Commit graph

555 commits

Author SHA1 Message Date
cc52e7418e
Fix helmrelease to use configmap correctly 2023-04-16 20:58:24 -04:00
2808d56a7e
Add firefly iii, give authentik its own user for postgresql 2023-04-16 20:35:53 -04:00
5c0223600d
Change mariadb secret name 2023-04-16 20:12:54 -04:00
05ab55fb16
Try to fix mariadb 2023-04-16 20:10:28 -04:00
37a9fed45b
Change local-path-config 2023-04-16 20:08:21 -04:00
9c5328845c
Create local path provisioner config 2023-04-16 19:50:03 -04:00
83dd8a05b3
Add mariadb 2023-04-16 18:29:02 -04:00
6f849d8133
Remove harbor for now 2023-04-16 13:39:24 -04:00
443349d5a4
Change pvc names 2023-04-16 02:06:11 -04:00
0959b1a110
Add jobservice pvc subpath 2023-04-16 02:05:34 -04:00
53869a394d
Create karbor namespace resource 2023-04-16 01:57:53 -04:00
df616f2e64
Fix pvc subPaths in harbor helmrelease 2023-04-16 01:56:10 -04:00
4818667d42
Move harbor into its own namespace 2023-04-16 01:55:15 -04:00
3250c0b4ea
Add harbor secrets to kustomize.yaml 2023-04-16 01:39:42 -04:00
97cb9288f5
Add database creds to harbor secrets 2023-04-16 01:36:09 -04:00
25a1c99cdf
Use correct chart name 2023-04-16 01:29:00 -04:00
876c559d44
Accidentally deleted file 2023-04-16 01:25:52 -04:00
d3c477b139
Manually create a harbor ingress 2023-04-16 01:23:39 -04:00
30ab4f8a03
Add harbor 2023-04-16 01:05:17 -04:00
2d9f43afe0 Fix ldap url 2023-04-15 18:27:14 -04:00
8d7ccdfac9 Setup ldap in minio environment vars 2023-04-15 18:21:55 -04:00
e7a4e1f8d2
Remove authentik middleware from grafana 2023-04-15 01:31:02 -04:00
dd038ca9ef
Fix kube-prom-stack helm chart 2023-04-15 01:27:27 -04:00
585116ac09
Override namespace 2023-04-15 01:24:13 -04:00
803bf15b82
Fix yaml 2023-04-15 01:20:54 -04:00
0c916c12f8
Add kube-prometheus-stack helm chart 2023-04-15 01:19:04 -04:00
9c2807f3ad
Set cert-manager issuer for all ingresses 2023-04-15 01:17:55 -04:00
a2cb597fbc
idk how to get transfersh to use minio 2023-04-14 23:39:12 -04:00
d0ab5cbc90
Change s3 host in secret, use correct provider 2023-04-14 23:23:13 -04:00
0de52854c0
Comment out persistence storage for transfersh since its not needed anymore 2023-04-14 23:07:47 -04:00
a78c0db325
Move transfersh to using minio 2023-04-14 23:07:26 -04:00
1fa5baa588
Use default console address, use correct domain 2023-04-14 22:40:29 -04:00
a8b2ead98e
Change minio mount 2023-04-14 20:20:34 -04:00
5228ee74a5
Dont use bitnami/minio helm chart 2023-04-14 20:17:25 -04:00
4b97aa3573
Remove some unneeded fields 2023-04-14 20:01:57 -04:00
e03ba3e4f5
Change name of minio's helmrelease 2023-04-14 19:51:18 -04:00
d72a47cfda
Add minio 2023-04-14 19:49:30 -04:00
ac3f6fe5ba
Add gotify 2023-04-14 00:42:02 -04:00
dc1e1b6390
Add irc namespace to authentik's network policy 2023-04-14 00:31:05 -04:00
7941f0f466
Use a single docker image with built-in ldap for znc 2023-04-13 23:55:25 -04:00
76ea851eee
Dont use shared pv, just make a separate one 2023-04-13 22:28:27 -04:00
4bf41a9d5e
