Commit Graph

425 Commits

Author SHA1 Message Date
SeanOMik a78c0db325
Move transfersh to using minio 2023-04-14 23:07:26 -04:00
SeanOMik 1fa5baa588
Use default console address, use correct domain 2023-04-14 22:40:29 -04:00
SeanOMik a8b2ead98e
Change minio mount 2023-04-14 20:20:34 -04:00
SeanOMik 5228ee74a5
Dont use bitnami/minio helm chart 2023-04-14 20:17:25 -04:00
SeanOMik 4b97aa3573
Remove some unneeded fields 2023-04-14 20:01:57 -04:00
SeanOMik e03ba3e4f5
Change name of minio's helmrelease 2023-04-14 19:51:18 -04:00
SeanOMik d72a47cfda
Add minio 2023-04-14 19:49:30 -04:00
SeanOMik ac3f6fe5ba
Add gotify 2023-04-14 00:42:02 -04:00
SeanOMik dc1e1b6390
Add irc namespace to authentik's network policy 2023-04-14 00:31:05 -04:00
SeanOMik 7941f0f466
Use a single docker image with built-in ldap for znc 2023-04-13 23:55:25 -04:00
SeanOMik 76ea851eee
Dont use shared pv, just make a separate one 2023-04-13 22:28:27 -04:00
SeanOMik 4bf41a9d5e
Try to add a sidecar for ldap auth to znc 2023-04-13 22:10:05 -04:00
SeanOMik f27e77256a
Remove authentik middleware from thelounge 2023-04-13 20:59:11 -04:00
SeanOMik c4ce76df54
Fix znc init container 2023-04-13 20:36:56 -04:00
SeanOMik e4b00e4fed
Fix helmrelease syntax error 2023-04-13 14:29:21 -04:00
SeanOMik 45a23d9262
Increase limit of znc ram 2023-04-13 14:21:22 -04:00
SeanOMik e4373a3457
Add modules to znc 2023-04-13 14:10:26 -04:00
SeanOMik 1b3be68ecb
Switch to linuxserver/znc 2023-04-13 13:28:36 -04:00
SeanOMik 2c6e91b32d
Add znc and thelounge 2023-04-13 13:12:47 -04:00
SeanOMik a091dc5120
Use correct issuerRef name 2023-04-13 01:25:19 -04:00
SeanOMik fc5e97e7ae
Use wildcard cert everywhere! 2023-04-13 01:21:06 -04:00
SeanOMik f2252bd6c8
Use wildcard cert for everything in download 2023-04-13 01:13:18 -04:00
SeanOMik 82a3d02cfe
Test this wildcard cert with sonarr 2023-04-13 00:56:51 -04:00
SeanOMik 1ac757aca4
Create a wildcard cert with cert-manager and replicate with kubernetes-replicator 2023-04-13 00:52:05 -04:00
SeanOMik 4b118c55c3
Add some stuff to todo 2023-04-12 21:35:13 -04:00
SeanOMik 539d2f097e
Try to get hastebin working 2023-04-12 21:35:11 -04:00
SeanOMik 86fd311bcb
Use correct redis hostname for hastebin 2023-04-12 21:35:09 -04:00
SeanOMik fa5ce69ffd
Add hastebin 2023-04-12 21:35:07 -04:00
SeanOMik 1c47c0d24a
Add vaultwarden 2023-04-12 21:35:05 -04:00
SeanOMik 03d54588ea
Include tools stuff 2023-04-12 21:35:03 -04:00
SeanOMik 3efad94acf
Change transfersh resource requests 2023-04-12 21:35:02 -04:00
SeanOMik 5cfcd8005e
Move 'utilities' to 'management', add transfersh 2023-04-12 21:35:00 -04:00
SeanOMik 14afb67f86
Remove some other stuff left over from plex 2023-04-12 21:34:58 -04:00
SeanOMik 1593eb5f6d
Remove plex again for now 2023-04-12 21:34:56 -04:00
SeanOMik 4a189df40a
