Commit Graph
100 Commits
Author SHA1 Message Date
alexz ae86df8732 . 2026-01-17 18:01:02 +00:00
alexz a2f0b40fa8 . 2026-01-17 17:58:31 +00:00
alexz bf60412640 Use test_connection function for keepalive check
Replaces inline ping with existing test_connection function
2026-01-17 17:57:46 +00:00
alexz 5f057c50ed Add TARGET_SUBNET to openconnect-vpn script
Derive TARGET_SUBNET from TARGET_IP (first 3 octets + .0/24)
for iptables FORWARD rules to allow full subnet routing.
2026-01-17 17:56:45 +00:00
alexz b2e38b3cb4 Derive TARGET_SUBNET dynamically from TARGET_IP
Extract first 3 octets from TARGET_IP and append .0/24
2026-01-17 17:53:34 +00:00
alexz 47e1790a8b Add TARGET_SUBNET for iptables rules with /24 CIDR
Keep TARGET_IP as single host, add hardcoded TARGET_SUBNET=10.3.1.0/24
for iptables rules and routes to allow full subnet routing.
2026-01-17 17:52:44 +00:00
alexz b67b8f18a4 Fix TARGET_IP to include /24 CIDR for iptables rules
The iptables rules were using 10.3.1.0 (single IP) instead of
10.3.1.0/24 (subnet), causing routing from other machines to fail.
2026-01-17 17:51:49 +00:00
alexz c6749fe856 refactor(cistech-tunnel): add IBMI_HOST and test_connection function
- Add hardcoded IBMI_HOST=10.3.1.201 for testing
- Create test_connection() function for reuse
- Use IBMI_HOST for connection tests and keepalive pings
- TARGET_IP still used for routing rules
2026-01-17 16:53:40 +00:00
alexz 4c7ff9d6a0 fix(cistech-tunnel): reset DNS and clean tun interface before connecting 2026-01-17 16:49:32 +00:00
alexz e93edb73af fix(cistech-tunnel): remove sudo from openconnect command - already running as root 2026-01-17 16:45:01 +00:00
alexz 9a6e2f67e6 feat(cistech-tunnel): add auto-connect, menu flag, watchdog, fix host routing
- Auto-connect on startup (skip with -m/--menu flag)
- Add VPN watchdog for auto-reconnect
- Add live TOTP display
- Fix host-routing.sh pipefail issue with grep
- Better forwarding rules similar to rego-tunnel
2026-01-17 16:40:55 +00:00
alexz 84b1eb3f5d . 2026-01-17 16:33:22 +00:00
alexz 1bd5a21a94 fix(cistech-tunnel): add sudo and system dbus for openconnect-sso 2026-01-17 16:21:26 +00:00
alexz 5c3147536c refactor(cistech-tunnel): move runtime scripts to shared folder
- Add entrypoint.sh and startup-vnc.sh to shared folder
- Override command in docker-compose.json to use /shared/entrypoint.sh
- Scripts can now be modified without rebuilding image
2026-01-17 16:10:22 +00:00
alexz 8656441976 fix(cistech-tunnel): add software rendering support for Qt WebEngine
- Add QT_QUICK_BACKEND=software, LIBGL_ALWAYS_SOFTWARE=1
- Add mesa-utils, libgl1-mesa-dri for llvmpipe software renderer
- Add missing xcb libraries (libxcb-render0, libxcb-shm0, etc.)
- Use --use-gl=swiftshader in chromium flags
2026-01-17 16:08:51 +00:00
alexz 0d52d54eed fix(cistech-tunnel): add Qt no-sandbox flags to xstartup 2026-01-17 15:59:31 +00:00
alexz 1b59e304b0 fix(cistech-tunnel): add --no-sandbox for chromium running as root 2026-01-17 15:57:53 +00:00
alexz fb915487dc fix(cistech-tunnel): add all xcb libraries for Qt6 2026-01-17 15:53:24 +00:00
alexz a3b02b694e fix(cistech-tunnel): add libxcb-cursor0 for Qt xcb plugin 2026-01-17 15:42:58 +00:00
alexz 9b2a42bdc9 fix(cistech-tunnel): add libegl1 libgl1 libopengl0 for PyQt6 WebEngine 2026-01-17 15:36:00 +00:00
alexz 98f3cc95eb . 2026-01-17 15:27:29 +00:00
alexz 12f626b088 chore: remove .github workflows 2026-01-17 15:14:03 +00:00
alexz b9b3f89910 .
Test / test (push) Has been cancelled
2026-01-17 14:35:13 +00:00
alexz 24594915a9 .
Test / test (push) Has been cancelled
2026-01-17 14:29:47 +00:00
alexz 6f6538fa73 .
Test / test (push) Has been cancelled
2026-01-17 14:25:26 +00:00
alexz 239179931c .
Test / test (push) Has been cancelled
2026-01-17 14:24:28 +00:00
alexz f1793baa57 .
Test / test (push) Has been cancelled
2026-01-17 14:23:50 +00:00
alexz 418390fe8d .
Test / test (push) Has been cancelled
2026-01-17 11:43:28 +00:00
alexzandClaude Opus 4.5 4fd8688685 revert(cistech-tunnel): restore to original working state at a7691b1
Test / test (push) Has been cancelled
- Removed shared/ folder (host routing scripts)
- Restored original config.json, docker-compose.json
- Restored original Dockerfile and entrypoint.sh

