|
0cb5b0992b
|
sudoers.d/nordvpnd: instead of restarting DNS, allow reloading it. Also IPv6 enabling
|
2024-05-10 18:27:06 +03:00 |
|
|
c81c1dd7d0
|
unbound: restore dot-dns0-quad9.conf with IPv4 for DNS0 & IPv6 for Quad9 ECS
This partially reverts commit 422ab0de4e
|
2024-05-09 20:02:23 +03:00 |
|
|
93e2ab81dd
|
chromium policy: fix doh-cloudflare-secure.json name inconsistency
|
2024-05-09 17:11:17 +03:00 |
|
|
764073e241
|
etc/hosts/blocklist: use only ::1, systemd-resolved will fix it automatically to 127.0.0.1 too
|
2024-05-09 12:05:37 +03:00 |
|
|
dff016aa45
|
hosts/dns: IPv4 represented as IPv6 is technically valid, but this feels so wrong...
|
2024-05-09 10:21:23 +03:00 |
|
|
f5223b871f
|
etc/hosts/dns: attempt to block private ECS providers on IPv6
|
2024-05-09 09:48:00 +03:00 |
|
|
9f2b75368d
|
etc/hosts/dns: add dns9.quad9.net alias (note the first 9)
|
2024-05-09 09:41:03 +03:00 |
|
|
1e807e888c
|
etc: add NetworkManager-resolv.conf-restore.bash
|
2024-05-09 09:38:25 +03:00 |
|
|
6567488801
|
NetworkManager: also add explicit no-systemd-resolved.conf
|
2024-05-09 09:31:39 +03:00 |
|
|
0566ebbbc2
|
NetworkManager: add comments on {dns-none,paws-off-my-resolv,systemd-resolved}.conf
|
2024-05-09 09:29:53 +03:00 |
|
|
8f11f1a512
|
NetworkManager: fix dns-none.conf (no longer symlink)
|
2024-05-09 09:26:29 +03:00 |
|
|
c751a61146
|
NetworkManager: fix no-search-domains.conf & systemd-resolved.conf
Although in systemd-resolved.conf everything is already implied
|
2024-05-09 09:25:20 +03:00 |
|
|
71582a9b95
|
NetworkManager/conf.d: add vim modelines
|
2024-05-09 09:21:21 +03:00 |
|
|
6900a44b4a
|
NetworkManager/paws-off-my-resolv.conf: actually use rc-manager instead of dns=none (commented)
|
2024-05-09 09:19:22 +03:00 |
|
|
d7703b6b63
|
dnf.conf: comment fastestmirror and explain it in a comment
|
2024-05-08 19:38:00 +03:00 |
|
|
3b5434eb1d
|
etc: add traditional-resolv.conf-generate.bash which takes three arguments and has no trust-ad
|
2024-05-07 19:29:05 +03:00 |
|
|
8fe31b9e64
|
fix edge paths
|
2024-05-07 11:29:37 +03:00 |
|
|
e7b26cd343
|
chromium/policies/managed: add non-functional Edge policies
|
2024-05-07 11:23:30 +03:00 |
|
|
e4d691f2b1
|
unbound: prefer IPv4 with private ECS using DoT servers
|
2024-05-07 08:26:20 +03:00 |
|
|
afb0801430
|
unbound: add doh-local.sample
Works otherwise, but self-signed cert didn't satisfy Chromium I wanted to point at it
|
2024-05-06 18:55:00 +03:00 |
|
|
10bec4c782
|
resolv.tsv: use more appropiate link for AdGuard prvate ECS
|
2024-05-06 09:05:00 +03:00 |
|
|
f5b76c1341
|
unbound: add .sample to threads.conf, comment to question it's necessity and usage
|
2024-05-05 11:08:52 +03:00 |
|
|
b18df5462c
|
unbound: add/rename/fix prefer-ip{4,6}.conf
|
2024-05-04 09:05:16 +03:00 |
|
|
0063e2409b
|
etc/dracut.conf.d: add sedric configs
|
2024-05-03 21:19:32 +03:00 |
|
|
175256d8e4
|
etc/dnf/protected.d: add systemd-ukify.conf although not yet in use
|
2024-05-03 20:48:14 +03:00 |
|
|
252f77ab0c
|
systemd-resolved & unbound: comment ECS servers again.
