Commit Graph

951 Commits

Author SHA1 Message Date
SeanOMik bd2f318784
update todo, change proxmox hostip 2023-06-27 18:58:53 -04:00
SeanOMik a00d2c8d18
increase znc memory request 2023-06-26 19:16:32 -04:00
SeanOMik 517081eec1
increase znc memory limits for compiling modules 2023-06-26 19:11:16 -04:00
SeanOMik f411b68d2a
change sops keys 2023-06-19 14:36:37 -04:00
SeanOMik 4077b07058
fix fireflyiii cronjob 2023-06-17 15:31:26 -04:00
SeanOMik b896e88c90
fix fireflyiii cronjob 2023-06-17 15:23:26 -04:00
SeanOMik aed8a8ae49
add cronjob for fireflyiii 2023-06-17 15:09:11 -04:00
SeanOMik 6a3821e9a9
try to expose znc externally 2023-06-17 14:49:31 -04:00
SeanOMik 0694600119
add znc-push to znc init container 2023-06-17 00:02:34 -04:00
SeanOMik 6ef32b14a3
disable pgadmin4, I'll do a rebuild of it later 2023-06-15 00:49:56 -04:00
SeanOMik 27ee2d089e
just run pgadmin4 as its own user 2023-06-15 00:47:37 -04:00
SeanOMik 7b10be3658
enable pgadmin4 volume permission init 2023-06-15 00:44:29 -04:00
SeanOMik 9eb25ff506
try to fix pgadmin4 2023-06-15 00:42:45 -04:00
SeanOMik 9ff713943c
try to fix redis 2023-06-15 00:38:52 -04:00
SeanOMik 1f955f7f96
try to fix znc initContainer 2023-06-15 00:30:40 -04:00
SeanOMik 26f76bd036
add kube-prometheus-stack crds 2023-06-15 00:21:17 -04:00
SeanOMik 18c515ec32
remove code include 2023-06-15 00:13:19 -04:00
SeanOMik 89363c5be4
add sops decryption 2023-06-15 00:06:28 -04:00
Flux d3778ef439 Add Flux sync manifests 2023-06-14 22:57:03 -04:00
Flux f7e348c9d4 Add Flux v2.0.0-rc.5 component manifests 2023-06-14 22:56:50 -04:00
SeanOMik ccf6d7c6dc
trigger new helmrelease 2023-06-14 22:40:49 -04:00
SeanOMik 8c2310ed5e
remove unused label 2023-06-14 22:31:34 -04:00
SeanOMik 8a9c10d635 add vscode server 2023-06-14 13:24:31 -04:00
SeanOMik 561ed74f6f
Run pgadmin4 as nonroot 2023-06-14 00:51:04 -04:00
SeanOMik bcb19f7a0c disable whoami, try to fix fireflyiii's external auth 2023-06-08 22:24:46 -04:00
SeanOMik e51ebfd8b1 forgot to change the name 2023-06-08 22:16:57 -04:00
SeanOMik 304b881c6a add whoami for debug 2023-06-08 22:08:59 -04:00
SeanOMik 2b08747870 use external auth for fireflyiii 2023-06-08 19:48:41 -04:00
SeanOMik f0c5e491e0 use external auth for fireflyiii 2023-06-08 18:36:23 -04:00
SeanOMik f582ed7faf update qbittorrent vpn again 2023-06-06 19:37:21 -04:00
SeanOMik 203367b049 update wireguard key 2023-06-05 00:43:31 -04:00
SeanOMik fbae389cba
fix gitea 2023-06-04 12:03:30 -04:00
SeanOMik a28587dfbc fix flaresolverr 2023-06-02 19:04:14 -04:00
SeanOMik 99b183735d use flaresolverr user 2023-06-02 18:52:10 -04:00
SeanOMik f6d254b5e4 add flaresolverr 2023-06-02 18:45:53 -04:00
SeanOMik 8e4c33fbce Undo changes to qbit and mylar3 2023-06-02 00:37:13 -04:00
SeanOMik 01c1436b8f forgot to give readarr-ebook security policy, set sonarr auth method to external 2023-06-02 00:15:26 -04:00
SeanOMik c359d65d52 mylar3 doesn't support runAsNonRoot 2023-06-02 00:05:37 -04:00
SeanOMik 231947329e remove securityContext's for download pods 2023-06-01 23:54:07 -04:00
SeanOMik eef24e81e7 change to onedr0p images for download ns pods 2023-06-01 23:47:25 -04:00
SeanOMik f08ca032dd fix download ns 2023-06-01 23:29:03 -04:00
SeanOMik 7955255e9b add security contexts to download ns 2023-06-01 23:21:04 -04:00
SeanOMik 5e75c92d26 remove msrewards 2023-06-01 23:05:41 -04:00
SeanOMik 051e833431 add pod security context's to some pods in default ns 2023-06-01 22:54:02 -04:00
SeanOMik 61e542f8f9 fix yaml error 2023-06-01 22:28:26 -04:00
SeanOMik cf1be891ad change authentik security context 2023-06-01 22:26:42 -04:00
SeanOMik 2b81ac71de set database pods to run as a specific group 2023-06-01 22:14:27 -04:00
SeanOMik 8ef0113bc1 add authentik middleware to ombi 2023-05-21 16:53:37 -04:00
SeanOMik e721e0fdb8 remove jellyseerr 2023-05-21 16:19:46 -04:00
