| -rw-r--r-- | .ansible-lint | 9L |
| -rw-r--r-- | .gitignore | 17L |
| -rw-r--r-- | .gitmodules | 3L |
| -rw-r--r-- | COPYING | 661L |
| -rw-r--r-- | Containerfile | 26L |
| -rw-r--r-- | README | 236L |
| -rw-r--r-- | TIPS.md | 11L |
| -rw-r--r-- | TODO | 3L |
| -rw-r--r-- | ansible.cfg | 15L |
| -rwxr-xr-x | backup.sh | 16L |
| -rw-r--r-- | contrib/ci/Containerfile | 7L |
| -rwxr-xr-x | contrib/ci/ci.sh | 44L |
| -rwxr-xr-x | contrib/ci/jobs/001-build/build.sh | 44L |
| -rwxr-xr-x | contrib/ci/jobs/001-build/job.sh | 6L |
| -rwxr-xr-x | contrib/decrypt | 30L |
| -rwxr-xr-x | contrib/encrypt | 21L |
| -rwxr-xr-x | deploy.sh | 19L |
| -rwxr-xr-x | extract-borg-key.sh | 12L |
| -rw-r--r-- | inventories/default | 20L |
| -rw-r--r-- | inventories/group_vars/all/defaults.yml | 30L |
| -rw-r--r-- | inventories/group_vars/testing/test-public.yml | 59L |
| -rw-r--r-- | inventories/group_vars/testing/test-secrets.yml | 31L |
| -rw-r--r-- | inventories/host_vars/fdold-acai-gls/prod-secrets.yml.gpg | 1166B |
| -rw-r--r-- | inventories/host_vars/fdold-acai-gls/test-public.yml | 63L |
| -rw-r--r-- | inventories/host_vars/fdold-acai-tops/test-public.yml | 71L |
| -rw-r--r-- | inventories/host_vars/fdold-acai-tops/test-secrets.yml | 31L |
| -rw-r--r-- | inventories/host_vars/fdold-guava-glsint/prod-secrets.yml.gpg | 1346B |
| -rw-r--r-- | inventories/host_vars/fdold-guava-glsint/test-public.yml | 73L |
| -rw-r--r-- | inventories/host_vars/podman-localhost/test-public.yml | 59L |
| -rw-r--r-- | inventories/host_vars/podman-localhost/test-secrets.yml | 29L |
| -rw-r--r-- | inventories/host_vars/rusty/.gitignore | 1L |
| -rw-r--r-- | inventories/host_vars/rusty/test-public.yml | 84L |
| -rw-r--r-- | inventories/host_vars/rusty/test-secrets.yml.gpg | 2446B |
| -rw-r--r-- | inventories/host_vars/spec/vars.yml | 118L |
| -rw-r--r-- | inventories/host_vars/spec/vault.yml | 88L |
| -rw-r--r-- | inventories/host_vars/taler-gls-test-01/config.yml | 108L |
| -rw-r--r-- | local.yml | 12L |
| -rw-r--r-- | playbooks/backup.yml | 6L |
| -rw-r--r-- | playbooks/borg-ssh-export.yml | 8L |
| -rw-r--r-- | playbooks/borg-start.yml | 11L |
| -rw-r--r-- | playbooks/pixel-borg.yml | 6L |
| -rw-r--r-- | playbooks/reboot.yml | 7L |
| -rw-r--r-- | playbooks/sanctionlist-check.yml | 6L |
| -rw-r--r-- | playbooks/setup.yml | 28L |
| -rwxr-xr-x | reboot.sh | 15L |
| -rwxr-xr-x | restore.sh | 36L |
| -rw-r--r-- | roles/ansible_pull/tasks/main.yml | 60L |
| -rw-r--r-- | roles/ansible_pull/templates/ansible-on-boot.service | 12L |
| -rw-r--r-- | roles/ansible_pull/templates/ansible-pull.sh | 33L |
| -rw-r--r-- | roles/ansible_pull/templates/pull.fact | 13L |
| -rw-r--r-- | roles/ansible_pull/vars/main.yaml | 1L |
| -rw-r--r-- | roles/auditor/tasks/main.yml | 134L |
| -rw-r--r-- | roles/auditor/templates/etc/nginx/sites-available/auditor-http.conf.j2 | 14L |
| -rw-r--r-- | roles/auditor/templates/etc/nginx/sites-available/auditor-nginx.conf.j2 | 49L |
| -rw-r--r-- | roles/auditor/templates/etc/taler-auditor/conf.d/taler-auditor-master.conf.j2 | 33L |
| l--------- | roles/auditor/templates/etc/taler-auditor/secrets/auditor-accountcredentials-primary.secret.conf.j2 | 1L |
| -rw-r--r-- | roles/backup/handlers/main.yml | 4L |
| -rw-r--r-- | roles/backup/tasks/main.yml | 12L |
| -rw-r--r-- | roles/borg-ssh-export/tasks/main.yml | 30L |
| -rw-r--r-- | roles/borg-start/tasks/main.yml | 46L |
| -rw-r--r-- | roles/borg-start/templates/root/.ssh/config | 6L |
| -rw-r--r-- | roles/borg-start/templates/root/bin/borg-backup.sh | 91L |
| -rw-r--r-- | roles/cert/tasks/main.yml | 71L |
| -rw-r--r-- | roles/challenger/files/etc/challenger/email-message-template.txt | 1L |
| -rw-r--r-- | roles/challenger/files/etc/challenger/postal-message-template.txt | 20L |
