No description
Стек: web + prosody + jicofo + jvb + coturn. Перенесено с jul11 (2026-07-12):
- config (web/prosody/jicofo/jvb) → named volumes heather_jitsi-{web,prosody,jicofo,jvb,transcripts}
- prosody user mikl.dat сохранён (internal auth)
- образ PIN: stable-11031 (как на jul11, НЕ :latest)
- пароли (jicofo/jvb/jigasi/jibri/turn) НОВЫЕ, в pass iscg.dev/jitsi/
- env-файл /var/lib/jitsi-secrets/jitsi.env (root:docker 0640)
- coturn в host network (real client IPs), realm=turn.iscg.dev
- JVB 10000/udp публично (YC SG уже ANY ANY open)
- Caddy: WebSocket routes /xmpp-websocket, /colibri-ws (hop-by-hop upgrade)
- DISABLE_HTTPS=1 (Caddy терминирует TLS)
|
||
|---|---|---|
| docs | ||
| home | ||
| hosts | ||
| secrets | ||
| .gitignore | ||
| AGENTS.md | ||
| flake.lock | ||
| flake.nix | ||
| garden.md | ||
| README.md | ||
nix-config
Nix configurations for iscg infra hosts.
hosts
- poppy - MacBook Air M1 (nix-darwin)
- muscari - NixOS server with k3s
- rosemary - backup VM (planned)
See docs/ for detailed documentation.
quick rebuild
# poppy (macOS)
darwin-rebuild switch --flake .#poppy
# muscari (NixOS)
sudo nixos-rebuild switch --flake .#muscari
documentation
- docs/structure.md - how the config is organized
- docs/poppy.md - MacBook specific
- docs/muscari.md - server + k3s
- docs/shell.md - zsh, prompt, aliases
- docs/terminal.md - kitty + themes
- docs/cheatsheet.md - quick commands
See also garden.md for host naming scheme. test test macchiato test macchiato