Add traefik entrypoint just for plex 2023-04-12 21:34:54 -04:00
SeanOMik d8bc6927b1
Fix error with plex image name 2023-04-12 21:34:52 -04:00
SeanOMik 9b7df748f4
change env 2023-04-12 21:34:50 -04:00
SeanOMik 6e61e8f237
try linuxserver plex 2023-04-12 21:34:48 -04:00
SeanOMik 0a20b6100c
Fix some small issue with the postgresql pvc 2023-04-12 21:34:46 -04:00
SeanOMik c55f288e0b
typo 2023-04-12 21:34:44 -04:00
SeanOMik 41c8764275
Use helm chart for plex service 2023-04-12 21:34:42 -04:00
SeanOMik 5202b7f3ca
Specify all plex labels 2023-04-12 21:34:40 -04:00
SeanOMik 3d2831e07d
Add LoadBalancer service for plex 2023-04-12 21:34:39 -04:00
SeanOMik fa7ca87e21
Add to todo, specify traefik load balance ip 2023-04-12 21:34:37 -04:00
SeanOMik e880def890
Add media to download networkpolicy 2023-04-12 21:34:33 -04:00
SeanOMik 8cdf3f3df6
Add media namespace selector in authentik 2023-04-12 21:34:31 -04:00
SeanOMik f7bccf739b
Fix guacamole env 2023-04-12 21:34:29 -04:00
SeanOMik 7488c3ec94
Fix utility namespace 2023-04-12 21:34:27 -04:00
SeanOMik 48cee5a1e3
Add Apache Guacamole 2023-04-12 21:34:25 -04:00
SeanOMik 144591b6a3
Add plex 2023-04-12 21:34:23 -04:00
SeanOMik 7291493930
Remove media from authentik's network policy 2023-04-12 21:34:21 -04:00
SeanOMik cee3cb0c30
Move authentik to new domain 2023-04-12 21:34:19 -04:00
SeanOMik 393a25c883
Move media to new domain 2023-04-12 21:34:17 -04:00
SeanOMik 8d07ab975b
Change readarr subdomains 2023-04-12 21:34:15 -04:00
SeanOMik fc167079dc
Typo 2023-04-12 21:34:14 -04:00
SeanOMik 93e4e5c48e
Switch download services to using 'new domain' 2023-04-12 21:34:12 -04:00
SeanOMik 26e1f2f0c5
fix 2023-04-12 21:34:10 -04:00
SeanOMik 9bde15ea4e
fix 2023-04-12 21:34:08 -04:00
SeanOMik 8b8c26da7b
fix 2023-04-12 21:34:06 -04:00
SeanOMik 1436e7235d
fix 2023-04-12 21:34:04 -04:00
SeanOMik eed5c7098a
fix 2023-04-12 21:34:02 -04:00
SeanOMik b8c9f83b5d
fix error 2023-04-12 21:34:00 -04:00
SeanOMik 58d36abd84
fix error 2023-04-12 21:33:58 -04:00
SeanOMik d0566e7176
Create pvc for postgresql 2023-04-12 21:33:56 -04:00
SeanOMik 36949d5b37
try again 2023-04-12 21:33:54 -04:00
SeanOMik 65d82ab2fd
Try to get working 2023-04-12 21:33:52 -04:00
SeanOMik f0d61e461d
Try to get working 2023-04-12 21:33:50 -04:00
SeanOMik 6caca9aeac
Set decryption for secrets kustomization 2023-04-12 21:33:48 -04:00
SeanOMik 7af20b05f5
Try to fix 2023-04-12 21:33:45 -04:00
SeanOMik 9f41637c9d
Try to fix 2023-04-12 21:33:43 -04:00
SeanOMik 4e74863d88
Try to fix 2023-04-12 21:33:41 -04:00
SeanOMik c1229216ad
Remove timeouts 2023-04-12 21:33:39 -04:00
SeanOMik dcb8f394ff
Change domain secret name 2023-04-12 21:33:37 -04:00
SeanOMik 18b11570e2
Move cluster secrets to secrets folder 2023-04-12 21:33:35 -04:00
SeanOMik 0db470d757
Set pod labels for jellyfin and jellyseerr 2023-04-12 21:33:33 -04:00
