alexz
d6b619fcfe
upload current sources
2026-04-13 08:42:53 +00:00
alexz
d7269f94fb
Add ONLYOFFICE DocSpace app (15 services, Community Edition)
2026-04-11 12:17:35 +00:00
alexz
20043aacab
Upgrade OnlyOffice Docs from 8.2 to 9.3
2026-04-11 11:19:18 +00:00
alexz
4edbb9004d
Fix OnlyOffice internal port to 80 and healthcheck
2026-04-11 09:04:06 +00:00
alexz
8bbfeafabb
Fix OnlyOffice AMQP URI: add RabbitMQ password
2026-04-11 08:53:29 +00:00
alexz
2d16912d18
Revert command field - use user-config override instead
2026-04-11 08:52:35 +00:00
alexz
98078e843c
Fix OnlyOffice RabbitMQ erlang cookie permissions
2026-04-11 08:51:05 +00:00
alexz
f29404405a
Update apps/onlyoffice-docs/docker-compose.json
2026-04-11 08:38:07 +00:00
alexz
6c444a474c
Update apps/onlyoffice-docs/docker-compose.json
2026-04-11 08:34:05 +00:00
alexz
f862c2049a
Update apps/onlyoffice-docs/docker-compose.json
2026-04-11 07:54:07 +00:00
alexz
6cb0702b0d
Update apps/onlyoffice-docs/config.json
2026-04-11 07:53:45 +00:00
alexz
f94a3937be
Update apps/onlyoffice-docs/docker-compose.json
2026-04-11 07:35:56 +00:00
alexz
ae29c75e28
Update apps/onlyoffice-docs/docker-compose.json
2026-04-11 07:28:32 +00:00
alexz
3461f47bd2
Bump md2html to 1.0.1 - add curl API
2026-04-10 19:21:06 +00:00
alexz
d3ab1fb060
Use Gitea registry image git.alexzaw.dev/alexz/md2html:1.0.0
2026-04-10 19:15:26 +00:00
alexz
9cd6f56f8c
Fix md2html docker-compose.json schema format
2026-04-10 19:08:02 +00:00
alexz
1c4bfb8cc5
Add md2html app - Markdown to HTML/PDF converter
2026-04-10 18:51:05 +00:00
alexz
145d871b42
Update apps/onlyoffice-docs/config.json
2026-04-09 12:04:13 +00:00
alexz
7ea70458b3
fix: revert environment to object format, remove schemaVersion - matches @runtipi/common schema
2026-04-09 11:56:44 +00:00
alexz
37525c7e54
fix: remove schemaVersion, convert environment objects to arrays per Runtipi schema
2026-04-09 11:37:06 +00:00
alexz
b92c179f9b
fix: rename healthCheck.command to healthCheck.test per Runtipi schema
2026-04-09 11:34:16 +00:00
alexz
f3a2d2f006
fix: change invalid category "documents" to valid "utilities" only
2026-04-09 11:29:42 +00:00
alexz and Claude Opus 4.6
46b0e1120a
Add ONLYOFFICE Docs app
...
Online office suite with document, spreadsheet, and presentation editing.
Includes external PostgreSQL, Redis, and RabbitMQ services with auto-generated
secrets for JWT, database, and message queue credentials.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com >
2026-04-06 19:06:02 +00:00
alexz
e6387c3861
Update apps/erp-integration/docker-compose.json
2026-03-31 00:56:20 +00:00
alexz
2b10b30d44
Update apps/erp-integration/config.json
2026-03-31 00:54:01 +00:00
alexz
d5e58923bc
Add PROXY_SECRET for IBM i proxy auth
2026-03-26 23:30:48 +00:00
alexz
4da14d5a23
Fix default Ollama model to gpt-oss:20b
2026-03-26 16:32:50 +00:00
alexz
d3dd39ceeb
Add Ollama and CONTEXT_ROOT config to erp-integration app
2026-03-26 15:21:06 +00:00
alexz
68da19bafe
Expose port 8001 on host for external reverse proxy
2026-03-19 16:27:20 +00:00
alexz
8ffb7e01ae
Add SAP logo for erp-integration app
2026-03-19 16:18:46 +00:00
alexz
1f8a4d5ae3
Use symlinked APP_DATA_DIR, add MCP_API_BASE_URL and SHAREPOINT_BASE_URL env vars
2026-03-19 16:14:00 +00:00
alexz
9f0e1c7f8b
Mount data/uploads from original ERP-Integration project
2026-03-19 15:44:54 +00:00
alexz
cd07a5b8c8
Fix: add min/max validation to API key field
2026-03-19 09:14:32 +00:00
alexz
7fd226d229
Added erp-integration: SAP S/4HANA Migration Dashboard app
2026-03-19 09:09:41 +00:00
alexz
5bffff1d9b
nas-samba: configurable admin user (uses SMB_PASSWORD)
2026-03-16 23:34:28 +00:00
alexz
61b1dea366
nas-samba: clean up duplicate files, single server.js in app/
2026-03-16 23:31:40 +00:00
alexz
c94cbd7f36
nas-samba: use SMB_PASSWORD for admin login, configurable username
2026-03-16 23:29:10 +00:00
alexz
618e023996
nas-samba: rebuilt as single Ubuntu image with Samba + CloudNAS (no MongoDB)
2026-03-16 23:22:42 +00:00
alexz
0104827234
feat: add cloudNAS web UI service
2026-03-09 18:53:18 +00:00
alexz
92a97e140f