Try to add a sidecar for ldap auth to znc 2023-04-13 22:10:05 -04:00
f27e77256a
Remove authentik middleware from thelounge 2023-04-13 20:59:11 -04:00
c4ce76df54
Fix znc init container 2023-04-13 20:36:56 -04:00
e4b00e4fed
Fix helmrelease syntax error 2023-04-13 14:29:21 -04:00
45a23d9262
Increase limit of znc ram 2023-04-13 14:21:22 -04:00
e4373a3457
Add modules to znc 2023-04-13 14:10:26 -04:00
1b3be68ecb
Switch to linuxserver/znc 2023-04-13 13:28:36 -04:00
2c6e91b32d
Add znc and thelounge 2023-04-13 13:12:47 -04:00
a091dc5120
Use correct issuerRef name 2023-04-13 01:25:19 -04:00
fc5e97e7ae
Use wildcard cert everywhere! 2023-04-13 01:21:06 -04:00
f2252bd6c8
Use wildcard cert for everything in download 2023-04-13 01:13:18 -04:00
82a3d02cfe
Test this wildcard cert with sonarr 2023-04-13 00:56:51 -04:00
1ac757aca4
Create a wildcard cert with cert-manager and replicate with kubernetes-replicator 2023-04-13 00:52:05 -04:00
4b118c55c3
Add some stuff to todo 2023-04-12 21:35:13 -04:00
539d2f097e
Try to get hastebin working 2023-04-12 21:35:11 -04:00
86fd311bcb
Use correct redis hostname for hastebin 2023-04-12 21:35:09 -04:00
fa5ce69ffd
Add hastebin 2023-04-12 21:35:07 -04:00
1c47c0d24a
Add vaultwarden 2023-04-12 21:35:05 -04:00
03d54588ea
Include tools stuff 2023-04-12 21:35:03 -04:00
3efad94acf
Change transfersh resource requests 2023-04-12 21:35:02 -04:00
5cfcd8005e
Move 'utilities' to 'management', add transfersh 2023-04-12 21:35:00 -04:00
14afb67f86
Remove some other stuff left over from plex 2023-04-12 21:34:58 -04:00
1593eb5f6d
Remove plex again for now 2023-04-12 21:34:56 -04:00
4a189df40a
Add traefik entrypoint just for plex 2023-04-12 21:34:54 -04:00
d8bc6927b1
Fix error with plex image name 2023-04-12 21:34:52 -04:00
9b7df748f4
change env 2023-04-12 21:34:50 -04:00
6e61e8f237
try linuxserver plex 2023-04-12 21:34:48 -04:00
0a20b6100c
Fix some small issue with the postgresql pvc 2023-04-12 21:34:46 -04:00
c55f288e0b
typo 2023-04-12 21:34:44 -04:00
41c8764275
Use helm chart for plex service 2023-04-12 21:34:42 -04:00
5202b7f3ca
Specify all plex labels 2023-04-12 21:34:40 -04:00
3d2831e07d
Add LoadBalancer service for plex 2023-04-12 21:34:39 -04:00
fa7ca87e21
Add to todo, specify traefik load balance ip 2023-04-12 21:34:37 -04:00
e880def890
Add media to download networkpolicy 2023-04-12 21:34:33 -04:00
8cdf3f3df6
Add media namespace selector in authentik 2023-04-12 21:34:31 -04:00
f7bccf739b
Fix guacamole env 2023-04-12 21:34:29 -04:00
7488c3ec94
Fix utility namespace 2023-04-12 21:34:27 -04:00
48cee5a1e3
Add Apache Guacamole 2023-04-12 21:34:25 -04:00
144591b6a3
Add plex 2023-04-12 21:34:23 -04:00
7291493930
Remove media from authentik's network policy 2023-04-12 21:34:21 -04:00
cee3cb0c30
Move authentik to new domain 2023-04-12 21:34:19 -04:00
393a25c883
Move media to new domain 2023-04-12 21:34:17 -04:00
8d07ab975b
Change readarr subdomains 2023-04-12 21:34:15 -04:00
fc167079dc
Typo 2023-04-12 21:34:14 -04:00