SeanOMik 88cd228c56
Make domain a secret 2023-04-12 21:33:31 -04:00
SeanOMik fd96e62be6
Change traefik ingressroute host 2023-04-12 21:33:29 -04:00
SeanOMik 042a85d769
Fix jellyserr 2023-04-12 21:33:27 -04:00
SeanOMik 185019d9a3
Fix unpackerr 2023-04-12 21:33:25 -04:00
SeanOMik 7c818bb6fc
Add unpackerr, jellyserr, and audiobookshelf 2023-04-12 21:33:23 -04:00
SeanOMik 8b96a73ec4
Add namespace selector to authentik network policy 2023-04-12 21:33:22 -04:00
SeanOMik 40d64865bc
Change jellyfin limits 2023-04-12 21:33:20 -04:00
SeanOMik 54708930a6
Add label to jellyfin 2023-04-12 21:33:18 -04:00
SeanOMik 28b2d2eff8
Use an embedded ldap outpost 2023-04-12 21:33:16 -04:00
SeanOMik e42710d645
Remove startup probe 2023-04-12 21:33:14 -04:00
SeanOMik b14158e324
Change authentik ldap outpost key 2023-04-12 21:33:12 -04:00
SeanOMik 191ad6ee09
Change host for authentik ldap 2023-04-12 21:33:10 -04:00
SeanOMik 4be4ca15db
Fix error with traefik helm chart 2023-04-12 21:33:08 -04:00
SeanOMik 981ea01139
Change authentik host for ldap outpost 2023-04-12 21:33:06 -04:00
SeanOMik e7f20db8a2
Add jellyfin, add authentik ldap outpost 2023-04-12 21:33:04 -04:00
SeanOMik f106257feb
Use traefik helm chart for dashboard ingress 2023-04-12 21:33:02 -04:00
SeanOMik 6b38f1e1da
Add authentik middleware to traefik dashboard 2023-04-12 21:33:00 -04:00
SeanOMik 1b0ead728d
Add kavita 2023-04-12 21:32:58 -04:00
SeanOMik 0cb3df9663
Add komga 2023-04-12 21:32:56 -04:00
SeanOMik db8d2b5747
Add limit to cronjob history 2023-04-12 21:32:55 -04:00
SeanOMik 6b6e7210e6
Add cronjob to clear mylar3 cache 2023-04-12 21:32:53 -04:00
SeanOMik a9785e696d
Accidentally used mylar instead of mylar3 2023-04-12 21:32:51 -04:00
SeanOMik 449c03a90c
Add mylar 2023-04-12 21:32:49 -04:00
SeanOMik c64aaaff34
Change tag for readarr, remove bazarr liveness check 2023-04-12 21:32:47 -04:00
SeanOMik c9a0b5de94
Add readarr audiobooks and ebooks and bazarr 2023-04-12 21:32:45 -04:00
SeanOMik 39671653a6
Remove radarr health checks 2023-04-12 21:32:43 -04:00
SeanOMik f3d27f1ca2
Change radarr liveness probe 2023-04-12 21:32:41 -04:00
SeanOMik 481318eee7
Replace confusing mistake 2023-04-12 21:32:39 -04:00
SeanOMik fecb77b3e1
Use app-template for radarr and sonarr 2023-04-12 21:32:37 -04:00
SeanOMik 1fbf9a6699
Fix error with prowlarr app-template 2023-04-12 21:32:35 -04:00
SeanOMik e72d4c0897
Add prowlarr, dont include media for now 2023-04-12 21:32:33 -04:00
SeanOMik 91bcb10730
Fix more errors 2023-04-12 21:32:31 -04:00
SeanOMik ee7cf68b37
Fix errors again 2023-04-12 21:32:30 -04:00
SeanOMik b6add80144
Fix error 2023-04-12 21:32:28 -04:00
SeanOMik 0ffcd5414e
Change 'vpn-pods' to 'qbittorrent' and move it inside the download ns 2023-04-12 21:32:26 -04:00
SeanOMik da721e4244