revert: remove cockpit, keep nas-samba only
2026-03-09 18:40:46 +00:00
alexz
b9d573aeac
fix: use internalPort 9090 for cockpit, let Traefik handle routing, use interface field for SMB IP binding
2026-03-09 18:38:20 +00:00
alexz
3c438ca093
fix: remove internalPort and port binding for host network cockpit
2026-03-09 18:36:52 +00:00
alexz
d6bc7128df
fix: add networkMode host to cockpit service
2026-03-09 18:34:29 +00:00
alexz
4b0659bd47
fix: use quay.io/cockpit/ws correct image registry
2026-03-09 18:23:31 +00:00
alexz
2351ad84bc
feat: add Cockpit web UI service to nas-samba app
2026-03-09 18:21:09 +00:00
alexz
a16b5a232e
fix: use variable BIND_IP in hostPort for SMB ports
2026-03-09 18:19:14 +00:00
alexz
0ffb0f7256
fix: use hostPort string format for IP binding, remove hostIp field
2026-03-09 18:18:15 +00:00
alexz
37ae3a06de
Add nas-samba app
2026-03-09 18:09:37 +00:00
alexz and Claude Opus 4.6
d0ff3536d2
fix: set executable bit on shared scripts for rego-tunnel and cistech-tunnel
...
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com >
2026-02-25 19:07:09 +00:00
alexz and Claude Opus 4.5
0104b45331
rego-tunnel: fix pipefail crash in host-routing.sh remove_all()
...
The nft|grep|grep|head pipeline fails when no masquerade rule exists,
causing the script to exit under set -euo pipefail. Add || true to
match the cistech-tunnel version.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-04 21:11:25 +00:00
alexz and Claude Opus 4.5
efc3ad00af
rego-tunnel: move all scripts to dynamic mounts
...
- Move entrypoint.sh from build/scripts/ to shared/
- Create startup-vnc.sh in shared/ (was base64-encoded in Dockerfile)
- Remove baked-in scripts and CMD from Dockerfile (keep vnc.service unit only)
- Entrypoint now: chmod +x all shared scripts, symlinks startup-vnc.sh
to /opt/scripts/ so systemd vnc.service still finds it
- Fix host watcher: use /bin/bash in ExecStart for permission resilience
- Bump tipi_version to 7
All scripts are now dynamically controlled via volume mounts.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-04 21:05:14 +00:00
alexz and Claude Opus 4.5
7ac32e9199
cistech-tunnel: use /bin/bash in ExecStart for permission resilience
...
Invoke host-routing.sh via /bin/bash so the watcher service works
even if the execute bit gets cleared by permission resets.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-04 20:51:02 +00:00
alexz and Claude Opus 4.5
cb54689e7c
cistech-tunnel: auto-fix script permissions at container startup
...
Add chmod +x in entrypoint.sh to ensure all shared scripts are
executable even if permissions get reverted by git pull or appstore
update operations.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-04 20:44:33 +00:00
alexz and Claude Opus 4.5
992db16848
cistech-tunnel: remove entrypoint from docker-compose.json
...
Runtipi's compose generator doesn't translate the entrypoint field.
The entrypoint is instead set via user-config override.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-04 20:42:34 +00:00
alexz and Claude Opus 4.5
16b7a66c01
cistech-tunnel: move all scripts to dynamic mounts
...
- Move entrypoint.sh from build/scripts/ to shared/ (no longer baked into image)
- Add entrypoint directive to docker-compose.json pointing to /shared/entrypoint.sh
- Update entrypoint.sh to reference /shared/startup-vnc.sh instead of /opt/scripts/
- Bump tipi_version to 7
All scripts are now dynamically controlled via volume mounts from the shared/
directory. The Docker image is a clean base with only packages installed.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-04 20:39:20 +00:00
alexz
1def782149
Update apps/cistech-tunnel/build/Dockerfile
2026-02-04 20:29:37 +00:00
alexz
55c11cce90
Update apps/cistech-tunnel/build/Dockerfile
2026-02-04 20:29:03 +00:00
alexz
ed21a14f68
Update apps/cistech-tunnel/shared/entrypoint.sh
2026-02-04 20:16:54 +00:00
alexz
004c58b445
Update apps/cistech-tunnel/shared/entrypoint.sh
2026-02-04 20:14:41 +00:00
alexz and Claude Opus 4.5
8c9ebea489
fix: Install noVNC from GitHub instead of apt package
...
