aa1be0d4cd
fix: sender should be TLS_EMAIL (dns@nextwks.eu) not SMTP_USER
2026-07-11 22:07:26 +01:00
0d7defff4e
fix network creation: use -f for rm, show errors on create
2026-07-11 10:14:10 +01:00
14e60151fd
fixed IPs: nextwks-net on 172.18.0.0/24 with static addresses
2026-07-11 10:08:52 +01:00
7303c94a3c
fix bcrypt hash corruption: avoid bash -c re-expanding $ signs, auto-regenerate hash on update
2026-07-11 09:16:14 +01:00
f0c6aa1a2e
always regenerate configs on --update too (picks up template changes like storage.encryption_key)
2026-07-11 09:13:22 +01:00
080341f8a8
stop containers before copying binary to avoid Text file busy
2026-07-11 09:11:27 +01:00
034e6688de
firewall: apply redirects in all modes, persist across reboots
2026-07-11 09:09:48 +01:00
9ba62e4c8b
add storage.encryption_key to Authelia config, fix certs directory
2026-07-11 09:08:31 +01:00
0dbb576d1b
admin password: 24 chars mixed case + numbers via base64
2026-07-11 09:00:56 +01:00
336574571f
admin password: 24 hex chars instead of 12
2026-07-11 09:00:08 +01:00
fc93201313
install mode: detect existing install and deflect to --update or --destroy
2026-07-11 08:57:36 +01:00
3df375e047
refuse to run under sudo, update README/AGENT.md to match
2026-07-11 08:47:54 +01:00
b060e23a1d
add tools/firewall-routing.sh, fix .env Permission denied, apply firewall from cloned repo
2026-07-11 08:42:19 +01:00
e92382266f
rootless podman: ports 8080/8443, iptables redirect 80→8080 443→8443, no sudo for podman
2026-07-11 00:38:24 +01:00
3ca19403fa
nextwks.sh: replace full root escalation with per-command sudo, files owned by user
2026-07-11 00:34:21 +01:00
d41d1443a8
fix launcher health check: install curl in alpine, update script + applySettings path
2026-07-11 00:28:44 +01:00
89ea56e255
nextwks.sh: chown target dirs to non-root user after deploy
2026-07-11 00:23:52 +01:00
1b24799026
nextwks.sh: add IMAP prompts, stop old containers in all modes, port conflict check, health check diagnostics
2026-07-11 00:21:21 +01:00
2999f5da47
nextwks.sh: fix SIGPIPE crash on password gen and Go version fetch under pipefail
2026-07-11 00:17:07 +01:00
d23b6c2909
nextwks.sh: auto-escalate to root via sudo instead of erroring out
2026-07-11 00:14:55 +01:00
6e95c088e4
nextwks.sh: add root check with clear error message
2026-07-11 00:13:01 +01:00
81e5505f2a
Unified install/update/destroy script with ephemeral build dir
...
- Replace deploy.sh and install.sh with tools/nextwks.sh
- Build in /tmp/nextwks-build (fresh clone every time), no more /opt/NextWks
- Script saves itself to ~/nextwks.sh on --install for easy future access
- Add AGENT.md with workflow rules for the new approach
- Secrets persisted in /opt/backup/.env (JWT, SESSION, password hash)
- Update README and CHANGELOG
2026-07-11 00:02:55 +01:00