Sovran Systems and GitHub
40fd142523
Merge pull request #318 from naturallaw777/copilot/fix-template-response-error
...
Fix TemplateResponse calls for Starlette 1.1.0+ compatibility
2026-06-30 17:38:27 +00:00
copilot-swe-agent[bot] and GitHub
84490e8d94
Fix TemplateResponse calls to use Starlette 1.1.0+ keyword-argument style
2026-06-30 17:37:21 +00:00
copilot-swe-agent[bot] and GitHub
f85633c9ba
Initial plan
2026-06-30 17:35:17 +00:00
naturallaw777
4aaf10f3a0
Update nixpkgs
2026-06-30 12:14:53 -05:00
naturallaw777
83c9acb511
updated nixpkgs and btc clients
2026-06-25 16:26:43 -05:00
Sovran Systems and GitHub
32f9c1a692
Merge pull request #317 from naturallaw777/copilot/update-hub-router-port-forwarding-ui
...
Clarify Hub router forwarding copy and surface internal IP in Element Call flows
2026-06-24 17:26:11 -05:00
Sovran Systems and GitHub
3b784cfd47
Merge pull request #316 from naturallaw777/copilot/fix-legacy-ssh-key-handling
...
Repair legacy factory SSH keys when Hub passphrase changes
2026-06-24 17:25:57 -05:00
copilot-swe-agent[bot] and GitHub
346798b6c2
fix: simplify internal IP copy handling
2026-06-24 22:19:14 +00:00
copilot-swe-agent[bot] and GitHub
a440d199f1
fix: clarify router forwarding IP guidance
2026-06-24 22:17:13 +00:00
copilot-swe-agent[bot] and GitHub
8c062dfc26
chore: use flock for ssh bootstrap repair
2026-06-24 22:16:44 +00:00
copilot-swe-agent[bot] and GitHub
5875c971cf
chore: serialize ssh bootstrap key repairs
2026-06-24 22:16:05 +00:00
copilot-swe-agent[bot] and GitHub
9dd4568449
chore: harden ssh bootstrap script
2026-06-24 22:15:24 +00:00
copilot-swe-agent[bot] and GitHub
ece53d313d
chore: log legacy ssh key regeneration
2026-06-24 22:14:42 +00:00
copilot-swe-agent[bot] and GitHub
42a373e50e
Initial plan
2026-06-24 22:14:35 +00:00
copilot-swe-agent[bot] and GitHub
d1bca416cf
fix: repair legacy factory ssh key passphrases
2026-06-24 22:14:06 +00:00
copilot-swe-agent[bot] and GitHub
4f7b752b3a
Initial plan
2026-06-24 22:12:39 +00:00
Sovran Systems and GitHub
d6d3f219b2
Merge pull request #315 from naturallaw777/copilot/update-sovran-systemsos-port-forwarding-ui
...
Align port-forwarding UX to local-readiness semantics across service detail, Step 4 checklist, and onboarding
2026-06-24 16:55:07 -05:00
copilot-swe-agent[bot] and GitHub
8452ea8fcf
Align router setup wording and local port statuses
2026-06-24 19:06:12 +00:00
copilot-swe-agent[bot] and GitHub
053c417c90
Initial plan
2026-06-24 19:03:36 +00:00
naturallaw777
bf9c6dd627
added onlyoffice
2026-06-24 13:19:41 -05:00
Sovran Systems and GitHub
163a196203
Merge pull request #314 from naturallaw777/copilot/fix-livekit-service-permissions
...
fix: deliver LiveKit config via LoadCredential to resolve DynamicUser permission denied
2026-06-23 21:04:51 -05:00
copilot-swe-agent[bot] and GitHub
8fd076191d
fix: deliver livekit config via LoadCredential to fix DynamicUser permission denied
2026-06-24 01:21:05 +00:00
copilot-swe-agent[bot] and GitHub
9172339fbf
Initial plan
2026-06-24 01:19:37 +00:00
Sovran Systems and GitHub
b21934f61e
Merge pull request #313 from naturallaw777/fix/livekit-embedded-turn
...
fix(element-calling): enable LiveKit embedded TURN with runtime matri…
2026-06-23 20:04:38 -05:00
Sovran Systems
bbf3ce436c
fix(element-calling): enable LiveKit embedded TURN with runtime matrix domain + cert
...
LiveKit was exiting cleanly with "TURN domain required" because turn.enabled
was set in the build-time config but turn.domain was never provided to the
process (the old livekit-runtime-config.service wrote a YAML that nothing
read). A clean exit (status 0) meant Restart=on-failure never restarted it,
so the Hub reported the service as Inactive.
This replaces the dead runtime-config oneshot with livekit-turn-setup.service,
which at runtime:
- reads the matrix domain from /var/lib/domains/matrix (no hardcoding)
- copies Caddy's already-issued matrix cert/key into /var/lib/livekit
- generates a complete LiveKit config (incl. turn.domain + TLS cert/key)
at /run/livekit/livekit.yaml
The livekit.service ExecStart is overridden to load that runtime config
(mirroring the existing Caddy ExecStart override pattern in
modules/core/caddy.nix), since turn.domain is only known at runtime. The cert
is delivered via LoadCredential so it is readable under DynamicUser=true
without weakening the sandbox.
Also aligns the RTC media port range (rtc.port_range_start/end = 30000-40000)
so it matches the forwarded ports, and drops the now-redundant manual
30000-40000 firewall ranges (covered by services.livekit settings/openFirewall).