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 11:30:34 +00:00
alexzandClaude Opus 4.5 f410510a7f revert(cistech-tunnel): restore to working state at 5d54ed6
Test / test (push) Has been cancelled
- Removed build/ folder
- Restored source/ folder with original Dockerfile and entrypoint.sh
- Reverted config files to original working state
- Cleaned up shared/ to only contain host routing scripts

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 11:28:10 +00:00
alexz 274125e862 .
Test / test (push) Has been cancelled
2026-01-17 11:21:35 +00:00
alexzandClaude Opus 4.5 837dffddd5 refactor(cistech-tunnel): remove all systemd dependencies
Test / test (push) Has been cancelled
- Dockerfile: Removed systemd, systemd-sysv, network-manager packages
- Dockerfile: Removed systemd service cleanup, vnc.service, cgroup volume
- docker-compose.json/yml: Removed /sys/fs/cgroup volume mount
- Bumped tipi_version to 4

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 11:16:32 +00:00
alexzandClaude Opus 4.5 1ef9d21ba4 fix(cistech-tunnel): remove systemd dependency, use port 6092
Test / test (push) Has been cancelled
- entrypoint.sh: Start VNC directly instead of systemd /sbin/init
- Changed NOVNC_PORT from 6080 to 6092 everywhere
- Dockerfile: Updated EXPOSE and default NOVNC_PORT
- Bumped tipi_version to 3