Add authentik middleware to qbittorrent ingress 2023-04-12 21:32:24 -04:00
SeanOMik 0e874da754
Add authentik middleware to radarr ingress 2023-04-12 21:32:22 -04:00
SeanOMik 7e039d927c
Change address in authentik middleware 2023-04-12 21:32:20 -04:00
SeanOMik c2ff6275ee
Try to specify host env for authentik 2023-04-12 21:32:18 -04:00
SeanOMik af4d2efdca
Use the correct middleware name for the sonarr ingress 2023-04-12 21:32:16 -04:00
SeanOMik 9f299e4428
Use authentik middleware for sonarr 2023-04-12 21:32:14 -04:00
SeanOMik 414c15cd20
Dont log debug 2023-04-12 21:32:12 -04:00
SeanOMik 3d45245312
Set secret key with secret 2023-04-12 21:32:10 -04:00
SeanOMik efc26369ae
Add pgadmin4 2023-04-12 21:32:08 -04:00
SeanOMik 8f50dc9b6b
Set authentik secret key with secret 2023-04-12 21:32:06 -04:00
SeanOMik f933e23d1c
Use secrets for authentik's database stuff 2023-04-12 21:32:04 -04:00
SeanOMik a1b15de4b2
Try admin user 2023-04-12 21:32:03 -04:00
SeanOMik 17d43fa167
Try to get authentik working 2023-04-12 21:32:01 -04:00
SeanOMik 4ef3904182
Set authentik to debug log level 2023-04-12 21:31:59 -04:00
SeanOMik 495d8c83ce
Add label to authentik helm-release 2023-04-12 21:31:57 -04:00
SeanOMik af4a0d4409
Add annotations to authentik's ingress annotations 2023-04-12 21:31:55 -04:00
SeanOMik 2b7d318583
Change authentik helmrelease name 2023-04-12 21:31:53 -04:00
SeanOMik 0fab5dc1c6
Fix error 2023-04-12 21:31:51 -04:00
SeanOMik 099fb2222a
Typo 2023-04-12 21:31:49 -04:00
SeanOMik 78fd4a9cbc
Add authentik 2023-04-12 21:31:47 -04:00
SeanOMik 6970577b47
Forgot to include redis 2023-04-12 21:31:45 -04:00
SeanOMik b02f0f68fa
Remove services, the helms include them already 2023-04-12 21:31:43 -04:00
SeanOMik ec9ea8d2a7
Include database resources 2023-04-12 21:31:41 -04:00
SeanOMik 83549ffa10
Add redis and postgresql databases 2023-04-12 21:31:39 -04:00
SeanOMik a90f0fa700
Remove ports on vpn sidecar 2023-04-12 21:31:38 -04:00
SeanOMik 60e8e0ff44
Swap to using a sidecar container with qbittorrent 2023-04-12 21:31:36 -04:00
SeanOMik ea3121fb3c
Specify some settings for vpn-gateway helm 2023-04-12 21:31:34 -04:00
SeanOMik bf9e3763f4
Try different chart for pod-gateway 2023-04-12 21:31:32 -04:00
SeanOMik 5c1087d7bf
Remove useless comments 2023-04-12 21:31:30 -04:00
SeanOMik 0d8ce4453b
Attempt to get traefik ingress working 2023-04-12 21:31:28 -04:00
SeanOMik a202764784
Try to get traefik dashboard ingress working 2023-04-12 21:31:26 -04:00
SeanOMik 0b466607c2
Use LE certs for radarr, and sonarr 2023-04-12 21:31:24 -04:00
SeanOMik 7c387b8bac
Revert "CreateReplace crds"
This reverts commit 8c6734ed7b621e0cbda93afe0e0c8fb8b139b2a6.
2023-04-12 21:31:22 -04:00
SeanOMik 65656f2875
Revert "Try to enable metallb crds"
This reverts commit de5c9ebf7d0f7ca08fdab509a0f43ef998baa05e.