93e4e5c48e
Switch download services to using 'new domain' 2023-04-12 21:34:12 -04:00
26e1f2f0c5
fix 2023-04-12 21:34:10 -04:00
9bde15ea4e
fix 2023-04-12 21:34:08 -04:00
8b8c26da7b
fix 2023-04-12 21:34:06 -04:00
1436e7235d
fix 2023-04-12 21:34:04 -04:00
eed5c7098a
fix 2023-04-12 21:34:02 -04:00
b8c9f83b5d
fix error 2023-04-12 21:34:00 -04:00
58d36abd84
fix error 2023-04-12 21:33:58 -04:00
d0566e7176
Create pvc for postgresql 2023-04-12 21:33:56 -04:00
36949d5b37
try again 2023-04-12 21:33:54 -04:00
65d82ab2fd
Try to get working 2023-04-12 21:33:52 -04:00
f0d61e461d
Try to get working 2023-04-12 21:33:50 -04:00
6caca9aeac
Set decryption for secrets kustomization 2023-04-12 21:33:48 -04:00
7af20b05f5
Try to fix 2023-04-12 21:33:45 -04:00
9f41637c9d
Try to fix 2023-04-12 21:33:43 -04:00
4e74863d88
Try to fix 2023-04-12 21:33:41 -04:00
c1229216ad
Remove timeouts 2023-04-12 21:33:39 -04:00
dcb8f394ff
Change domain secret name 2023-04-12 21:33:37 -04:00
18b11570e2
Move cluster secrets to secrets folder 2023-04-12 21:33:35 -04:00
0db470d757
Set pod labels for jellyfin and jellyseerr 2023-04-12 21:33:33 -04:00
88cd228c56
Make domain a secret 2023-04-12 21:33:31 -04:00
fd96e62be6
Change traefik ingressroute host 2023-04-12 21:33:29 -04:00
042a85d769
Fix jellyserr 2023-04-12 21:33:27 -04:00
185019d9a3
Fix unpackerr 2023-04-12 21:33:25 -04:00
7c818bb6fc
Add unpackerr, jellyserr, and audiobookshelf 2023-04-12 21:33:23 -04:00
8b96a73ec4
Add namespace selector to authentik network policy 2023-04-12 21:33:22 -04:00
40d64865bc
Change jellyfin limits 2023-04-12 21:33:20 -04:00
54708930a6
Add label to jellyfin 2023-04-12 21:33:18 -04:00
28b2d2eff8
Use an embedded ldap outpost 2023-04-12 21:33:16 -04:00
e42710d645
Remove startup probe 2023-04-12 21:33:14 -04:00
b14158e324
Change authentik ldap outpost key 2023-04-12 21:33:12 -04:00
191ad6ee09
Change host for authentik ldap 2023-04-12 21:33:10 -04:00
4be4ca15db
Fix error with traefik helm chart 2023-04-12 21:33:08 -04:00
981ea01139
Change authentik host for ldap outpost 2023-04-12 21:33:06 -04:00
e7f20db8a2
Add jellyfin, add authentik ldap outpost 2023-04-12 21:33:04 -04:00
f106257feb
Use traefik helm chart for dashboard ingress 2023-04-12 21:33:02 -04:00
6b38f1e1da
Add authentik middleware to traefik dashboard 2023-04-12 21:33:00 -04:00
1b0ead728d
Add kavita 2023-04-12 21:32:58 -04:00
0cb3df9663
Add komga 2023-04-12 21:32:56 -04:00
db8d2b5747
Add limit to cronjob history 2023-04-12 21:32:55 -04:00
6b6e7210e6
Add cronjob to clear mylar3 cache 2023-04-12 21:32:53 -04:00
a9785e696d
Accidentally used mylar instead of mylar3 2023-04-12 21:32:51 -04:00
449c03a90c
Add mylar 2023-04-12 21:32:49 -04:00
c64aaaff34
Change tag for readarr, remove bazarr liveness check 2023-04-12 21:32:47 -04:00
c9a0b5de94
Add readarr audiobooks and ebooks and bazarr 2023-04-12 21:32:45 -04:00
39671653a6
Remove radarr health checks 2023-04-12 21:32:43 -04:00
f3d27f1ca2
Change radarr liveness probe 2023-04-12 21:32:41 -04:00