SeanOMik 239f177c7f Fix ombi data not being persistent 2023-05-21 16:13:16 -04:00
SeanOMik 5e9c645166 add msrewards 2023-05-14 22:14:04 -04:00
SeanOMik 654779667f add ombi 2023-05-14 16:08:14 -04:00
SeanOMik f90fa8c3bd remove separate radarr and sonarr board, fix bug with cdn 2023-05-13 23:21:05 -04:00
SeanOMik a07635bb8d delete radarr and sonarr dashboards 2023-05-11 16:02:41 -04:00
SeanOMik bfde1a8611 Add qbittorrent grafana dashboard 2023-05-11 15:59:12 -04:00
SeanOMik 0d40a91055 set metrics env 2023-05-11 15:47:11 -04:00
SeanOMik 0b93c86ff5 add qbit secret 2023-05-11 15:41:29 -04:00
SeanOMik c2d8edc134 add monitor for qbit 2023-05-11 15:38:21 -04:00
SeanOMik d10288e8b9 use helm app template for qbittorrent 2023-05-11 15:35:36 -04:00
SeanOMik 55e59e4093 update media dashboard, move dashboard out of monitoring namespace 2023-05-11 15:15:28 -04:00
SeanOMik cf72a58656 manually create servicemonitors for readarr 2023-05-11 12:38:15 -04:00
SeanOMik 6c937e345a add dashboard for pve-exporter 2023-05-11 12:13:43 -04:00
SeanOMik 6239e2bdb6 try to only set in the config file 2023-05-11 12:00:37 -04:00
SeanOMik 66e36910db include pve-exporter 2023-05-11 11:30:37 -04:00
SeanOMik 5f95344105 try to set no verify ssl variable only in environment for pve-exporter 2023-05-11 11:27:57 -04:00
SeanOMik 1e2ae1f88e expose exportarr ports for readarr sidecontainers 2023-05-11 01:41:23 -04:00
SeanOMik 58def9afba temporarily remove proxmoxve exporter 2023-05-11 01:37:37 -04:00
SeanOMik aaec65e8b5 add exportarr sidecar to readarr 2023-05-11 01:35:47 -04:00
SeanOMik 98aa3893f0 add single media dashboard for arr 2023-05-11 01:24:24 -04:00
SeanOMik 66d001aab2 Attempt to add promoxve exporter 2023-05-11 01:23:10 -04:00
SeanOMik c29a207a74 add prowlarr metrics sidecar 2023-05-04 16:35:51 -04:00
SeanOMik da7a81c8c1 change radarr name 2023-05-04 16:24:36 -04:00
SeanOMik b0264170e2 add radarr grafana dashboard, update sonarrs 2023-05-04 16:23:51 -04:00
SeanOMik 12b71e0560 add sonarr and vm grafana dashboards 2023-05-04 16:17:01 -04:00
SeanOMik 265a1b841a add metrics sidecar to radarr 2023-05-04 16:07:52 -04:00
SeanOMik 2c254837de enable additional metrics 2023-05-04 14:41:10 -04:00
SeanOMik 221b9a1370 media doesn't need a network policy 2023-05-04 14:35:54 -04:00
SeanOMik e3d170ffec add port to exportarr 2023-05-04 14:17:18 -04:00
SeanOMik b4231dac8e add metrics exporting to sonarr 2023-05-04 14:15:03 -04:00
SeanOMik 6c920de77a vm - add service monitor 2023-05-04 13:33:54 -04:00
SeanOMik 286b88f107 vm - dont use prom naming 2023-05-04 13:32:07 -04:00
SeanOMik a91e6b49d2 Make victoria convert ALL metrics to prometheus compatible naming 2023-05-04 01:18:39 -04:00
SeanOMik 8a314dd0c9 switch to my varken fork 2023-05-03 22:59:03 -04:00
SeanOMik e66ab84061 dont mount varken config as readonly 2023-05-03 22:02:51 -04:00
SeanOMik 1617d77a6a change varken config mount 2023-05-03 21:44:44 -04:00
SeanOMik c92cad4113 disable varken service 2023-05-03 21:16:37 -04:00
SeanOMik ef746bf58f add varken 2023-05-03 21:02:18 -04:00
SeanOMik d5c7d7d28d Add victoria metrics for long term metrics storage 2023-05-03 00:52:24 -04:00
SeanOMik 49ad416dfc Attempt to fix minio ldap auth 2023-05-01 21:04:54 -04:00
SeanOMik 7a1f440157 Add tautulli 2023-04-30 12:02:15 -04:00
SeanOMik e0fc99a695 Fix alertmanager alerts for kubeProxy, kubeScheduler, and kubeControllerManager 2023-04-30 01:27:12 -04:00
SeanOMik 2e02abac20 Dont include network policy for tools, its not needed 2023-04-29 21:27:38 -04:00
SeanOMik 4fcdaad314 Change gotify token 2023-04-29 21:17:17 -04:00
SeanOMik cd03a74bf5 Try again 2023-04-29 21:07:15 -04:00
SeanOMik b4ca7b0b3b Fix issue with alertmanager config 2023-04-29 21:03:39 -04:00
SeanOMik 308da8b0fc Try to add the receiver by creating an AlertmanagerConfig 2023-04-29 21:01:56 -04:00