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 11:13:54 +00:00
alexzandClaude Opus 4.5 9307cab1bb fix(cistech-tunnel): correct routing config and sync compose files
Test / test (push) Has been cancelled
- host-routing.sh: Updated to use cistech values (172.30.0.10, br-vpn-static)
- config.json: Added TARGET_IP form field, bumped tipi_version to 2
- docker-compose.json: Added TARGET_IP environment variable
- docker-compose.yml: Synced with docker-compose.json (correct image, port 6080, all env vars)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 11:10:59 +00:00
alexz e462edd99b .
Test / test (push) Has been cancelled
2026-01-17 10:53:29 +00:00
alexzandClaude Opus 4.5 48d0407c79 Add build.sh script for cistech-tunnel
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:37:50 +00:00
alexzandClaude Opus 4.5 3c427af6fe Restructure cistech-tunnel to match rego-tunnel pattern
Test / test (push) Has been cancelled
- build/: Dockerfile + entrypoint.sh (base image with VNC/noVNC)
- shared/: Runtime scripts mounted into container
  - xstartup: VNC startup, launches openconnect-vpn in xterm
  - openconnect-vpn: Main VPN script with menu, auto-connect, watchdog
- Removed source/ folder (replaced by build/)
- Updated docker-compose.json with proper volume mounts
- Changed port to 6080 (noVNC default)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:36:41 +00:00
alexzandClaude Opus 4.5 5d54ed6f80 cistech-tunnel: Remove redundant entrypoint mount
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:25:40 +00:00
alexzandClaude Opus 4.5 685488c7d4 cistech-tunnel: Mount entrypoint.sh from shared folder
Test / test (push) Has been cancelled
No more image rebuild needed for script changes.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:22:01 +00:00
alexzandClaude Opus 4.5 ec40aa2ec1 Fix cistech-tunnel: restore echo pipe in elif branch
Test / test (push) Has been cancelled
The elif branch was missing 'echo "" |' which caused openconnect-sso
to hang waiting for stdin input when OC_PASSWORD is not set.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:20:24 +00:00
alexzandClaude Opus 4.5 498926ae5d cistech-tunnel: Auto-fetch server cert, add VPN password field
Test / test (push) Has been cancelled
- entrypoint.sh: Auto-fetch pin-sha256 from VPN URL if not provided
- config.json: Remove OC_SERVERCERT (auto-fetched), add OC_PASSWORD
- docker-compose.json: Add OC_PASSWORD env var

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:12:26 +00:00
alexzandClaude Opus 4.5 046552d09a Update cistech-tunnel: proper image tag, clean Dockerfile, add TOTP field
Test / test (push) Has been cancelled
- docker-compose.json: Use git.alexzaw.dev/alexz/cistech-vpn:latest
- config.json: Add OC_TOTP_SECRET field, keep server cert as default
- Dockerfile: Remove hardcoded credentials (come from env at runtime)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 10:07:29 +00:00
alexzandClaude Opus 4.5 27c46542e8 Add host routing watcher for cistech-tunnel (same pattern as rego-tunnel)
Test / test (push) Has been cancelled
- Add shared/host-routing.sh with nft for NAT masquerade
- Add shared/install-host-services.sh to set up systemd watcher
- Add shared/uninstall-host-services.sh for cleanup
- Add /runtime volume mount for trigger file
- Update entrypoint.sh to trigger host routing when VPN connects

Run install-host-services.sh on host after app install.
Requires image rebuild for entrypoint changes.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 09:58:28 +00:00
alexz 0c952a2623 .
Test / test (push) Has been cancelled
2026-01-17 09:43:31 +00:00
alexzandClaude Opus 4.5 50cdd3ea1c Suppress noisy job control messages and ignore empty menu input
Test / test (push) Has been cancelled
- Add disown after vpnui & to suppress "killed" messages
- Ignore empty/whitespace input in menu loop
- Remove "Invalid choice" error (just ignore silently)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 09:38:49 +00:00
alexzandClaude Opus 4.5 7c76016fcf Fix FORWARD rules: wait for Cisco chains, then delete+reinsert at pos 1
Test / test (push) Has been cancelled
After VPN reconnects, Cisco agent creates its chains asynchronously,
pushing our ACCEPT rules down where they're ineffective. Fix:
1. Wait up to 30s for ciscovpn chain to exist
2. Delete any existing rules (they may be in wrong position)
3. Insert fresh rules at position 1

