Max Klenk
fc2edcbecf
fix media routing
5 lat temu
Max Klenk
132daba1af
fix worker routes
5 lat temu
Slavi Pantaleev
2a1ec38e3a
Stop using Ansible's cron module
This is mainly to address SSL renewal not working for us due to:
- https://github.com/ansible/ansible/issues/71213
- https://github.com/ansible/ansible/pull/71207
Using the cron module was hacky anyway. We shouldn't need an extra
level of buggy abstraction to manage a cronjob file.
5 lat temu
Max Klenk
06bc430c7c
refactor to use new workers and routes they serve
5 lat temu
Max Klenk
59d1fb76b6
only apply worker redirects if workers are enabled
5 lat temu
Dan Arnfield
c8754f422a
Update certbot (1.6.0 -> 1.7.0)
5 lat temu
Dan Arnfield
8d373409b8
Update nginx (1.19.1 -> 1.19.2)
5 lat temu
Justin Croonenberghs
31e2a1f06b
Undo ill-advised change
In #628 I proposed a CORS change that turns out not to be the root of the issue. Caffeine-addled diagnosis leads to sloppy thinking, and this change should be reverted. In fact, if left it will cause problems for new installations.
5 lat temu
Justin Croonenberghs
c5d18733d2
Update CORS for ma1sd
Even with the v2 updates listed in #503 and partially addressed in #614 , this is still needed to enable identity services to function with Element Desktop/Web. Testing on multiple clients with a clean config has confirmed this, at least for my installation.
5 lat temu
Slavi Pantaleev
54195b22c7
Allow framing Jitsi
Hopefully fixes a regression caused by b106a9592e .
Related to #597 (Github Pull Request).
5 lat temu
Slavi Pantaleev
3f8e5b4363
Allow framing Dimension
Fix regression since 2a50b8b6bb (#597 ).
Dimension is intended to be embedded in various clients,
be it the Element service that we host (at element.DOMAIN),
some other Element (element-desktop running locally), etc.
5 lat temu
TwoTwenty
b106a9592e
Update matrix-jitsi.conf.j2
5 lat temu
TwoTwenty
c97e7c5a3e
Update matrix-dimension.conf.j2
5 lat temu
TwoTwenty
18ba885ca2
Update matrix-client-element.conf.j2
5 lat temu
Slavi Pantaleev
c6ab1c6a90
Riot is now Element
Fixes #586 (Github Issue)
5 lat temu
Dan Arnfield
c47a55d170
Update nginx (1.19.0 -> 1.19.1) and certbot (1.5.0 -> 1.6.0)
5 lat temu
shadow
6293f1bdb0
Run all API self checks in check_mode
5 lat temu
Slavi Pantaleev
65e5020596
Proxy other /_synapse endpoints to the client API
Besides /_synapse/admin, there are other things like
/_synapse/oidc, etc.
We should just proxy everything.
Fixes #534 (Github Issue).
5 lat temu
Slavi Pantaleev
88a4a3ab55
Update components
5 lat temu
Chris van Dijk
74df10633a
Remove hardcoded command paths in playbook cron usage
5 lat temu
Chris van Dijk
6e3b877dc2
Remove hardcoded command paths in playbook shell usage
5 lat temu
Chris van Dijk
6334f6c1ea
Remove hardcoded command paths in systemd unit files
Depending on the distro, common commands like sleep and chown may either
be located in /bin or /usr/bin.
Systemd added path lookup to ExecStart in v239, allowing only the
command name to be put in unit files and not the full path as
historically required. At least Ubuntu 18.04 LTS is however still on
v237 so we should maintain portability for a while longer.
5 lat temu
Slavi Pantaleev
7a2dbdc2d7
Update components
5 lat temu
Chris van Dijk
7585bcc4ac
Allow the matrix user username and groupname to be configured separately
No migration steps should be required.
5 lat temu
Marcel Partap
46984a4f99
Nginx conf: more testing less b0rk
5 lat temu
Christoph Johannes Kleine
765c046beb
add missing ; to matrix-synapse.conf.j2
5 lat temu
Marcel Partap
e4763c21bc
nginx config: route traffic to workers on matrix-synapse
FIXME: horrid duplication in template file
5 lat temu
Marcel Partap
a14b9c09ad
Add to synapse nginx template conditional URL rewrites for workers
· 😅 How to keep this in sync with the matrix-synapse documentation?
· regex location matching is expensive
· nginx syntax limit: one location only per block / statement
· thus, lots of duplicate statements in this file
5 lat temu
Dan Arnfield
e2de6a1569
Update nginx (1.17.9 -> 1.17.10)
5 lat temu
Horvath Gergely
bd61598faf
add experimental(?) architecture support for arm32 and arm64
the changes are necessary because certbot images are tagged, so docker does not recognize the necessary architecture
5 lat temu
Chris van Dijk
d83236ea0e
Fix inconsistent whitespace
5 lat temu
Marcel Partap
874e2e1fc0
Rename variables (s/mxisd/ma1sd/) and adapt roles
6 lat temu
Slavi Pantaleev
8bcc9712d0
Make follow_redirects configurable when checking /.well-known/matrix/client
Discussed in #101 (Github Issue).
6 lat temu
Christian Wolf
8c9b5ea6dd
Removed a few syntax bugs in Archlinux configuration
6 lat temu
Christian Wolf
d84b2868b7
Added basic changes to make it compatible with Archlinux
6 lat temu
mooomooo
eebc6e13f8
Made directory variables for /etc/systemd/system , /etc/cron.d , /usr/local/bin
6 lat temu
Slavi Pantaleev
0f39cb9987
Fix incorrect server_name for Jitsi
Fixes #417 (Github Issue)
6 lat temu
Slavi Pantaleev
cdd9ee1962
Add Jitsi support
6 lat temu
Dan Arnfield
c7440b723a
Update certbot (1.2.0 -> 1.3.0)
6 lat temu
Dan Arnfield
4065d74a5f
Update nginx (1.17.8 -> 1.17.9)
6 lat temu
Dan Arnfield
bb08022623
Update certbot (1.0.0 -> 1.2.0)
6 lat temu
Dan Arnfield
74235df820
Update nginx (1.17.7 -> 1.17.8)
6 lat temu
Daniel Hoffend
b280b05c25
matrix-nginx-proxy: adding additional configuration blocks
6 lat temu
Slavi Pantaleev
f18037ae42
Disable TLSv1.1 by default
6 lat temu
Dan Arnfield
86eff45e8b
uri.follow_redirects is now a string field
6 lat temu
Slavi Pantaleev
a84a24d9f5
Upgrade nginx (1.17.6 -> 1.17.7)
6 lat temu
Slavi Pantaleev
89dbe5cfc5
Add the ability to control the certbot HTTP bind port
Fixes #330 (Github Issue).
6 lat temu
Slavi Pantaleev
a78002f12b
Upgrade certbot (0.40.1 -> 1.0.0)
6 lat temu
Yuri Moens
0866f98957
Render vhost directives in https server block
6 lat temu
Slavi Pantaleev
ca3b158d94
Add support to matrix-nginx-proxy to work in HTTP-only mode
6 lat temu