update server steps and readme.md
This commit is contained in:
@@ -8,7 +8,7 @@
|
||||
### Setup Steps
|
||||
1. Flash NixOS onto the server hardware
|
||||
2. Create a sudo password for root
|
||||
3. Run nixos anwhere command to install repo config: ```nix run github:nix-community/nixos-anywhere --extra-experimental-features "nix-command flakes" -- --generate-hardware-config nixos-generate-config ./hardware-configuration.nix --flake '.#<nodeName>' root@<systemIP>```
|
||||
3. Run the bash script ```homelab-config/nixos/script.sh```
|
||||
|
||||
### Random
|
||||
- Any time the quasiSecret Reop is updated, run ```nix flake lock --update-input quasiSecrets``` to ensure you're using the most recent pushed commit
|
||||
|
||||
+4
-5
@@ -1,10 +1,9 @@
|
||||
# Server Steps
|
||||
|
||||
- [ ] Set up declarative disk partitioning (ephemeral)
|
||||
- [x] Set up declarative disk partitioning (ephemeral)
|
||||
- [x] Implement SOPS for secret management
|
||||
- [x] Lock down machine IP addresses, passed in through flake as param.
|
||||
- [ ] Create a k8s cluster on server
|
||||
- [ ] Set up port forwarding to server from router
|
||||
- [x] Set up port forwarding to server from router
|
||||
- [ ] Set up NGINX reverse proxy (or ingress controller for k8s?)
|
||||
- [ ] Buy Domain Name
|
||||
- [ ] Use "LetsEncrypt" for Server Cert (Enable HTTPS)
|
||||
- [x] Buy Domain Name
|
||||
- [x] Use "LetsEncrypt" for Server Cert (Enable HTTPS)
|
||||
|
||||
Reference in New Issue
Block a user