2023-04-12 21:31:20 -04:00
SeanOMik 9eb566d2c8
Set path for crds-metallb 2023-04-12 21:31:18 -04:00
SeanOMik 475033f931
Try to enable metallb crds 2023-04-12 21:31:16 -04:00
SeanOMik dc39678ec5
CreateReplace crds 2023-04-12 21:31:14 -04:00
SeanOMik ddd5d22c38
Dont install crds 2023-04-12 21:31:12 -04:00
SeanOMik 19ec3b8361
Remove reference to traefik sops secrets 2023-04-12 21:31:11 -04:00
SeanOMik 685884a941
Add cert-manager namespace 2023-04-12 21:31:09 -04:00
SeanOMik 90bd288d1c
Fix not found error 2023-04-12 21:31:07 -04:00
SeanOMik c043c6febb
Move a lot of stuff around 2023-04-12 21:31:05 -04:00
SeanOMik 3a09735413
Pin to specific version 2023-04-12 21:31:03 -04:00
SeanOMik 45b8b759e4
Change pod-gateway version 2023-04-12 21:31:01 -04:00
SeanOMik 7ed305edea
Add vpn-gateway 2023-04-12 21:30:59 -04:00
SeanOMik f7d7b24d98
Revert "Use flux kustomization for metallb depends"
This reverts commit 1cd0b96d0409dcc1b25f9fe44ac23c975a30b41b.
2023-04-12 21:30:57 -04:00
SeanOMik 647198ef99
Use flux kustomization for metallb depends 2023-04-12 21:30:55 -04:00
SeanOMik a24f0ec34e
Add name label to traefik namespace 2023-04-12 21:30:53 -04:00
SeanOMik 3ddb2acd6f
Add traefik to media network policy 2023-04-12 21:30:51 -04:00
SeanOMik 6d91d0846d
Add it back in 2023-04-12 21:30:49 -04:00
SeanOMik 104fe69d99
Temporarily remove static ips 2023-04-12 21:30:47 -04:00
SeanOMik c6aee543e6
Try to get network policy working 2023-04-12 21:30:46 -04:00
SeanOMik 124b797e1a
Remove that media policy 2023-04-12 21:30:44 -04:00
SeanOMik 98ed6008e5
Change media label 2023-04-12 21:30:42 -04:00
SeanOMik 788f91bb1e
Fix error 2023-04-12 21:30:40 -04:00
SeanOMik 24cde20004
idk 2023-04-12 21:30:38 -04:00
SeanOMik 73664f4e17
Create media network policy 2023-04-12 21:30:36 -04:00
SeanOMik 508b65bcb2
Use correct helm repo for tigera 2023-04-12 21:30:34 -04:00
SeanOMik 9a695f29c0
Try to fix l2 advertisement 2023-04-12 21:30:32 -04:00
SeanOMik 834cfabeeb
Add calico 2023-04-12 21:30:30 -04:00
SeanOMik 06ed73297e
Add radarr 2023-04-12 21:30:28 -04:00
SeanOMik c49b85045c
Change sonarr ingress port 2023-04-12 21:30:26 -04:00
SeanOMik f804971841
Fix maybe 2023-04-12 21:30:24 -04:00
SeanOMik 336f2849bb
Fix error 2023-04-12 21:30:22 -04:00
SeanOMik fad96e4fee
Fix error 2023-04-12 21:30:21 -04:00
SeanOMik 86d24f7799
Add sonarr 2023-04-12 21:30:19 -04:00
SeanOMik 677445fdaa
Add local-path-provisioner just in case 2023-04-12 21:30:17 -04:00
SeanOMik da280d229b
I dont think I need raw 2023-04-12 21:30:15 -04:00
SeanOMik 89daa3a89a
Try again 2023-04-12 21:30:13 -04:00
SeanOMik 089db494c5
Change raw helm chart 2023-04-12 21:30:11 -04:00
SeanOMik 62f99b1379
Fix error 2023-04-12 21:30:09 -04:00
SeanOMik 540b683b0e
try again 2023-04-12 21:30:07 -04:00
SeanOMik 6463458ab2
oops 2023-04-12 21:30:05 -04:00
SeanOMik 9650216b99
Attempt to get longhorn working on nixos 2023-04-12 21:30:03 -04:00
SeanOMik b1249c5d48
Add longhorn 2023-04-12 21:30:01 -04:00
SeanOMik bab5543e4d