SeanOMik 9c83039b46 Add pod labels to gotify-bridge 2023-04-29 20:50:04 -04:00
SeanOMik 507e957005 fix syntax error 2023-04-29 20:49:03 -04:00
SeanOMik c498e1341c Change image 2023-04-29 20:43:36 -04:00
SeanOMik 6db5ee7b1c Set envFrom for gotify-bridge 2023-04-29 20:41:49 -04:00
SeanOMik 554c7e506f Add gotify-bridge as an alertmanager receiver 2023-04-29 20:35:53 -04:00
SeanOMik 42785f005c Add alertmanager-gotify-bridge 2023-04-29 20:15:15 -04:00
SeanOMik 1130d9903d Remove custom labels for servicemonitors 2023-04-29 19:52:42 -04:00
SeanOMik a9a6a1dace Try to not specify serviceMonitorSelector 2023-04-29 19:31:37 -04:00
SeanOMik 65f33b49a6 Remove targetPort for factorio ports 2023-04-28 13:57:51 -04:00
SeanOMik ec79750753 Open gitea ssh nodeport 2023-04-27 20:45:43 -04:00
SeanOMik 6d6be18925 Add sidecar to gitea 2023-04-27 20:34:37 -04:00
SeanOMik 1d40e87948
Remove envs that are specified in secret 2023-04-27 19:49:59 -04:00
SeanOMik 8cd606a87c
Dont create postgresql user 2023-04-27 19:28:54 -04:00
SeanOMik 2aecd2a395
Change gitea volume mount 2023-04-25 22:33:54 -04:00
SeanOMik 6430ad86d2
Change minio ldap search base 2023-04-25 22:24:29 -04:00
SeanOMik 60a49bd0c5
Give gitea access to authentik 2023-04-25 22:23:20 -04:00
SeanOMik c8600d6038
Change gitea domain 2023-04-25 22:18:01 -04:00
SeanOMik 74a37e9bc3
Give gitea a volume 2023-04-25 22:14:20 -04:00
SeanOMik f4e74f64d1
Fix syntax error 2023-04-25 22:11:52 -04:00
SeanOMik c6f96008f5
Add gitea 2023-04-25 22:09:26 -04:00
SeanOMik 16b9ae4663
Get transfersh working with s3 backend 2023-04-25 20:07:10 -04:00
SeanOMik fbb7996029
Change serviceMonitorSelector 2023-04-24 00:51:09 -04:00
SeanOMik 813ad42d7a
Add zfs-exporter 2023-04-24 00:30:04 -04:00
SeanOMik f4aa5f1105
Get firefly iii working 2023-04-22 03:01:33 -04:00
SeanOMik 626d793586
Change ports 2023-04-22 01:46:34 -04:00
SeanOMik 5d030f87cb
expose factorio through nodeport 2023-04-21 01:51:02 -04:00
SeanOMik 18a2c0acd8
expose factorio on a loadbalancer service 2023-04-21 01:33:21 -04:00
SeanOMik 3ac2d5418e
Set the wrong environmental variable :facepalm 2023-04-21 01:20:31 -04:00
SeanOMik 6b8c9de207
trigger flux 2023-04-21 01:10:17 -04:00
SeanOMik e3f7c7ea1f
Specify port with environmental variable 2023-04-21 01:08:16 -04:00
SeanOMik b3de21f6e4
Change factorio image 2023-04-21 00:46:48 -04:00
SeanOMik 9a249bb594
Remove nginx folder 2023-04-21 00:28:31 -04:00
SeanOMik 6c311e4164
Change nginx port 2023-04-20 19:00:30 -04:00
SeanOMik 2c24374021
Dont use a configmapGenerator 2023-04-20 17:13:47 -04:00
SeanOMik 6fa1a57b1d
Set port on ingress 2023-04-19 22:38:08 -04:00
SeanOMik d219949875
Set port on ingress 2023-04-19 22:30:34 -04:00
SeanOMik deac88d21d
typo 2023-04-19 20:00:01 -04:00
SeanOMik 99e9f03a37
specify namespace 2023-04-19 19:51:10 -04:00
SeanOMik 36c959dead
Mount correct thing 2023-04-19 19:38:55 -04:00
SeanOMik ef95e10b97
Add factorio game server 2023-04-19 19:37:53 -04:00
SeanOMik 983a15e982
Remove fireflyiii temporarily 2023-04-19 19:26:11 -04:00
SeanOMik 5f869f169b
fix 2023-04-19 01:47:26 -04:00
SeanOMik 983b32a1ba
fix 2023-04-19 01:45:02 -04:00
SeanOMik 4814da784b
try to fix 2023-04-19 01:42:31 -04:00
SeanOMik 6f5cf38b99
Fix 2023-04-19 01:37:36 -04:00
SeanOMik 4698e27142
Try to get fireflyiii working 2023-04-19 01:35:24 -04:00
SeanOMik ef6a8978c6
fix cdn 2023-04-18 18:48:43 -04:00
SeanOMik 771d61be78
Add 'cdn' 2023-04-18 18:42:58 -04:00
SeanOMik 6817a04edd
fix 2023-04-16 21:22:01 -04:00
SeanOMik 059e147955
Change configmap to secret 2023-04-16 21:19:48 -04:00
SeanOMik cc52e7418e
Fix helmrelease to use configmap correctly 2023-04-16 20:58:24 -04:00
SeanOMik 2808d56a7e
Add firefly iii, give authentik its own user for postgresql 2023-04-16 20:35:53 -04:00
SeanOMik 5c0223600d
Change mariadb secret name 2023-04-16 20:12:54 -04:00
SeanOMik 05ab55fb16