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 09:26:18 +00:00
alexzandClaude Opus 4.5 0dca06fbc8 Fix host routing: use nft for NAT, insert FORWARD rules before Cisco chains
Test / test (push) Has been cancelled
- host-routing.sh: Use nft instead of iptables for NAT masquerade
  (iptables-nft backend doesn't support iptables -t nat commands)
- cisco-vpn: Use -I FORWARD 1 instead of -A FORWARD to insert rules
  BEFORE Cisco VPN chains (which have catch-all DROP rules)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-17 09:21:09 +00:00
alexz 4c067c14d8 .
Test / test (push) Has been cancelled
2026-01-17 08:49:44 +00:00
alexz 529842a411 Add VPN watchdog with auto-reconnect and disable screen blanking
Test / test (push) Has been cancelled
- Added start_watchdog() function that:
  - Checks VPN every 60 seconds
  - Sends keepalive ping every 5 minutes to prevent idle timeout
  - Auto-reconnects up to 3 times if VPN drops
- Disabled screen blanking in xstartup and after VPN connects
- Removed useless monitor loop that only logged
2026-01-17 05:26:58 +00:00
alexz 99847c3ff0 Update build/README.md for current architecture
Test / test (push) Has been cancelled
2026-01-17 04:02:07 +00:00
alexz 96d4e32672 Update documentation for native Docker architecture
Test / test (push) Has been cancelled
- Rewrote description.md with current architecture
- Removed README.md (outdated Windows VM docs)
- Added install/uninstall instructions for host services
2026-01-17 04:01:14 +00:00
alexz c3581c7ecc Add install/uninstall scripts for host systemd services
Test / test (push) Has been cancelled
- install-host-services.sh: Creates watcher path/service units
- uninstall-host-services.sh: Removes units and cleans up
- Run once on host after app install
2026-01-17 03:59:06 +00:00
alexz 657081678f cisco-vpn: Remove all VM references, use container IP
Test / test (push) Has been cancelled
- Removed get_vm_bridge_ip() and get_container_gateway()
- Added get_container_ip() for eth0 (172.31.0.x network)
- Updated setup_forwarding() and show_network_status()
- No more ens3/VM references
2026-01-17 03:03:53 +00:00
alexz 89e8f5cffc host-routing.sh: Complete rewrite - simplified, no VM/redsocks
Test / test (push) Has been cancelled
- Hardcoded container IP (172.31.0.10) and bridge (br-rego-vpn)
- Simple start/stop/restart actions
- Removes stale routes before applying new ones
- Logs to /var/log/rego-routing.log
- Removed: redsocks, nft, VM subnet, container_apply
2026-01-17 02:59:34 +00:00
alexz 5e0004c0d8 .
Test / test (push) Has been cancelled
2026-01-17 02:42:09 +00:00
alexz aa071a1fdb cisco-vpn: -m flag goes straight to menu without any checks
Test / test (push) Has been cancelled
2026-01-17 02:38:38 +00:00
alexz 2b9688ce44 cisco-vpn: Fix missing ;; in case statement for menu option 1
Test / test (push) Has been cancelled
2026-01-17 02:37:39 +00:00
alexz fa398e8c86 cisco-vpn: Strip ANSI color codes from log file
Test / test (push) Has been cancelled
2026-01-17 02:36:32 +00:00
alexz c7cf401b0a cisco-vpn: Daily log rotation with 7-day retention
Test / test (push) Has been cancelled
- Logs now saved to /var/log/cisco-vpn/YYYY-MM-DD.log
- Automatic cleanup of logs older than 7 days
- Each day gets its own log file
2026-01-17 02:34:22 +00:00
alexz 38530ea0df cisco-vpn: Remove sudo (running as root) and add file logging
Test / test (push) Has been cancelled
- Removed all sudo commands since container runs as root
- Added LOG_FILE at /var/log/cisco-vpn.log
- Modified log() to write to both console and file
- Added startup logging with env var status
2026-01-17 02:33:07 +00:00
alexz c933d6e6da Fix: Import Docker env vars into VNC session
Test / test (push) Has been cancelled
Systemd services don't inherit container environment variables.
Added sourcing from /proc/1/environ in xstartup to fix this.
2026-01-17 02:19:13 +00:00
alexz e4b648e447 fix script
Test / test (push) Has been cancelled
2026-01-17 02:12:39 +00:00
alexz e5d4b4d2e5 Fix noVNC startup script: correct bash variable syntax
Test / test (push) Has been cancelled
Renovate / renovate (push) Has been cancelled
Changed ${NOVNC_PORT-:-6080} to ${NOVNC_PORT:-6080}
The extra dash was causing websockify to not start properly.
2026-01-17 01:55:18 +00:00
alexz 35e0d67446 .
Test / test (push) Has been cancelled
2026-01-17 01:08:29 +00:00
alexz 747f71e27c .
Test / test (push) Has been cancelled
2026-01-17 00:44:10 +00:00
alexz 6e5656a00b .
Test / test (push) Has been cancelled
2026-01-17 00:42:44 +00:00
alexz ab004b78eb .
Test / test (push) Has been cancelled
2026-01-17 00:42:15 +00:00
alexz b42bac35bb .
Test / test (push) Has been cancelled
2026-01-17 00:37:40 +00:00
alexzandClaude Opus 4.5 7b874169cb Update cisco-vpn to use 172.31.0.0/24 container network
Test / test (push) Has been cancelled
- Replace 100.100.0.0/24 with 172.31.0.0/24
- Update gateway to 172.31.0.1