The apt novnc package (v1.0.0) has module export issues causing
JavaScript errors. Switch to noVNC v1.4.0 from GitHub which has
proper ES6 module exports.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-18 01:04:45 +00:00
alexz
19cb09f05e
.
2026-01-18 00:57:34 +00:00
alexz
ae86df8732
.
2026-01-17 18:01:02 +00:00
alexz
a2f0b40fa8
.
2026-01-17 17:58:31 +00:00
alexz
bf60412640
Use test_connection function for keepalive check
...
Replaces inline ping with existing test_connection function
2026-01-17 17:57:46 +00:00
alexz
5f057c50ed
Add TARGET_SUBNET to openconnect-vpn script
...
Derive TARGET_SUBNET from TARGET_IP (first 3 octets + .0/24)
for iptables FORWARD rules to allow full subnet routing.
2026-01-17 17:56:45 +00:00
alexz
b2e38b3cb4
Derive TARGET_SUBNET dynamically from TARGET_IP
...
Extract first 3 octets from TARGET_IP and append .0/24
2026-01-17 17:53:34 +00:00
alexz
47e1790a8b
Add TARGET_SUBNET for iptables rules with /24 CIDR
...
Keep TARGET_IP as single host, add hardcoded TARGET_SUBNET=10.3.1.0/24
for iptables rules and routes to allow full subnet routing.
2026-01-17 17:52:44 +00:00
alexz
b67b8f18a4
Fix TARGET_IP to include /24 CIDR for iptables rules
...
The iptables rules were using 10.3.1.0 (single IP) instead of
10.3.1.0/24 (subnet), causing routing from other machines to fail.
2026-01-17 17:51:49 +00:00
alexz
c6749fe856
refactor(cistech-tunnel): add IBMI_HOST and test_connection function
...
- Add hardcoded IBMI_HOST=10.3.1.201 for testing
- Create test_connection() function for reuse
- Use IBMI_HOST for connection tests and keepalive pings
- TARGET_IP still used for routing rules
2026-01-17 16:53:40 +00:00
alexz
4c7ff9d6a0
fix(cistech-tunnel): reset DNS and clean tun interface before connecting
2026-01-17 16:49:32 +00:00
alexz
e93edb73af
fix(cistech-tunnel): remove sudo from openconnect command - already running as root
2026-01-17 16:45:01 +00:00
alexz
9a6e2f67e6
feat(cistech-tunnel): add auto-connect, menu flag, watchdog, fix host routing
...
- Auto-connect on startup (skip with -m/--menu flag)
- Add VPN watchdog for auto-reconnect
- Add live TOTP display
- Fix host-routing.sh pipefail issue with grep
- Better forwarding rules similar to rego-tunnel
2026-01-17 16:40:55 +00:00
alexz
84b1eb3f5d
.
2026-01-17 16:33:22 +00:00
alexz
1bd5a21a94
fix(cistech-tunnel): add sudo and system dbus for openconnect-sso
2026-01-17 16:21:26 +00:00
alexz
5c3147536c
refactor(cistech-tunnel): move runtime scripts to shared folder
...
- Add entrypoint.sh and startup-vnc.sh to shared folder
- Override command in docker-compose.json to use /shared/entrypoint.sh
- Scripts can now be modified without rebuilding image
2026-01-17 16:10:22 +00:00
alexz
8656441976
fix(cistech-tunnel): add software rendering support for Qt WebEngine
...
- Add QT_QUICK_BACKEND=software, LIBGL_ALWAYS_SOFTWARE=1
- Add mesa-utils, libgl1-mesa-dri for llvmpipe software renderer
- Add missing xcb libraries (libxcb-render0, libxcb-shm0, etc.)
- Use --use-gl=swiftshader in chromium flags
2026-01-17 16:08:51 +00:00
alexz
0d52d54eed
fix(cistech-tunnel): add Qt no-sandbox flags to xstartup
2026-01-17 15:59:31 +00:00
alexz
1b59e304b0
fix(cistech-tunnel): add --no-sandbox for chromium running as root
2026-01-17 15:57:53 +00:00
alexz
fb915487dc
fix(cistech-tunnel): add all xcb libraries for Qt6
2026-01-17 15:53:24 +00:00
alexz
a3b02b694e
fix(cistech-tunnel): add libxcb-cursor0 for Qt xcb plugin
2026-01-17 15:42:58 +00:00
alexz
9b2a42bdc9
fix(cistech-tunnel): add libegl1 libgl1 libopengl0 for PyQt6 WebEngine
2026-01-17 15:36:00 +00:00
alexz
98f3cc95eb
.