| -rw-r--r-- | roles/challenger/files/etc/challenger/sms-message-template.txt | 1L |
| -rw-r--r-- | roles/challenger/files/etc/systemd/system/email-challenger-httpd.service | 19L |
| -rw-r--r-- | roles/challenger/files/etc/systemd/system/postal-challenger-httpd.service | 21L |
| -rw-r--r-- | roles/challenger/files/etc/systemd/system/sms-challenger-httpd.service | 21L |
| -rw-r--r-- | roles/challenger/files/etc/taler-exchange/conf.d/challenger.conf | 6L |
| -rw-r--r-- | roles/challenger/tasks/main.yml | 8L |
| -rw-r--r-- | roles/challenger/tasks/post-exchange.yml | 39L |
| -rw-r--r-- | roles/challenger/tasks/pre-exchange.yml | 358L |
| -rw-r--r-- | roles/challenger/templates/etc/challenger/challenger-email.conf.j2 | 45L |
| -rw-r--r-- | roles/challenger/templates/etc/challenger/challenger-postal.conf.j2 | 45L |
| -rw-r--r-- | roles/challenger/templates/etc/challenger/challenger-sms.conf.j2 | 39L |
| -rw-r--r-- | roles/challenger/templates/etc/challenger/postal-challenger.env.j2 | 6L |
| -rw-r--r-- | roles/challenger/templates/etc/challenger/sms-challenger.env.j2 | 9L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/conf.d/challenger-tls.conf.inc | 11L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/sites-available/email-challenger-http.conf.j2 | 15L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/sites-available/email-challenger-nginx.conf.j2 | 27L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/sites-available/postal-challenger-http.conf.j2 | 14L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/sites-available/postal-challenger-nginx.conf.j2 | 27L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/sites-available/sms-challenger-http.conf.j2 | 14L |
| -rw-r--r-- | roles/challenger/templates/etc/nginx/sites-available/sms-challenger-nginx.conf.j2 | 27L |
| -rw-r--r-- | roles/challenger/templates/etc/taler-exchange/secrets/challenger-email.secret.conf.j2 | 12L |
| -rw-r--r-- | roles/challenger/templates/etc/taler-exchange/secrets/challenger-postal.secret.conf.j2 | 12L |
| -rw-r--r-- | roles/challenger/templates/etc/taler-exchange/secrets/challenger-sms.secret.conf.j2 | 12L |
| -rw-r--r-- | roles/common_packages/files/dhparam_pregenerated.pem | 13L |
| -rw-r--r-- | roles/common_packages/files/etc/apt/keyrings/taler-systems-nightly.gpg | 1773B |
| -rw-r--r-- | roles/common_packages/files/etc/apt/keyrings/taler-systems.gpg | 1756B |
| -rw-r--r-- | roles/common_packages/files/etc/apt/preferences.d/limit-taler-repo | 3L |
| -rwxr-xr-x | roles/common_packages/files/setup-challenger-client-id-fact | 23L |
| -rwxr-xr-x | roles/common_packages/files/setup-secret-fact | 19L |
| -rw-r--r-- | roles/common_packages/tasks/main.yml | 128L |
| l--------- | roles/database/files/postgres-backup.sql.gz | 1L |
| -rw-r--r-- | roles/database/handlers/main.yml | 4L |
| -rw-r--r-- | roles/database/tasks/main.yml | 90L |
| -rw-r--r-- | roles/devtesting/tasks/files/etc/sudoers.d/devtesting | 1L |
| -rw-r--r-- | roles/devtesting/tasks/files/taler-devtesting | 111L |
| -rw-r--r-- | roles/devtesting/tasks/main.yml | 53L |
| -rw-r--r-- | roles/devtesting/tasks/templates/authorized_keys | 3L |
| -rw-r--r-- | roles/exchange-sanctionlist-import/tasks/main.yml | 31L |
| -rw-r--r-- | roles/exchange/defaults/main.yml | 1L |
| -rw-r--r-- | roles/exchange/files/var/lib/taler-exchange/sanctions-swiss.json | 179782L |
| -rw-r--r-- | roles/exchange/handlers/main.yml | 11L |
| -rw-r--r-- | roles/exchange/tasks/main.yml | 159L |
| -rw-r--r-- | roles/exchange/templates/etc/nginx/sites-available/exchange-http.conf.j2 | 14L |
| -rw-r--r-- | roles/exchange/templates/etc/nginx/sites-available/exchange-nginx.conf.j2 | 46L |
| -rw-r--r-- | roles/exchange/templates/etc/taler-exchange/conf.d/exchange-business.conf.j2 | 73L |
