Slavi Pantaleev
d691cc0920
Move variable definition a bit
4 anni fa
Slavi Pantaleev
e00ef04b57
Add opt-out-of-FLoC headers by default
4 anni fa
Slavi Pantaleev
ca786cc343
Revert "Upgrade Synapse (1.31 -> 1.32)"
This reverts commit f825c7c263 .
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/issues/1010
4 anni fa
Aaron Raimist
bb64b80697
Upgrade synapse-admin (0.7.0 -> 0.7.2)
4 anni fa
Slavi Pantaleev
f825c7c263
Upgrade Synapse (1.31 -> 1.32)
4 anni fa
Slavi Pantaleev
adcecaffaf
Fix connectivity between prometheus and prometheus-node-exporter
Expected to have regressed after https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/1008
This patch comes with its own downsides (as described in the comments
for matrix_prometheus_node_exporter_container_http_host_bind_port),
but at least there's:
- no security issue
- metrics remain readable from matrix-prometheus (even if the network metrics are inaccurate)
A better patch is certainly welcome.
4 anni fa
Dan Arnfield
b2ca1f2829
Add capability required by new image
4 anni fa
Dan Arnfield
29177d4922
Switch to official coturn docker image
4 anni fa
sak
88a30fb5ed
security** node-exporter data & port publicly exposed
4 anni fa
sak
0f9a455719
Revert "security** node-exporter data & port publicly exposed"
This reverts commit d0cd709c08 .
4 anni fa
sak
d0cd709c08
security** node-exporter data & port publicly exposed
4 anni fa
teutat3s
2bf7c26cfa
Don't expose nginx version with each response
4 anni fa
Dan Arnfield
f04614a993
Fix prometheus network for ansible < 2.8
4 anni fa
Slavi Pantaleev
badd81e0ec
Revert "Attempt to fix docker_network result discrepancy between Ansible versions"
This reverts commit 68ca81c8c2 .
4 anni fa
sakkiii
1958d0792d
Update matrix-client-element.conf.j2
4 anni fa
sakkiii
05042f5ff1
Improve security grafana
- duplicate X-Content-Type-Options
- X-Frame-Options header
- Referrer-Policy [Might consider adding variable]
- Secure flag with cookies
- matrix_grafana_content_security_policy variable for [Content Security Policy](https://grafana.com/docs/grafana/latest/administration/configuration/#content_security_policy )
4 anni fa
sakkiii
27377e099d
updated matrix_grafana_docker_image to v7.5.4
Latest stable grafana version is [7.5.4 (2021-04-14)](https://github.com/grafana/grafana/releases/tag/v7.5.4 )
4 anni fa
Slavi Pantaleev
68ca81c8c2
Attempt to fix docker_network result discrepancy between Ansible versions
Supposedly fixes https://github.com/spantaleev/matrix-docker-ansible-deploy/issues/907
4 anni fa
Dan Arnfield
8a550ce67c
Update prometheus (2.24.1->2.26.0)
4 anni fa
Dan Arnfield
83cc5c9e6a
Update prometheus node exporter (1.1.0 -> 1.1.2)
4 anni fa
sakkiii
5dc642ace1
Nginx element web: XSS protection & nosniff header
X-XSS-Protection: 1; mode=block; header, for basic XSS protection in legacy browsers.
X-Content-Type-Options: nosniff header, to disable MIME sniffing
4 anni fa
Slavi Pantaleev
fcb9e9618a
Make Coturn TLSv1/v1.1 configurable
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/999
4 anni fa
sakkiii
540416e32d
Disable support for TLS 1.0 and TLS 1.1
These old versions of TLS rely on MD5 and SHA-1, both now broken, and contain other flaws. TLS 1.0 is no longer PCI-DSS compliant and the TLS working group has adopted a document to deprecate TLS 1.0 and TLS 1.1.
4 anni fa
Michael-GMH
89cb5a3d7a
GMH v0.4.2 update
4 anni fa
Slavi Pantaleev
c7c137df74
Upgrade nginx and certbot
4 anni fa
Slavi Pantaleev
931452bb06
Upgrade exim (4.93 -> 4.94)
4 anni fa
rakshazi
4f8e1bd43a
Updated Element Web 1.7.24.1 -> 1.7.25
4 anni fa
Ahmad Haghighi
e335f3fc77
rename matrix_global_registry to matrix_container_global_registry_prefix related to #990
Signed-off-by: Ahmad Haghighi <haghighi@fedoraproject.org>
4 anni fa
Ahmad Haghighi
f52a8b6484
use custom docker registry
4 anni fa
Aaron Raimist
3d2142f88b
Add sanity check for server architecture
4 anni fa
Marcus
3e119e483e
Update init.yml
fix nginx boot loop
4 anni fa
Slavi Pantaleev
4830b7d830
Upgrade Synapse for ARM64 (1.30.1 -> 1.31.0)
4 anni fa
Slavi Pantaleev
3f426de599
Upgrade Synapse (1.30.1 -> 1.31.0)
4 anni fa
Slavi Pantaleev
c386e8e9db
Use integers for some variables
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/868
4 anni fa
Slavi Pantaleev
832e191ab8
Fix incorrect variable usage in when statement
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/868
4 anni fa
Slavi Pantaleev
1b55766927
Do not redefine matrix-postgres role vars in matrix-postgres-backup
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/868
4 anni fa
Slavi Pantaleev
298556e02e
Fix undefined matrix_postgres_backup_detected_version_corresponding_docker_image
.. and prevent variable name overlap with `matrix-postgres` for the
other variables as well.
Related to https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/868
4 anni fa
foxcris
2178f3612f
- matrix_postgres_backup_databases now uses more simple structure
4 anni fa
Michael
f41bfb69d2
update survey template formatting
4 anni fa
Michael
814bdf5a88
update spelling
4 anni fa
Michael
fbe22289bd
merge with upstream and testing branch
4 anni fa
Aaron Raimist
458c17b9d0
Upgrade Grafana (7.4.0 -> 7.5.2)
4 anni fa
Aaron Raimist
504f1b6445
Allow special characters in Grafana password
4 anni fa
Aaron Raimist
81dddd2e25
Upgrade Element (1.7.24 -> 1.7.24.1)
4 anni fa
Aaron Raimist
c43bd412dd
Upgrade synapse-simple-antispam (0.0.1 -> 0.0.3)
4 anni fa
Aaron Raimist
1ecee625d5
Depend on more services, add a delay
4 anni fa
teutat3s
0b5e903693
Updates to mautrix-signal config
See these last commits:
tulir/mautrix-signal@4fc34330c1f6947aece67863b0d04da34c776f80
tulir/mautrix-signal@64bc5c36a509ba435a0b01cf44afb1b5d2642efd
tulir/mautrix-signal@ddda1666d41d28750cc59d070e4388b24add6ad9
4 anni fa
Christoph Johannes Kleine
fcd66b2889
rename variables
4 anni fa
Christoph Johannes Kleine
8ba1105010
rename variable
4 anni fa
Christoph Johannes Kleine
3a772f2f65
matrix-nginx-proxy: add custom nginx options to nginx.conf.j2
5 anni fa