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:26:26 +00:00
alexzandClaude Opus 4.5 2f7a51d2b7 Move restart-routing trigger into setup_forwarding
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:16:29 +00:00
alexzandClaude Opus 4.5 6097bcbe8f Remove unnecessary runtime mkdir from entrypoint
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:13:52 +00:00
alexzandClaude Opus 4.5 f1fd3572c5 Use APP_DATA_DIR directly for runtime mount
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:12:55 +00:00
alexzandClaude Opus 4.5 3d715664db Create runtime directory in entrypoint
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:11:53 +00:00
alexzandClaude Opus 4.5 31cb8f6db5 Add trigger-based host routing restart (no SSH needed)
Test / test (push) Has been cancelled
- Add runtime volume mount for trigger files
- cisco-vpn now creates /runtime/restart-routing trigger file
- Host systemd path watcher handles restart

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:11:11 +00:00
alexzandClaude Opus 4.5 abe7a7ab08 Remove deleted init-rego.sh mount from docker-compose files
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:03:03 +00:00
alexzandClaude Opus 4.5 46fe4f5557 Add xstartup to launch cisco-vpn in terminal
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:01:39 +00:00
alexzandClaude Opus 4.5 35e4f1f6b7 Remove unused shared scripts and vpn_scripts-not-used folder
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 23:00:00 +00:00
alexzandClaude Opus 4.5 767526054e Add IP forwarding to entrypoint
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 22:58:43 +00:00
alexzandClaude Opus 4.5 69062bd828 Remove unused build scripts, fix cisco-vpn monitor loop
Test / test (push) Has been cancelled
- Delete init-vpn.sh, vpn-connect.sh, xstartup from build/scripts
- Change cisco-vpn monitor to background process so menu shows after connect

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 22:56:34 +00:00
alexz b3259d2981 .
Test / test (push) Has been cancelled
2026-01-16 22:48:04 +00:00
alexz dc463f4cf0 .
Test / test (push) Has been cancelled
2026-01-16 22:44:58 +00:00
alexz 74f4ab982e .
Test / test (push) Has been cancelled
2026-01-16 22:10:57 +00:00
alexz 070e358463 change build step
Test / test (push) Has been cancelled
2026-01-16 22:08:37 +00:00
alexz 99fc5a5600 update dockerfile
Test / test (push) Has been cancelled
2026-01-16 21:45:38 +00:00
alexzandClaude Opus 4.5 ee6cb6c90d refactor(rego-tunnel): Inline startup-vnc.sh and vnc.service in Dockerfile
Test / test (push) Has been cancelled
These two files cannot be overridden at runtime, so they're now
baked directly into the Dockerfile using heredocs.

Remaining scripts (can be overridden at runtime):
- init-vpn.sh
- xstartup
- vpn-connect.sh

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 21:19:55 +00:00
alexzandClaude Opus 4.5 b52ba03be4 fix(rego-tunnel): Make app work out of the box from repo
Test / test (push) Has been cancelled
- Add init-rego.sh and xstartup to repo's shared folder
- Update docker-compose.json with all volume mounts
- Update docker-compose.yml with cgroup: host
- Mount scripts directly from repo (not user-config)