| -rw-r--r-- | roles/exchange/templates/etc/taler-exchange/secrets/exchange-accountcredentials-primary.secret.conf.j2 | 4L |
| l--------- | roles/exchange_gls | 1L |
| -rw-r--r-- | roles/exchange_tops/tasks/main.yml | 100L |
| -rw-r--r-- | roles/exchange_tops/templates/etc/taler-exchange/conf.d/denominations.conf.j2 | 230L |
| -rw-r--r-- | roles/exchange_tops/templates/etc/taler-exchange/conf.d/kyc-rules.conf | 426L |
| -rw-r--r-- | roles/exchange_tops/templates/etc/taler-exchange/secrets/exchange-kyc-provider-business.secret.conf.j2 | 8L |
| -rw-r--r-- | roles/exchange_tops/templates/etc/taler-exchange/secrets/exchange-kyc-provider-individual.secret.conf.j2 | 8L |
| -rw-r--r-- | roles/exchange_tops/templates/etc/taler-exchange/taler-exchange.env.j2 | 9L |
| -rw-r--r-- | roles/libeufin-nexus/files/etc/sudoers.d/libeufin-nexus-export | 1L |
| -rw-r--r-- | roles/libeufin-nexus/files/etc/sudoers.d/libeufin-nexus-import | 1L |
| -rw-r--r-- | roles/libeufin-nexus/files/home/libeufin-nexus-export/.ssh/authorized_keys | 3L |
| -rw-r--r-- | roles/libeufin-nexus/files/home/libeufin-nexus-import/.ssh/authorized_keys | 3L |
| -rw-r--r-- | roles/libeufin-nexus/files/usr/local/bin/libeufin-nexus-export.sh | 2L |
| -rw-r--r-- | roles/libeufin-nexus/files/usr/local/bin/libeufin-nexus-import.sh | 2L |
| -rw-r--r-- | roles/libeufin-nexus/tasks/main.yml | 237L |
| -rw-r--r-- | roles/libeufin-nexus/templates/etc/libeufin/libeufin-nexus-ebics.conf.j2 | 16L |
| -rw-r--r-- | roles/libeufin-nexus/templates/etc/libeufin/libeufin-nexus.conf.j2 | 57L |
| -rw-r--r-- | roles/monitoring/files/etc/apt/keyrings/grafana.gpg | 1758B |
| -rw-r--r-- | roles/monitoring/files/etc/default/alloy | 9L |
| -rw-r--r-- | roles/monitoring/files/etc/default/prometheus | 5L |
| -rw-r--r-- | roles/monitoring/files/etc/default/prometheus-alertmanager | 5L |
| -rw-r--r-- | roles/monitoring/files/etc/default/prometheus-nginx-exporter | 69L |
| -rw-r--r-- | roles/monitoring/files/etc/default/prometheus-node-exporter | 5L |
| -rw-r--r-- | roles/monitoring/files/etc/default/prometheus-postgres-exporter | 13L |
| -rw-r--r-- | roles/monitoring/files/etc/keyrings/grafana.gpg | 1758B |
| -rw-r--r-- | roles/monitoring/files/etc/prometheus/alert_rules.yml | 29L |
| -rw-r--r-- | roles/monitoring/files/etc/prometheus/node-exporter-rules.yml | 311L |
| -rw-r--r-- | roles/monitoring/files/etc/prometheus/prometheus.yml | 57L |
| -rw-r--r-- | roles/monitoring/handlers/main.yml | 15L |
| -rw-r--r-- | roles/monitoring/tasks/main.yml | 232L |
| -rw-r--r-- | roles/monitoring/templates/etc/alloy/config.alloy | 337L |
| -rw-r--r-- | roles/monitoring/templates/etc/nginx/sites-available/monitoring-http.conf.j2 | 14L |
| -rw-r--r-- | roles/monitoring/templates/etc/nginx/sites-available/monitoring-nginx.conf.j2 | 102L |
| -rw-r--r-- | roles/monitoring/templates/etc/prometheus/alertmanager.yml | 88L |
| -rw-r--r-- | roles/pixel_borg/files/home/borg/.ssh/authorized_keys | 1L |
| -rw-r--r-- | roles/pixel_borg/tasks/main.yml | 62L |
| -rw-r--r-- | roles/reboot/tasks/main.yml | 7L |
| -rw-r--r-- | roles/stop_services/tasks/main.yml | 41L |
| -rw-r--r-- | roles/webserver/files/etc/nginx/conf.d/log-format-apm.conf | 27L |
| -rw-r--r-- | roles/webserver/handlers/main.yml | 5L |
| -rw-r--r-- | roles/webserver/tasks/main.yml | 67L |
| -rwxr-xr-x | sanction-check.sh | 25L |
| -rwxr-xr-x | setup-pixel-borg.sh | 19L |
| -rwxr-xr-x | stage-activate.sh | 18L |
| -rw-r--r-- | stage-offline.conf | 10L |
| -rwxr-xr-x | start-borg-backups.sh | 23L |
| m--------- | taler-gls-deployment @ 0f755c8 | |
| -rw-r--r-- | test-master.priv | 32B |
| -rwxr-xr-x | test.sh | 27L |
| -rw-r--r-- | tops.conf | 37L |
| -rw-r--r-- | vault_pass.txt.gpg | 896B |