Dont configure traefik's load balancer service 2023-04-12 21:29:59 -04:00
SeanOMik 735be23ba4
Move things around 2023-04-12 21:29:57 -04:00
SeanOMik f1d75d667a
I'm stumped 2023-04-12 21:29:55 -04:00
SeanOMik 4c28ebea46
Use an ingress route 2023-04-12 21:29:54 -04:00
SeanOMik d4ae2055a7
Completely rewrite the traefik ingress 2023-04-12 21:29:52 -04:00
SeanOMik 540778c368
Oops, typo 2023-04-12 21:29:50 -04:00
SeanOMik ac9812b60d
Manually create a ingress resource for traefik dashboard 2023-04-12 21:29:48 -04:00
SeanOMik a26d94a5ac
Set only one entry point 2023-04-12 21:29:46 -04:00
SeanOMik 531f255933
Try to fix traefik 2023-04-12 21:29:44 -04:00
SeanOMik c0b9baab87
Change rule one more time 2023-04-12 21:29:42 -04:00
SeanOMik 75fa1fcc8d
Change dashboard entrypoint 2023-04-12 21:29:40 -04:00
SeanOMik 3215cbfde5
Add host for traefik dashboard ingress 2023-04-12 21:29:38 -04:00
SeanOMik 30830a6120
Change traefik values 2023-04-02 20:01:37 -04:00
SeanOMik 87f8818c2b
Enable traefik dashboard ingress 2023-04-02 19:52:37 -04:00
SeanOMik 1ea905ec3a
Add traefik and metrics values to traefik 2023-04-02 17:03:02 -04:00
SeanOMik 1c08810bf7
Specify true for crds 2023-04-02 16:35:58 -04:00
SeanOMik 2cb28a251e
Add it back in 2023-04-02 16:35:33 -04:00
SeanOMik 02653ab311
comment out static ips for a bit 2023-04-02 16:34:54 -04:00
SeanOMik 37ea633618
Include metallb crds 2023-04-02 16:33:48 -04:00
SeanOMik 155c1479bc
Add static ips again 2023-04-02 16:09:00 -04:00
SeanOMik 4c809ae8ab
Comment out static-ips for now 2023-04-02 16:07:19 -04:00
SeanOMik 619fd321fb
Try to get metallb working 2023-04-02 15:47:47 -04:00
SeanOMik 27ce643071
Add namespace manifests 2023-04-02 15:27:09 -04:00
SeanOMik ae1f53b4bc
Remove podinfo, add metallb 2023-04-02 15:25:25 -04:00
SeanOMik f076e6ff00
Define values in release.yaml 2023-04-02 15:18:48 -04:00
SeanOMik f841383021
Remove unused comments 2023-04-02 15:11:57 -04:00
SeanOMik b78374e434
Try to get traefik helm working 2023-04-02 14:41:12 -04:00
SeanOMik 49a8d53cbf
Change podinfo kustomization 2023-04-02 14:36:33 -04:00
SeanOMik 77bda86adc
Add podinfo for testing 2023-04-02 14:35:53 -04:00
SeanOMik b84baec12f
Change traefik chart 2023-04-02 14:26:12 -04:00
SeanOMik 5dba3891d8
Try to get traefik helm working 2023-04-02 14:20:08 -04:00
SeanOMik ca8f22db3f
Remove unused things, make secret fields a string 2023-04-02 14:05:38 -04:00
SeanOMik 2a4da01d16
Change 'source' to 'resources' 2023-04-02 13:54:23 -04:00
SeanOMik 0d4c97e3d9
Enable decryption in gotk-sync.yaml 2023-04-02 13:53:20 -04:00
SeanOMik 9daa7a9575
Move apps.yaml 2023-04-02 13:46:40 -04:00
SeanOMik 01482cc6db
Add flux/apps.yaml 2023-04-02 13:46:01 -04:00
SeanOMik 514414c4b0
Dont use ksops, maybe 2023-04-02 13:39:06 -04:00
SeanOMik 2ae133a7e2
Attempt to add traefik with sops secrets 2023-04-02 13:34:20 -04:00
Flux 6e749490cf Add Flux sync manifests 2023-04-02 12:58:44 -04:00
Flux c8fc720b5f Add Flux v0.31.1 component manifests 2023-04-02 12:58:35 -04:00