Try to fix mariadb 2023-04-16 20:10:28 -04:00
SeanOMik 37a9fed45b
Change local-path-config 2023-04-16 20:08:21 -04:00
SeanOMik 9c5328845c
Create local path provisioner config 2023-04-16 19:50:03 -04:00
SeanOMik 83dd8a05b3
Add mariadb 2023-04-16 18:29:02 -04:00
SeanOMik 6f849d8133
Remove harbor for now 2023-04-16 13:39:24 -04:00
SeanOMik 443349d5a4
Change pvc names 2023-04-16 02:06:11 -04:00
SeanOMik 0959b1a110
Add jobservice pvc subpath 2023-04-16 02:05:34 -04:00
SeanOMik 53869a394d
Create karbor namespace resource 2023-04-16 01:57:53 -04:00
SeanOMik df616f2e64
Fix pvc subPaths in harbor helmrelease 2023-04-16 01:56:10 -04:00
SeanOMik 4818667d42
Move harbor into its own namespace 2023-04-16 01:55:15 -04:00
SeanOMik 3250c0b4ea
Add harbor secrets to kustomize.yaml 2023-04-16 01:39:42 -04:00
SeanOMik 97cb9288f5
Add database creds to harbor secrets 2023-04-16 01:36:09 -04:00
SeanOMik 25a1c99cdf
Use correct chart name 2023-04-16 01:29:00 -04:00
SeanOMik 876c559d44
Accidentally deleted file 2023-04-16 01:25:52 -04:00
SeanOMik d3c477b139
Manually create a harbor ingress 2023-04-16 01:23:39 -04:00
SeanOMik 30ab4f8a03
Add harbor 2023-04-16 01:05:17 -04:00
SeanOMik 2d9f43afe0 Fix ldap url 2023-04-15 18:27:14 -04:00
SeanOMik 8d7ccdfac9 Setup ldap in minio environment vars 2023-04-15 18:21:55 -04:00
SeanOMik e7a4e1f8d2
Remove authentik middleware from grafana 2023-04-15 01:31:02 -04:00
SeanOMik dd038ca9ef
Fix kube-prom-stack helm chart 2023-04-15 01:27:27 -04:00
SeanOMik 585116ac09
Override namespace 2023-04-15 01:24:13 -04:00
SeanOMik 803bf15b82
Fix yaml 2023-04-15 01:20:54 -04:00
SeanOMik 0c916c12f8
Add kube-prometheus-stack helm chart 2023-04-15 01:19:04 -04:00
SeanOMik 9c2807f3ad
Set cert-manager issuer for all ingresses 2023-04-15 01:17:55 -04:00
SeanOMik a2cb597fbc
idk how to get transfersh to use minio 2023-04-14 23:39:12 -04:00
SeanOMik d0ab5cbc90
Change s3 host in secret, use correct provider 2023-04-14 23:23:13 -04:00
SeanOMik 0de52854c0
Comment out persistence storage for transfersh since its not needed anymore 2023-04-14 23:07:47 -04:00
SeanOMik a78c0db325
Move transfersh to using minio 2023-04-14 23:07:26 -04:00
SeanOMik 1fa5baa588
Use default console address, use correct domain 2023-04-14 22:40:29 -04:00
SeanOMik a8b2ead98e
Change minio mount 2023-04-14 20:20:34 -04:00
SeanOMik 5228ee74a5
Dont use bitnami/minio helm chart 2023-04-14 20:17:25 -04:00
SeanOMik 4b97aa3573
Remove some unneeded fields 2023-04-14 20:01:57 -04:00
SeanOMik e03ba3e4f5
Change name of minio's helmrelease 2023-04-14 19:51:18 -04:00
SeanOMik d72a47cfda
Add minio 2023-04-14 19:49:30 -04:00
SeanOMik ac3f6fe5ba
Add gotify 2023-04-14 00:42:02 -04:00
SeanOMik dc1e1b6390
Add irc namespace to authentik's network policy 2023-04-14 00:31:05 -04:00
SeanOMik 7941f0f466
Use a single docker image with built-in ldap for znc 2023-04-13 23:55:25 -04:00
SeanOMik 76ea851eee
Dont use shared pv, just make a separate one 2023-04-13 22:28:27 -04:00
SeanOMik 4bf41a9d5e
Try to add a sidecar for ldap auth to znc 2023-04-13 22:10:05 -04:00
SeanOMik f27e77256a
Remove authentik middleware from thelounge 2023-04-13 20:59:11 -04:00
SeanOMik c4ce76df54
Fix znc init container 2023-04-13 20:36:56 -04:00
SeanOMik e4b00e4fed
Fix helmrelease syntax error 2023-04-13 14:29:21 -04:00
SeanOMik 45a23d9262
Increase limit of znc ram 2023-04-13 14:21:22 -04:00
SeanOMik e4373a3457
Add modules to znc 2023-04-13 14:10:26 -04:00
SeanOMik 1b3be68ecb
Switch to linuxserver/znc 2023-04-13 13:28:36 -04:00
SeanOMik 2c6e91b32d
Add znc and thelounge 2023-04-13 13:12:47 -04:00
SeanOMik a091dc5120
Use correct issuerRef name 2023-04-13 01:25:19 -04:00
SeanOMik fc5e97e7ae
Use wildcard cert everywhere! 2023-04-13 01:21:06 -04:00
SeanOMik f2252bd6c8
Use wildcard cert for everything in download 2023-04-13 01:13:18 -04:00
SeanOMik 82a3d02cfe
