4 Jun 2025 |
Arian | Do we have an OIDC provider? | 09:39:36 |
hexa | we have used github previously for the alertmanager | 13:00:02 |
Arian | GitHub doesn't implement OIDC. But if they have specific GitHub support it should work | 20:20:46 |
Arian | * GitHub doesn't implement OIDC. But if they have specific GitHub auth support it should work | 20:21:01 |
hexa | we are using dex for alerts.nixos.org | 20:23:32 |
hexa | * we are using dex for alerts.nixos.org to bridge that gap | 20:24:45 |
hexa | with more services that we deploy we should probably run our own idm | 20:45:44 |
5 Jun 2025 |
Mic92 | hexa (signing key rotation when): I still see dangling terraform resources for netlify domains in terraform. Should I remove those? | 11:23:40 |
Mic92 | I mean removing the state otherwise, terraform apply will remove all our records | 11:24:10 |
hexa | yeah, feel free | 12:37:15 |
Mic92 | hexa (signing key rotation when): finished my second fastly pr, in case you want to have a look | 13:00:07 |
Mic92 | https://github.com/NixOS/infra/pull/718 | 13:00:10 |
6 Jun 2025 |
| arcayr changed their profile picture. | 01:11:38 |
7 Jun 2025 |
infinisil | hexa (signing key rotation when): Recently the foundation board got a request to "unban" somebody's IP, they also linked to a post of them about it: https://sharkey.ghodawalaaman.xyz/notes/a8bh6usmk8
Is this something the infra team can look into? I can PM you the IP address
| 21:59:57 |
Sandro | pinging 52.74.232.59 also results in 100% packet loss for me | 22:09:25 |
hexa | In reply to @infinisil:matrix.org
hexa (signing key rotation when): Recently the foundation board got a request to "unban" somebody's IP, they also linked to a post of them about it: https://sharkey.ghodawalaaman.xyz/notes/a8bh6usmk8
Is this something the infra team can look into? I can PM you the IP address
Thats hosted by netlify and I would be surprised if anyone was "banned" | 22:17:56 |
hexa | In reply to @sandro:supersandro.de pinging 52.74.232.59 also results in 100% packet loss for me "Security" | 22:18:18 |
infinisil | Oh and yeah I also get full packet loss for nixos.org pings | 22:18:24 |
infinisil | I guess there's no reason for it to respond to pings | 22:18:32 |
edef | it might just not answer pings | 22:18:38 |
hexa | Thats not a problem | 22:18:40 |
edef | yeah | 22:18:41 |
infinisil | Alright I'll answer with that. Can also tell them to join this room if there's other problems | 22:19:01 |
infinisil | (although if they're actually blocked in some way they might not be able to :P) | 22:19:17 |
edef | a lot of networking equipment also doesn't answer pings or punts them to low priority | 22:19:23 |