481318eee7
Replace confusing mistake 2023-04-12 21:32:39 -04:00
fecb77b3e1
Use app-template for radarr and sonarr 2023-04-12 21:32:37 -04:00
1fbf9a6699
Fix error with prowlarr app-template 2023-04-12 21:32:35 -04:00
e72d4c0897
Add prowlarr, dont include media for now 2023-04-12 21:32:33 -04:00
91bcb10730
Fix more errors 2023-04-12 21:32:31 -04:00
ee7cf68b37
Fix errors again 2023-04-12 21:32:30 -04:00
b6add80144
Fix error 2023-04-12 21:32:28 -04:00
0ffcd5414e
Change 'vpn-pods' to 'qbittorrent' and move it inside the download ns 2023-04-12 21:32:26 -04:00
da721e4244
Add authentik middleware to qbittorrent ingress 2023-04-12 21:32:24 -04:00
0e874da754
Add authentik middleware to radarr ingress 2023-04-12 21:32:22 -04:00
7e039d927c
Change address in authentik middleware 2023-04-12 21:32:20 -04:00
c2ff6275ee
Try to specify host env for authentik 2023-04-12 21:32:18 -04:00
af4d2efdca
Use the correct middleware name for the sonarr ingress 2023-04-12 21:32:16 -04:00
9f299e4428
Use authentik middleware for sonarr 2023-04-12 21:32:14 -04:00
414c15cd20
Dont log debug 2023-04-12 21:32:12 -04:00
3d45245312
Set secret key with secret 2023-04-12 21:32:10 -04:00
efc26369ae
Add pgadmin4 2023-04-12 21:32:08 -04:00
8f50dc9b6b
Set authentik secret key with secret 2023-04-12 21:32:06 -04:00
f933e23d1c
Use secrets for authentik's database stuff 2023-04-12 21:32:04 -04:00
a1b15de4b2
Try admin user 2023-04-12 21:32:03 -04:00
17d43fa167
Try to get authentik working 2023-04-12 21:32:01 -04:00
4ef3904182
Set authentik to debug log level 2023-04-12 21:31:59 -04:00
495d8c83ce
Add label to authentik helm-release 2023-04-12 21:31:57 -04:00
af4a0d4409
Add annotations to authentik's ingress annotations 2023-04-12 21:31:55 -04:00
2b7d318583
Change authentik helmrelease name 2023-04-12 21:31:53 -04:00
0fab5dc1c6
Fix error 2023-04-12 21:31:51 -04:00
099fb2222a
Typo 2023-04-12 21:31:49 -04:00
78fd4a9cbc
Add authentik 2023-04-12 21:31:47 -04:00
6970577b47
Forgot to include redis 2023-04-12 21:31:45 -04:00
b02f0f68fa
Remove services, the helms include them already 2023-04-12 21:31:43 -04:00
ec9ea8d2a7
Include database resources 2023-04-12 21:31:41 -04:00
83549ffa10
Add redis and postgresql databases 2023-04-12 21:31:39 -04:00
a90f0fa700
Remove ports on vpn sidecar 2023-04-12 21:31:38 -04:00
60e8e0ff44
Swap to using a sidecar container with qbittorrent 2023-04-12 21:31:36 -04:00
ea3121fb3c
Specify some settings for vpn-gateway helm 2023-04-12 21:31:34 -04:00
bf9e3763f4
Try different chart for pod-gateway 2023-04-12 21:31:32 -04:00
5c1087d7bf
Remove useless comments 2023-04-12 21:31:30 -04:00
0d8ce4453b
Attempt to get traefik ingress working 2023-04-12 21:31:28 -04:00
a202764784
Try to get traefik dashboard ingress working 2023-04-12 21:31:26 -04:00
0b466607c2
Use LE certs for radarr, and sonarr 2023-04-12 21:31:24 -04:00
7c387b8bac
Revert "CreateReplace crds"
This reverts commit 8c6734ed7b621e0cbda93afe0e0c8fb8b139b2a6.