Test this wildcard cert with sonarr 2023-04-13 00:56:51 -04:00
SeanOMik 1ac757aca4
Create a wildcard cert with cert-manager and replicate with kubernetes-replicator 2023-04-13 00:52:05 -04:00
SeanOMik 4b118c55c3
Add some stuff to todo 2023-04-12 21:35:13 -04:00
SeanOMik 539d2f097e
Try to get hastebin working 2023-04-12 21:35:11 -04:00
SeanOMik 86fd311bcb
Use correct redis hostname for hastebin 2023-04-12 21:35:09 -04:00
SeanOMik fa5ce69ffd
Add hastebin 2023-04-12 21:35:07 -04:00
SeanOMik 1c47c0d24a
Add vaultwarden 2023-04-12 21:35:05 -04:00
SeanOMik 03d54588ea
Include tools stuff 2023-04-12 21:35:03 -04:00
SeanOMik 3efad94acf
Change transfersh resource requests 2023-04-12 21:35:02 -04:00
SeanOMik 5cfcd8005e
Move 'utilities' to 'management', add transfersh 2023-04-12 21:35:00 -04:00
SeanOMik 14afb67f86
Remove some other stuff left over from plex 2023-04-12 21:34:58 -04:00
SeanOMik 1593eb5f6d
Remove plex again for now 2023-04-12 21:34:56 -04:00
SeanOMik 4a189df40a
Add traefik entrypoint just for plex 2023-04-12 21:34:54 -04:00
SeanOMik d8bc6927b1
Fix error with plex image name 2023-04-12 21:34:52 -04:00
SeanOMik 9b7df748f4
change env 2023-04-12 21:34:50 -04:00
SeanOMik 6e61e8f237
try linuxserver plex 2023-04-12 21:34:48 -04:00
SeanOMik 0a20b6100c
Fix some small issue with the postgresql pvc 2023-04-12 21:34:46 -04:00
SeanOMik c55f288e0b
typo 2023-04-12 21:34:44 -04:00
SeanOMik 41c8764275
Use helm chart for plex service 2023-04-12 21:34:42 -04:00
SeanOMik 5202b7f3ca
Specify all plex labels 2023-04-12 21:34:40 -04:00
SeanOMik 3d2831e07d
Add LoadBalancer service for plex 2023-04-12 21:34:39 -04:00
SeanOMik fa7ca87e21
Add to todo, specify traefik load balance ip 2023-04-12 21:34:37 -04:00
SeanOMik e880def890
Add media to download networkpolicy 2023-04-12 21:34:33 -04:00
SeanOMik 8cdf3f3df6
Add media namespace selector in authentik 2023-04-12 21:34:31 -04:00
SeanOMik f7bccf739b
Fix guacamole env 2023-04-12 21:34:29 -04:00
SeanOMik 7488c3ec94
Fix utility namespace 2023-04-12 21:34:27 -04:00
SeanOMik 48cee5a1e3
Add Apache Guacamole 2023-04-12 21:34:25 -04:00
SeanOMik 144591b6a3
Add plex 2023-04-12 21:34:23 -04:00
SeanOMik 7291493930
Remove media from authentik's network policy 2023-04-12 21:34:21 -04:00
SeanOMik cee3cb0c30
Move authentik to new domain 2023-04-12 21:34:19 -04:00
SeanOMik 393a25c883
Move media to new domain 2023-04-12 21:34:17 -04:00
SeanOMik 8d07ab975b
Change readarr subdomains 2023-04-12 21:34:15 -04:00
SeanOMik fc167079dc
Typo 2023-04-12 21:34:14 -04:00
SeanOMik 93e4e5c48e
Switch download services to using 'new domain' 2023-04-12 21:34:12 -04:00
SeanOMik 26e1f2f0c5
fix 2023-04-12 21:34:10 -04:00
SeanOMik 9bde15ea4e
fix 2023-04-12 21:34:08 -04:00
SeanOMik 8b8c26da7b
fix 2023-04-12 21:34:06 -04:00
SeanOMik 1436e7235d
fix 2023-04-12 21:34:04 -04:00
SeanOMik eed5c7098a
fix 2023-04-12 21:34:02 -04:00
SeanOMik b8c9f83b5d
fix error 2023-04-12 21:34:00 -04:00
SeanOMik 58d36abd84
fix error 2023-04-12 21:33:58 -04:00
SeanOMik d0566e7176
Create pvc for postgresql 2023-04-12 21:33:56 -04:00
SeanOMik 36949d5b37
try again 2023-04-12 21:33:54 -04:00
SeanOMik 65d82ab2fd
Try to get working 2023-04-12 21:33:52 -04:00
SeanOMik f0d61e461d
Try to get working 2023-04-12 21:33:50 -04:00
SeanOMik 6caca9aeac
Set decryption for secrets kustomization 2023-04-12 21:33:48 -04:00
SeanOMik 7af20b05f5
Try to fix 2023-04-12 21:33:45 -04:00
SeanOMik 9f41637c9d
Try to fix 2023-04-12 21:33:43 -04:00
SeanOMik 4e74863d88
Try to fix 2023-04-12 21:33:41 -04:00
SeanOMik c1229216ad
Remove timeouts 2023-04-12 21:33:39 -04:00
SeanOMik dcb8f394ff
Change domain secret name 2023-04-12 21:33:37 -04:00
SeanOMik 18b11570e2
Move cluster secrets to secrets folder 2023-04-12 21:33:35 -04:00
SeanOMik 0db470d757
Set pod labels for jellyfin and jellyseerr 2023-04-12 21:33:33 -04:00
SeanOMik 88cd228c56
