:00
Jan-Bulthuis
03e96662cc Set ad_gpo_implicit_deny to true 2025-06-09 02:57:06 +02:00
Jan-Bulthuis
d6d54e213e Implement SSH domain integration 2025-06-09 02:36:07 +02:00
Jan-Bulthuis
f491be0ace Added sudo domain integration 2025-06-09 02:17:05 +02:00
Jan-Bulthuis
fef1eff181 Simplified kerberos config 2025-06-09 01:54:39 +02:00
Jan-Bulthuis
e869e5d790 Setup kerberos config 2025-06-09 01:47:48 +02:00
Jan-Bulthuis
48caacd9e5 Enforce GPO access control 2025-06-09 01:34:29 +02:00
Jan-Bulthuis
ce4401033a Enabled dyndns 2025-06-08 03:45:33 +02:00
Jan-Bulthuis
8b331ad3ae Added SSSD config 2025-06-08 03:39:12 +02:00
Jan-Bulthuis
417383f89b Updated adcli script 2025-06-08 03:22:10 +02:00
Jan-Bulthuis
cc75c95ad4 Moved domain config 2025-06-08 03:04:14 +02:00
Jan-Bulthuis
a321251b93 Update secrets 2025-06-08 03:04:00 +02:00
Jan-Bulthuis
54677248af Installed some packages 2025-06-08 00:56:26 +02:00
Jan-Bulthuis
d8f18016cd Added krb5 setup 2025-06-08 00:10:13 +02:00
Jan-Bulthuis
6522ebc15e Added krb5 as sec for smb mount 2025-06-07 23:47:20 +02:00
Jan-Bulthuis
10216784e8 Set correct hostname 2025-06-07 23:38:38 +02:00
Jan-Bulthuis
f3abb6d2f3 Added samba mount 2025-06-07 23:36:21 +02:00
Jan-Bulthuis
936d654877 Added oddjob VM 2025-06-07 21:15:31 +02:00
Jan-Bulthuis
61d207db04 Installed obsidian 2025-06-07 21:15:14 +02:00
Jan-Bulthuis
e7b66cb40c Added kerberos config 2025-06-07 21:14:59 +02:00
Jan-Bulthuis
c9b18219af Updated secrets 2025-06-07 21:14:43 +02:00
Jan-Bulthuis
d5c4a78fba Updated README.md 2025-06-07 21:14:28 +02:00
Jan-Bulthuis
369d655a38 Autologin to root for access from hypervisor 2025-05-30 16:44:23 +02:00
Jan-Bulthuis
eab130b99d Removed swapfile 2025-05-30 16:38:25 +02:00
Jan-Bulthuis
5ce6b9bdf2 Added swap partition 2025-05-30 16:37:48 +02:00
Jan-Bulthuis
5db52a4f84 Removed need for password for local wheel group on VMs 2025-05-30 16:22:09 +02:00
Jan-Bulthuis
3524f6b038 Replaced key 2025-05-30 16:19:12 +02:00
Jan-Bulthuis
0cf53a97cf Restricted SSH access 2025-05-30 16:15:52 +02:00
Jan-Bulthuis
46fe5b8056 Set local password 2025-05-30 16:15:42 +02:00
Jan-Bulthuis
ec3d9e6049 Updated modules 2025-05-30 16:08:51 +02:00
Jan-Bulthuis
fc0476ca5a Added admin-pub secret 2025-05-30 16:08:39 +02:00
Jan-Bulthuis
4b7c62d00b Gave local passwordless sudo, rerolled and encrypted the authorized key. 2025-05-30 16:05:00 +02:00
Jan-Bulthuis
cfc276184f Updated README.md 2025-05-30 15:37:19 +02:00
Jan-Bulthuis
87b50bfb4d Updated secrets 2025-05-30 15:26:05 +02:00
Jan-Bulthuis
1bc34518e1 Added deployment key to root account 2025-05-30 15:11:22 +02:00
Jan-Bulthuis
f1dcb8c72b Updated sops-nix to also directly point at /persist 2025-05-30 14:35:59 +02:00
Jan-Bulthuis
ec002467fa Updated secrets 2025-05-30 14:03:14 +02:00
Jan-Bulthuis
5a228cb375 Updated update script 2025-05-30 14:03:05 +02:00
Jan-Bulthuis
d53e395d42 Added a module for SOPS 2025-05-30 13:56:50 +02:00
Jan-Bulthuis
cb39f82a48 Updated flake.lock 2025-05-30 12:42:35 +02:00
Jan-Bulthuis
0efee5bceb Added dependency on nixos-secrets 2025-05-30 12:06:21 +02:00
Jan-Bulthuis
844118055c Updated README.md 2025-05-29 21:00:40 +02:00