This partially reverts 85c7fedcb2 and will be explained at https://aminda.eu/n/dns soon
|
2024-05-03 18:07:51 +03:00 |
|
|
aa865106db
|
unbound: correct ecs.conf.sample
|
2024-05-03 17:35:15 +03:00 |
|
|
962817874e
|
etc/dracut.conf.d: add UKI generation & Lumina cmdline
|
2024-05-03 16:24:03 +03:00 |
|
|
85c7fedcb2
|
systemd-resolved, unbound: only ECS IPv6
|
2024-05-03 06:23:37 +03:00 |
|
|
6cae19ba4f
|
unbound: more ecs.conf.sample experimentation
|
2024-05-02 21:32:39 +03:00 |
|
|
32c99a2d43
|
etc/resolv.conf: fix comment explaining rotate
|
2024-05-01 13:08:06 +03:00 |
|
|
1aca183f92
|
aminda-nocron-reboot.service: fix conflict with systemd-zram-setup@zram0.service
|
2024-05-01 10:38:54 +03:00 |
|
|
6e0f72c7b1
|
aminda-nocron-reboot.service: split duperemove and sysctl -p --system to aminda-duperemove.service & sysctl-p--system.service
|
2024-05-01 10:22:57 +03:00 |
|
|
aa6aad28ba
|
resolv: follow the same order as man resolv.conf
|
2024-05-01 10:13:30 +03:00 |
|
|
ba298f94a5
|
resolv: increase timeout to 2 (match unbound/RFC 8767), decrease attempts to 2, rotate
|
2024-05-01 09:54:07 +03:00 |
|
|
447385fdb8
|
chrony: rename ntppool.sources -> ntp-pool.sources
|
2024-04-30 21:02:28 +03:00 |
|
|
78136f7437
|
systemd/timesyncd.conf.d: don't only use ntp pool as a fallback
|
2024-04-30 21:01:46 +03:00 |
|
|
f6e9aa58da
|
unbound: add replace-systemd-resolved.conf.sample for listening on systemd-resolved ports
|
2024-04-30 20:30:15 +03:00 |
|
|
4882cb66be
|
systemd-resolv.conf-generate.bash: who is going to stop me from specifying the same resolver thrice?
|
2024-04-30 20:21:12 +03:00 |
|
|
b9daad6a2f
|
resolv.conf: explain 127.0.0.54
|
2024-04-30 20:16:46 +03:00 |
|
|
d6e4fd1be7
|
etc: create systemd-resolv.conf-generate.bash & systemd-resolv.conf-restore.bash, mention them in resolv.conf
|
2024-04-30 20:05:53 +03:00 |
|
|
fa5462212d
|
aminda-nocron-reboot.service: add zram-generator just in case
|
2024-04-30 19:10:28 +03:00 |
|
|
72ea5ca51e
|
unbound: fix typo in (1)5 minutes cache, apparently a commit once removed the 1
|
2024-04-30 17:34:01 +03:00 |
|
|
5d4e0e10dd
|
unbound/min-ttl-hour.conf: also print the stats hourly, not every 15 minutes
|
2024-04-30 17:26:14 +03:00 |
|
|
437b69bd6e
|
unbound: apparently rename min-ttl.conf.sample to min-ttl-five-min.conf
|
2024-04-30 17:17:46 +03:00 |
|
|
9671adf293
|
unbound: break statistics interval from logging.conf to min-ttl*
|
2024-04-30 17:11:32 +03:00 |
|
|
819d6a782e
|
unbound: add mixed-case-queries.conf
|
2024-04-30 17:11:09 +03:00 |
|
|
08de11b594
|
unbound/min-ttl-hour.conf: fix comment
|
2024-04-30 06:52:46 +03:00 |
|
|
87bedac239
|
unbound: cut cache.conf.SAMPLE into more descriptive files
|
2024-04-30 06:45:53 +03:00 |
|
|
531cdd82c5
|
unbound/cache.conf.SAMPLE: fix oversight, logging.conf: reducei nterval to quaterly
|
2024-04-29 20:48:51 +03:00 |
|