2026-01-17 15:27:29 +00:00
alexz
12f626b088
chore: remove .github workflows
2026-01-17 15:14:03 +00:00
alexz
b9b3f89910
.
Test / test (push) Has been cancelled
2026-01-17 14:35:13 +00:00
alexz
24594915a9
.
Test / test (push) Has been cancelled
2026-01-17 14:29:47 +00:00
alexz
6f6538fa73
.
Test / test (push) Has been cancelled
2026-01-17 14:25:26 +00:00
alexz
239179931c
.
Test / test (push) Has been cancelled
2026-01-17 14:24:28 +00:00
alexz
f1793baa57
.
Test / test (push) Has been cancelled
2026-01-17 14:23:50 +00:00
alexz
418390fe8d
.
Test / test (push) Has been cancelled
2026-01-17 11:43:28 +00:00
alexz and Claude Opus 4.5
4fd8688685
revert(cistech-tunnel): restore to original working state at a7691b1
...
Test / test (push) Has been cancelled
- Removed shared/ folder (host routing scripts)
- Restored original config.json, docker-compose.json
- Restored original Dockerfile and entrypoint.sh
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 11:30:34 +00:00
alexz and Claude Opus 4.5
f410510a7f
revert(cistech-tunnel): restore to working state at 5d54ed6
...
Test / test (push) Has been cancelled
- Removed build/ folder
- Restored source/ folder with original Dockerfile and entrypoint.sh
- Reverted config files to original working state
- Cleaned up shared/ to only contain host routing scripts
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 11:28:10 +00:00
alexz
274125e862
.
Test / test (push) Has been cancelled
2026-01-17 11:21:35 +00:00
alexz and Claude Opus 4.5
837dffddd5
refactor(cistech-tunnel): remove all systemd dependencies
...
Test / test (push) Has been cancelled
- Dockerfile: Removed systemd, systemd-sysv, network-manager packages
- Dockerfile: Removed systemd service cleanup, vnc.service, cgroup volume
- docker-compose.json/yml: Removed /sys/fs/cgroup volume mount
- Bumped tipi_version to 4
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 11:16:32 +00:00
alexz and Claude Opus 4.5
1ef9d21ba4
fix(cistech-tunnel): remove systemd dependency, use port 6092
...
Test / test (push) Has been cancelled
- entrypoint.sh: Start VNC directly instead of systemd /sbin/init
- Changed NOVNC_PORT from 6080 to 6092 everywhere
- Dockerfile: Updated EXPOSE and default NOVNC_PORT
- Bumped tipi_version to 3
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 11:13:54 +00:00
alexz and Claude Opus 4.5
9307cab1bb
fix(cistech-tunnel): correct routing config and sync compose files
...
Test / test (push) Has been cancelled
- host-routing.sh: Updated to use cistech values (172.30.0.10, br-vpn-static)
- config.json: Added TARGET_IP form field, bumped tipi_version to 2
- docker-compose.json: Added TARGET_IP environment variable
- docker-compose.yml: Synced with docker-compose.json (correct image, port 6080, all env vars)
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 11:10:59 +00:00
alexz
e462edd99b
.
Test / test (push) Has been cancelled
2026-01-17 10:53:29 +00:00
alexz and Claude Opus 4.5
48d0407c79
Add build.sh script for cistech-tunnel
...
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 10:37:50 +00:00
alexz and Claude Opus 4.5
3c427af6fe
Restructure cistech-tunnel to match rego-tunnel pattern
...
Test / test (push) Has been cancelled
- build/: Dockerfile + entrypoint.sh (base image with VNC/noVNC)
- shared/: Runtime scripts mounted into container
- xstartup: VNC startup, launches openconnect-vpn in xterm
- openconnect-vpn: Main VPN script with menu, auto-connect, watchdog
- Removed source/ folder (replaced by build/)
- Updated docker-compose.json with proper volume mounts
- Changed port to 6080 (noVNC default)
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 10:36:41 +00:00
alexz and Claude Opus 4.5
5d54ed6f80
cistech-tunnel: Remove redundant entrypoint mount
...
Test / test (push) Has been cancelled
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 10:25:40 +00:00
alexz and Claude Opus 4.5
685488c7d4
cistech-tunnel: Mount entrypoint.sh from shared folder
...
Test / test (push) Has been cancelled
No more image rebuild needed for script changes.
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com >
2026-01-17 10:22:01 +00:00