Now works on fresh install without any user-config overrides.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 20:49:39 +00:00
alexzandClaude Opus 4.5 38c4eea2f0 feat(rego-tunnel): Add cisco-secure-client tarball to repo
Test / test (push) Has been cancelled
Includes the pre-extracted Cisco Secure Client 5.1.14.145 installation
for building the Docker image.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 20:47:42 +00:00
alexzandClaude Opus 4.5 838b33d6c5 feat(rego-tunnel): Add Dockerfile and build scripts for cisco-vpn image
Test / test (push) Has been cancelled
Includes:
- Dockerfile for native Cisco Secure Client in Docker
- Build scripts (init-vpn.sh, startup-vnc.sh, vpn-connect.sh)
- VNC configuration (xstartup, vnc.service)
- build.sh for manual image builds
- README documenting the architecture

Note: cisco-secure-client-full.tar.gz is gitignored (large binary)
Copy it from ~/projects/cisco-vpn/build/ before building.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 20:47:20 +00:00
alexzandClaude Opus 4.5 470517a00f refactor(rego-tunnel): Complete migration to native Docker VPN
Test / test (push) Has been cancelled
- Add custom init-rego.sh that unmounts /etc/resolv.conf and /etc/hosts for VPN
- Add custom xstartup that launches terminal with cisco-vpn script
- Add TARGET_IP environment variable
- Remove QEMU/VM dependencies (TAPs, bridges, dnsmasq not needed)
- The cisco-vpn script handles: vpnagentd, auto-login with TOTP, IP forwarding

Architecture:
1. init-rego.sh: DNS fix + IP forwarding + start systemd
2. systemd: manages vpnagentd and vnc services
3. xstartup: opens xterm with cisco-vpn script
4. cisco-vpn: auto-connects VPN, sets up routing

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 20:45:16 +00:00
alexzandClaude Opus 4.5 d44a3c1a3b feat(rego-tunnel): Mount custom xstartup to launch terminal with cisco-vpn script
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 20:34:14 +00:00
alexzandClaude Opus 4.5 865a96c2ec fix(rego-tunnel): Remove Traefik basic auth
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 19:55:48 +00:00
alexzandClaude Opus 4.5 21bbeef579 fix(rego-tunnel): Add cgroup volume for systemd support
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 19:53:21 +00:00
alexzandClaude Opus 4.5 8523c79999 refactor(rego-tunnel): Replace QEMU VM with native Docker Cisco VPN
Test / test (push) Has been cancelled
- Switch from linux-vm QEMU image to cisco-vpn native Docker image
- Change port from 8006 to 6080 (noVNC)
- Remove VM-specific config (RAM, CPU, bridges, taps, QEMU)
- Add VPN credential fields (email, password, TOTP, VPN host)
- Add auto-connect and VNC password options
- Update description.md with new documentation
- Simplify Docker requirements (no /dev/kvm needed)

Benefits:
- No QEMU/VM overhead - runs natively in Docker
- Full Cisco Secure Client 5.1.14.145 with GUI
- Auto-login with TOTP support
- Auto-reconnect on disconnect

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-16 19:47:11 +00:00
alexzandClaude Opus 4.5 96153fa557 Fix cfddns to use latest tag
Test / test (push) Has been cancelled
Renovate / renovate (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-15 21:07:43 +00:00
alexzandClaude Opus 4.5 4d1bc9dbd0 Fix cfddns environment format to array
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-15 21:05:12 +00:00
alexzandClaude Opus 4.5 ca826a6229 Add cfddns app - Cloudflare DDNS using favonia image
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-15 21:00:41 +00:00
alexz a7691b16f0 assign ip to npm
Test / test (push) Has been cancelled
Renovate / renovate (push) Has been cancelled
2026-01-13 14:35:30 +00:00
alexzandClaude Opus 4.5 d87429f98d Fix npm environment format to array
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-13 11:43:06 +00:00
alexzandClaude Opus 4.5 ccd1fbc52f Remove misaligned docker-compose.yml for npm app
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-13 11:42:00 +00:00
alexz b0ba737d0d .
Test / test (push) Has been cancelled
2026-01-13 11:36:46 +00:00