Make domain a secret 2023-04-12 21:33:31 -04:00
SeanOMik fd96e62be6
Change traefik ingressroute host 2023-04-12 21:33:29 -04:00
SeanOMik 042a85d769
Fix jellyserr 2023-04-12 21:33:27 -04:00
SeanOMik 185019d9a3
Fix unpackerr 2023-04-12 21:33:25 -04:00
SeanOMik 7c818bb6fc
Add unpackerr, jellyserr, and audiobookshelf 2023-04-12 21:33:23 -04:00
SeanOMik 8b96a73ec4
Add namespace selector to authentik network policy 2023-04-12 21:33:22 -04:00
SeanOMik 40d64865bc
Change jellyfin limits 2023-04-12 21:33:20 -04:00
SeanOMik 54708930a6
Add label to jellyfin 2023-04-12 21:33:18 -04:00
SeanOMik 28b2d2eff8
Use an embedded ldap outpost 2023-04-12 21:33:16 -04:00
SeanOMik e42710d645
Remove startup probe 2023-04-12 21:33:14 -04:00
SeanOMik b14158e324
Change authentik ldap outpost key 2023-04-12 21:33:12 -04:00
SeanOMik 191ad6ee09
Change host for authentik ldap 2023-04-12 21:33:10 -04:00
SeanOMik 4be4ca15db
Fix error with traefik helm chart 2023-04-12 21:33:08 -04:00
SeanOMik 981ea01139
Change authentik host for ldap outpost 2023-04-12 21:33:06 -04:00
SeanOMik e7f20db8a2
Add jellyfin, add authentik ldap outpost 2023-04-12 21:33:04 -04:00
SeanOMik f106257feb
Use traefik helm chart for dashboard ingress 2023-04-12 21:33:02 -04:00
SeanOMik 6b38f1e1da
Add authentik middleware to traefik dashboard 2023-04-12 21:33:00 -04:00
SeanOMik 1b0ead728d
Add kavita 2023-04-12 21:32:58 -04:00
SeanOMik 0cb3df9663
Add komga 2023-04-12 21:32:56 -04:00
SeanOMik db8d2b5747
Add limit to cronjob history 2023-04-12 21:32:55 -04:00
SeanOMik 6b6e7210e6
Add cronjob to clear mylar3 cache 2023-04-12 21:32:53 -04:00
SeanOMik a9785e696d
Accidentally used mylar instead of mylar3 2023-04-12 21:32:51 -04:00
SeanOMik 449c03a90c
Add mylar 2023-04-12 21:32:49 -04:00
SeanOMik c64aaaff34
Change tag for readarr, remove bazarr liveness check 2023-04-12 21:32:47 -04:00
SeanOMik c9a0b5de94
Add readarr audiobooks and ebooks and bazarr 2023-04-12 21:32:45 -04:00
SeanOMik 39671653a6
Remove radarr health checks 2023-04-12 21:32:43 -04:00
SeanOMik f3d27f1ca2
Change radarr liveness probe 2023-04-12 21:32:41 -04:00
SeanOMik 481318eee7
Replace confusing mistake 2023-04-12 21:32:39 -04:00
SeanOMik fecb77b3e1
Use app-template for radarr and sonarr 2023-04-12 21:32:37 -04:00
SeanOMik 1fbf9a6699
Fix error with prowlarr app-template 2023-04-12 21:32:35 -04:00
SeanOMik e72d4c0897
Add prowlarr, dont include media for now 2023-04-12 21:32:33 -04:00
SeanOMik 91bcb10730
Fix more errors 2023-04-12 21:32:31 -04:00
SeanOMik ee7cf68b37
Fix errors again 2023-04-12 21:32:30 -04:00
SeanOMik b6add80144
Fix error 2023-04-12 21:32:28 -04:00
SeanOMik 0ffcd5414e
Change 'vpn-pods' to 'qbittorrent' and move it inside the download ns 2023-04-12 21:32:26 -04:00
SeanOMik da721e4244
Add authentik middleware to qbittorrent ingress 2023-04-12 21:32:24 -04:00
SeanOMik 0e874da754
Add authentik middleware to radarr ingress 2023-04-12 21:32:22 -04:00
SeanOMik 7e039d927c
Change address in authentik middleware 2023-04-12 21:32:20 -04:00
SeanOMik c2ff6275ee
Try to specify host env for authentik 2023-04-12 21:32:18 -04:00
SeanOMik af4d2efdca
Use the correct middleware name for the sonarr ingress 2023-04-12 21:32:16 -04:00
SeanOMik 9f299e4428
Use authentik middleware for sonarr 2023-04-12 21:32:14 -04:00
SeanOMik 414c15cd20
Dont log debug 2023-04-12 21:32:12 -04:00
SeanOMik 3d45245312
Set secret key with secret 2023-04-12 21:32:10 -04:00
SeanOMik efc26369ae
Add pgadmin4 2023-04-12 21:32:08 -04:00
SeanOMik 8f50dc9b6b
Set authentik secret key with secret 2023-04-12 21:32:06 -04:00
SeanOMik f933e23d1c
Use secrets for authentik's database stuff 2023-04-12 21:32:04 -04:00
SeanOMik a1b15de4b2
Try admin user 2023-04-12 21:32:03 -04:00
SeanOMik 17d43fa167
Try to get authentik working 2023-04-12 21:32:01 -04:00
SeanOMik 4ef3904182
Set authentik to debug log level 2023-04-12 21:31:59 -04:00