2026-06-23 20:03:26 -05:00
Sovran Systems and GitHub
53fe416ac9
Merge pull request #312 from naturallaw777/copilot/rewrite-njalla-domain-setup
...
Rewrite Njal.la domain-setup instructions: remove IP box, clarify Name-field host-only rule, support subdomain-or-separate-domain
2026-06-22 19:46:10 -05:00
copilot-swe-agent[bot] and GitHub
e2db7f95d8
Rewrite Njal.la domain-setup instructions (no IP box, Name-field clarification, subdomain-or-domain)
2026-06-23 00:44:39 +00:00
copilot-swe-agent[bot] and GitHub
e2ddf78c23
Initial plan
2026-06-23 00:40:49 +00:00
naturallaw777
1a8b18f5bc
removed uneeded livekit-cli
2026-06-18 16:51:15 -05:00
naturallaw777
4329dde0a1
nixpkgs update
2026-06-18 16:05:02 -05:00
Sovran Systems
d49ff5002a
Fix Element Calling 30000-40000 port note: single rule with both TCP and UDP
...
The previous change incorrectly split the 30000-40000 TURN relay range into two
rows and told users to create two separate forwarding rules. On most routers
this range is a single port-forwarding rule with a protocol selector set to
"Both" (or TCP/UDP). Revert to a single row (protocol "TCP & UDP"), update the
note to say it's one rule with both protocols enabled, and restore the totals to
3 required + 5 optional = 8.
2026-06-13 11:59:18 -05:00
Sovran Systems
33688f3015
Clarify Element Calling 30000-40000 range needs separate TCP and UDP forwards
...
The onboarding Step 4 port table listed the 30000-40000 TURN relay range as a
single "TCP/UDP" row, which is ambiguous on most routers where TCP and UDP
forwards are separate entries. Split it into two explicit rows (TCP and UDP),
add a clarifying note, and update the totals so users create both forwarding
rules.
2026-06-13 11:50:43 -05:00
Sovran Systems and GitHub
c2a834923a
Merge pull request #311 from naturallaw777/copilot/migrate-federation-to-well-known
...
Migrate Matrix federation from port 8448 to .well-known/matrix/server delegation on 443
2026-06-13 10:04:42 -05:00
copilot-swe-agent[bot] and GitHub
da03832c0e
feat: migrate Matrix federation from port 8448 to .well-known/matrix/server on 443
...
- modules/core/caddy.nix: replace $MATRIX:8448 site with .well-known/matrix/server handler inside $MATRIX vhost
- modules/element-calling.nix: add .well-known/matrix/server respond directive, remove $MATRIX:8448 block
- modules/synapse.nix: remove 8448 TCP/UDP firewall openings
- app/sovran_systemsos_web/server.py: remove _PORTS_MATRIX_FEDERATION constant, set matrix-synapse.service to [], simplify api_service_detail to only check LiveKit extra ports
- app/sovran_systemsos_web/static/onboarding.js: remove 8448 row from Step 4, update totals to 3/8 (3 required + 5 optional)
2026-06-13 14:52:26 +00:00
copilot-swe-agent[bot] and GitHub
5194549060
Initial plan
2026-06-13 14:49:39 +00:00
Sovran Systems and GitHub
f0b9726a75
Merge pull request #310 from naturallaw777/copilot/fix-iso-installer-imports
...
iso: remove orphaned branding.nix import from common.nix
2026-06-10 13:42:55 -05:00
copilot-swe-agent[bot] and GitHub
2c5917e8d4
Remove orphaned ./branding.nix import from iso/common.nix
2026-06-10 18:41:49 +00:00
copilot-swe-agent[bot] and GitHub
57b6d70894
Initial plan
2026-06-10 18:40:41 +00:00
naturallaw777
b93e8202d1
nixpkgs update
2026-06-09 11:03:40 -05:00
Sovran Systems and GitHub
e18c4714e1
Add files via upload
2026-06-05 15:15:19 -05:00
Sovran Systems and GitHub
2e4bd9fa0f
Add files via upload
2026-06-05 13:27:04 -05:00
Sovran Systems and GitHub
df645aaa56
Merge pull request #309 from naturallaw777/copilot/add-desktop-screenshot
...
Add desktop screenshot to README
2026-06-05 13:20:41 -05:00
copilot-swe-agent[bot] and GitHub
12a81708d4
Improve screenshot alt text for accessibility
2026-06-05 18:14:13 +00:00
copilot-swe-agent[bot] and GitHub
bc01e1e24e
Add desktop screenshot placeholder and README embed
2026-06-05 18:13:46 +00:00
copilot-swe-agent[bot] and GitHub
dae409e106
Plan README changes with placeholder screenshot
2026-06-05 18:13:16 +00:00
copilot-swe-agent[bot] and GitHub
7a3a390275
Initial plan
2026-06-05 17:56:09 +00:00
naturallaw777
6c48a9e239
sync and removed element-desktop and bitwarden desktop
2026-06-05 10:29:20 -05:00
naturallaw777
2903a61944
updated nix packages
2026-06-05 10:27:51 -05:00
naturallaw777
d9811d2375
updated stable branch
2026-06-05 10:04:13 -05:00
naturallaw777
7f185b0355
moved to new bitcoin-knots with bip110
2026-06-04 16:06:58 -05:00