<feed xmlns='http://www.w3.org/2005/Atom'>
<title>smalltech/services/frontend, branch main</title>
<subtitle>The Small Tech Kit ("STK"), a collection of nix and NixOS configuration, and associated documentation, ISL's public resource for small organizations that want to host their own infrastructure.</subtitle>
<id>http://code.internetsafetylabs.org/smalltech/atom?h=main</id>
<link rel='self' href='http://code.internetsafetylabs.org/smalltech/atom?h=main'/>
<link rel='alternate' type='text/html' href='http://code.internetsafetylabs.org/smalltech/'/>
<updated>2026-01-30T06:00:16+00:00</updated>
<entry>
<title>remove the acme preliminary-selfsigned option</title>
<updated>2026-01-30T06:00:16+00:00</updated>
<author>
<name>Irene Knapp</name>
<email>ireneista@internetsafetylabs.org</email>
</author>
<published>2026-01-30T05:59:05+00:00</published>
<link rel='alternate' type='text/html' href='http://code.internetsafetylabs.org/smalltech/commit/?id=c1cf0f0aacfdd48a5c757ae010082a73e6a3a8bd'/>
<id>urn:sha1:c1cf0f0aacfdd48a5c757ae010082a73e6a3a8bd</id>
<content type='text'>
in nixos 25.11 it's now the only supported behavior, so we don't need the option

Force-Push: config
Change-Id: Id6a82e7b6631569e8d75bdf35a5a9391575326cd
</content>
</entry>
<entry>
<title>haproxy needs to listen on IPv6</title>
<updated>2025-10-21T03:32:14+00:00</updated>
<author>
<name>Irene Knapp</name>
<email>ireneista@internetsafetylabs.org</email>
</author>
<published>2025-10-21T03:30:57+00:00</published>
<link rel='alternate' type='text/html' href='http://code.internetsafetylabs.org/smalltech/commit/?id=cedd0fee03e9ea896a7420dc79dcd51701320551'/>
<id>urn:sha1:cedd0fee03e9ea896a7420dc79dcd51701320551</id>
<content type='text'>
this came up during the server migration - the ACME cert failed because
it was only listening on IPv4, and the new machine also does IPv6

Force-Push: it's been a long ops day and I just want this fully squared away, sorry
Change-Id: Ic0a721c78059427dd38b99ff41d3e1c0566ac1cb
</content>
</entry>
<entry>
<title>try to spin up haproxy, nginx, and an ACME client</title>
<updated>2025-07-31T22:30:51+00:00</updated>
<author>
<name>Irene Knapp</name>
<email>ireneista@internetsafetylabs.org</email>
</author>
<published>2025-07-31T22:25:21+00:00</published>
<link rel='alternate' type='text/html' href='http://code.internetsafetylabs.org/smalltech/commit/?id=58dd4440eaf6be9d260809b9dcb361d1f46f2abb'/>
<id>urn:sha1:58dd4440eaf6be9d260809b9dcb361d1f46f2abb</id>
<content type='text'>
no login/ACL stuff yet

Change-Id: If6eeaed671b2711dc809e94ea00bc6387dcae2f4
</content>
</entry>
</feed>