SeanOMik 495d8c83ce
Add label to authentik helm-release 2023-04-12 21:31:57 -04:00
SeanOMik af4a0d4409
Add annotations to authentik's ingress annotations 2023-04-12 21:31:55 -04:00
SeanOMik 2b7d318583
Change authentik helmrelease name 2023-04-12 21:31:53 -04:00
SeanOMik 0fab5dc1c6
Fix error 2023-04-12 21:31:51 -04:00
SeanOMik 099fb2222a
Typo 2023-04-12 21:31:49 -04:00
SeanOMik 78fd4a9cbc
Add authentik 2023-04-12 21:31:47 -04:00
SeanOMik 6970577b47
Forgot to include redis 2023-04-12 21:31:45 -04:00
SeanOMik b02f0f68fa
Remove services, the helms include them already 2023-04-12 21:31:43 -04:00
SeanOMik ec9ea8d2a7
Include database resources 2023-04-12 21:31:41 -04:00
SeanOMik 83549ffa10
Add redis and postgresql databases 2023-04-12 21:31:39 -04:00
SeanOMik a90f0fa700
Remove ports on vpn sidecar 2023-04-12 21:31:38 -04:00
SeanOMik 60e8e0ff44
Swap to using a sidecar container with qbittorrent 2023-04-12 21:31:36 -04:00
SeanOMik ea3121fb3c
Specify some settings for vpn-gateway helm 2023-04-12 21:31:34 -04:00
SeanOMik bf9e3763f4
Try different chart for pod-gateway 2023-04-12 21:31:32 -04:00
SeanOMik 5c1087d7bf
Remove useless comments 2023-04-12 21:31:30 -04:00
SeanOMik 0d8ce4453b
Attempt to get traefik ingress working 2023-04-12 21:31:28 -04:00
SeanOMik a202764784
Try to get traefik dashboard ingress working 2023-04-12 21:31:26 -04:00
SeanOMik 0b466607c2
Use LE certs for radarr, and sonarr 2023-04-12 21:31:24 -04:00
SeanOMik 7c387b8bac
Revert "CreateReplace crds"
This reverts commit 8c6734ed7b621e0cbda93afe0e0c8fb8b139b2a6.
2023-04-12 21:31:22 -04:00
SeanOMik 65656f2875
Revert "Try to enable metallb crds"
This reverts commit de5c9ebf7d0f7ca08fdab509a0f43ef998baa05e.
2023-04-12 21:31:20 -04:00
SeanOMik 9eb566d2c8
Set path for crds-metallb 2023-04-12 21:31:18 -04:00
SeanOMik 475033f931
Try to enable metallb crds 2023-04-12 21:31:16 -04:00
SeanOMik dc39678ec5
CreateReplace crds 2023-04-12 21:31:14 -04:00
SeanOMik ddd5d22c38
Dont install crds 2023-04-12 21:31:12 -04:00
SeanOMik 19ec3b8361
Remove reference to traefik sops secrets 2023-04-12 21:31:11 -04:00
SeanOMik 685884a941
Add cert-manager namespace 2023-04-12 21:31:09 -04:00
SeanOMik 90bd288d1c
Fix not found error 2023-04-12 21:31:07 -04:00
SeanOMik c043c6febb
Move a lot of stuff around 2023-04-12 21:31:05 -04:00
SeanOMik 3a09735413
Pin to specific version 2023-04-12 21:31:03 -04:00
SeanOMik 45b8b759e4
Change pod-gateway version 2023-04-12 21:31:01 -04:00
SeanOMik 7ed305edea
Add vpn-gateway 2023-04-12 21:30:59 -04:00
SeanOMik f7d7b24d98
Revert "Use flux kustomization for metallb depends"
This reverts commit 1cd0b96d0409dcc1b25f9fe44ac23c975a30b41b.
2023-04-12 21:30:57 -04:00
SeanOMik 647198ef99
Use flux kustomization for metallb depends 2023-04-12 21:30:55 -04:00
SeanOMik a24f0ec34e
Add name label to traefik namespace 2023-04-12 21:30:53 -04:00
SeanOMik 3ddb2acd6f
Add traefik to media network policy 2023-04-12 21:30:51 -04:00
SeanOMik 6d91d0846d
Add it back in 2023-04-12 21:30:49 -04:00
SeanOMik 104fe69d99
Temporarily remove static ips 2023-04-12 21:30:47 -04:00
SeanOMik c6aee543e6
Try to get network policy working 2023-04-12 21:30:46 -04:00
SeanOMik 124b797e1a
Remove that media policy 2023-04-12 21:30:44 -04:00
SeanOMik 98ed6008e5
Change media label 2023-04-12 21:30:42 -04:00
SeanOMik 788f91bb1e
Fix error 2023-04-12 21:30:40 -04:00
SeanOMik 24cde20004
idk 2023-04-12 21:30:38 -04:00
SeanOMik 73664f4e17
Create media network policy 2023-04-12 21:30:36 -04:00
SeanOMik 508b65bcb2
Use correct helm repo for tigera 2023-04-12 21:30:34 -04:00
SeanOMik 9a695f29c0
Try to fix l2 advertisement 2023-04-12 21:30:32 -04:00
SeanOMik 834cfabeeb
Add calico 2023-04-12 21:30:30 -04:00
SeanOMik 06ed73297e
Add radarr 2023-04-12 21:30:28 -04:00
SeanOMik c49b85045c
Change sonarr ingress port 2023-04-12 21:30:26 -04:00
SeanOMik f804971841
Fix maybe 2023-04-12 21:30:24 -04:00
SeanOMik 336f2849bb
Fix error 2023-04-12 21:30:22 -04:00
SeanOMik fad96e4fee
Fix error 2023-04-12 21:30:21 -04:00
SeanOMik 86d24f7799
Add sonarr 2023-04-12 21:30:19 -04:00
SeanOMik 677445fdaa
Add local-path-provisioner just in case 2023-04-12 21:30:17 -04:00
SeanOMik da280d229b
I dont think I need raw 2023-04-12 21:30:15 -04:00
SeanOMik 89daa3a89a
Try again 2023-04-12 21:30:13 -04:00
SeanOMik 089db494c5
Change raw helm chart 2023-04-12 21:30:11 -04:00
SeanOMik 62f99b1379
Fix error 2023-04-12 21:30:09 -04:00
SeanOMik 540b683b0e
try again 2023-04-12 21:30:07 -04:00
SeanOMik 6463458ab2
oops 2023-04-12 21:30:05 -04:00
SeanOMik 9650216b99
Attempt to get longhorn working on nixos 2023-04-12 21:30:03 -04:00
SeanOMik b1249c5d48
Add longhorn 2023-04-12 21:30:01 -04:00
SeanOMik bab5543e4d
Dont configure traefik's load balancer service 2023-04-12 21:29:59 -04:00
SeanOMik 735be23ba4
Move things around 2023-04-12 21:29:57 -04:00
SeanOMik f1d75d667a
I'm stumped 2023-04-12 21:29:55 -04:00
SeanOMik 4c28ebea46
Use an ingress route 2023-04-12 21:29:54 -04:00
SeanOMik d4ae2055a7
Completely rewrite the traefik ingress 2023-04-12 21:29:52 -04:00
SeanOMik 540778c368
Oops, typo 2023-04-12 21:29:50 -04:00
SeanOMik ac9812b60d
Manually create a ingress resource for traefik dashboard 2023-04-12 21:29:48 -04:00
SeanOMik a26d94a5ac
Set only one entry point 2023-04-12 21:29:46 -04:00
SeanOMik 531f255933
Try to fix traefik 2023-04-12 21:29:44 -04:00
SeanOMik c0b9baab87
Change rule one more time 2023-04-12 21:29:42 -04:00
SeanOMik 75fa1fcc8d
Change dashboard entrypoint 2023-04-12 21:29:40 -04:00
SeanOMik 3215cbfde5
Add host for traefik dashboard ingress 2023-04-12 21:29:38 -04:00
SeanOMik 30830a6120
Change traefik values 2023-04-02 20:01:37 -04:00
SeanOMik 87f8818c2b
Enable traefik dashboard ingress 2023-04-02 19:52:37 -04:00
SeanOMik 1ea905ec3a
Add traefik and metrics values to traefik 2023-04-02 17:03:02 -04:00
SeanOMik 1c08810bf7
Specify true for crds 2023-04-02 16:35:58 -04:00
SeanOMik 2cb28a251e
Add it back in 2023-04-02 16:35:33 -04:00
SeanOMik 02653ab311
comment out static ips for a bit 2023-04-02 16:34:54 -04:00
SeanOMik 37ea633618
Include metallb crds 2023-04-02 16:33:48 -04:00
SeanOMik 155c1479bc
Add static ips again 2023-04-02 16:09:00 -04:00
SeanOMik 4c809ae8ab
Comment out static-ips for now 2023-04-02 16:07:19 -04:00
SeanOMik 619fd321fb
Try to get metallb working 2023-04-02 15:47:47 -04:00
SeanOMik 27ce643071
Add namespace manifests 2023-04-02 15:27:09 -04:00
SeanOMik ae1f53b4bc
Remove podinfo, add metallb 2023-04-02 15:25:25 -04:00
SeanOMik f076e6ff00
Define values in release.yaml 2023-04-02 15:18:48 -04:00
SeanOMik f841383021
Remove unused comments 2023-04-02 15:11:57 -04:00
SeanOMik b78374e434
Try to get traefik helm working 2023-04-02 14:41:12 -04:00
SeanOMik 49a8d53cbf
Change podinfo kustomization 2023-04-02 14:36:33 -04:00
SeanOMik 77bda86adc
Add podinfo for testing 2023-04-02 14:35:53 -04:00
SeanOMik b84baec12f
Change traefik chart 2023-04-02 14:26:12 -04:00
SeanOMik 5dba3891d8
Try to get traefik helm working 2023-04-02 14:20:08 -04:00
SeanOMik ca8f22db3f
Remove unused things, make secret fields a string 2023-04-02 14:05:38 -04:00
SeanOMik 2a4da01d16
Change 'source' to 'resources' 2023-04-02 13:54:23 -04:00
SeanOMik 0d4c97e3d9
Enable decryption in gotk-sync.yaml 2023-04-02 13:53:20 -04:00
SeanOMik 9daa7a9575
Move apps.yaml 2023-04-02 13:46:40 -04:00
SeanOMik 01482cc6db
Add flux/apps.yaml 2023-04-02 13:46:01 -04:00
SeanOMik 514414c4b0
Dont use ksops, maybe 2023-04-02 13:39:06 -04:00
SeanOMik 2ae133a7e2
Attempt to add traefik with sops secrets 2023-04-02 13:34:20 -04:00
Flux 6e749490cf Add Flux sync manifests 2023-04-02 12:58:44 -04:00
Flux c8fc720b5f Add Flux v0.31.1 component manifests 2023-04-02 12:58:35 -04:00