2023-04-12 21:31:22 -04:00
65656f2875
Revert "Try to enable metallb crds"
This reverts commit de5c9ebf7d0f7ca08fdab509a0f43ef998baa05e.
2023-04-12 21:31:20 -04:00
9eb566d2c8
Set path for crds-metallb 2023-04-12 21:31:18 -04:00
475033f931
Try to enable metallb crds 2023-04-12 21:31:16 -04:00
dc39678ec5
CreateReplace crds 2023-04-12 21:31:14 -04:00
ddd5d22c38
Dont install crds 2023-04-12 21:31:12 -04:00
19ec3b8361
Remove reference to traefik sops secrets 2023-04-12 21:31:11 -04:00
685884a941
Add cert-manager namespace 2023-04-12 21:31:09 -04:00
90bd288d1c
Fix not found error 2023-04-12 21:31:07 -04:00
c043c6febb
Move a lot of stuff around 2023-04-12 21:31:05 -04:00
3a09735413
Pin to specific version 2023-04-12 21:31:03 -04:00
45b8b759e4
Change pod-gateway version 2023-04-12 21:31:01 -04:00
7ed305edea
Add vpn-gateway 2023-04-12 21:30:59 -04:00
f7d7b24d98
Revert "Use flux kustomization for metallb depends"
This reverts commit 1cd0b96d0409dcc1b25f9fe44ac23c975a30b41b.
2023-04-12 21:30:57 -04:00
647198ef99
Use flux kustomization for metallb depends 2023-04-12 21:30:55 -04:00
a24f0ec34e
Add name label to traefik namespace 2023-04-12 21:30:53 -04:00
3ddb2acd6f
Add traefik to media network policy 2023-04-12 21:30:51 -04:00
6d91d0846d
Add it back in 2023-04-12 21:30:49 -04:00
104fe69d99
Temporarily remove static ips 2023-04-12 21:30:47 -04:00
c6aee543e6
Try to get network policy working 2023-04-12 21:30:46 -04:00
124b797e1a
Remove that media policy 2023-04-12 21:30:44 -04:00
98ed6008e5
Change media label 2023-04-12 21:30:42 -04:00
788f91bb1e
Fix error 2023-04-12 21:30:40 -04:00
24cde20004
idk 2023-04-12 21:30:38 -04:00
73664f4e17
Create media network policy 2023-04-12 21:30:36 -04:00
508b65bcb2
Use correct helm repo for tigera 2023-04-12 21:30:34 -04:00
9a695f29c0
Try to fix l2 advertisement 2023-04-12 21:30:32 -04:00
834cfabeeb
Add calico 2023-04-12 21:30:30 -04:00
06ed73297e
Add radarr 2023-04-12 21:30:28 -04:00
c49b85045c
Change sonarr ingress port 2023-04-12 21:30:26 -04:00
f804971841
Fix maybe 2023-04-12 21:30:24 -04:00
336f2849bb
Fix error 2023-04-12 21:30:22 -04:00
fad96e4fee
Fix error 2023-04-12 21:30:21 -04:00
86d24f7799
Add sonarr 2023-04-12 21:30:19 -04:00
677445fdaa
Add local-path-provisioner just in case 2023-04-12 21:30:17 -04:00
da280d229b
I dont think I need raw 2023-04-12 21:30:15 -04:00
89daa3a89a
Try again 2023-04-12 21:30:13 -04:00
089db494c5
Change raw helm chart 2023-04-12 21:30:11 -04:00
62f99b1379
Fix error 2023-04-12 21:30:09 -04:00
540b683b0e
try again 2023-04-12 21:30:07 -04:00
6463458ab2
oops 2023-04-12 21:30:05 -04:00
9650216b99
Attempt to get longhorn working on nixos 2023-04-12 21:30:03 -04:00
b1249c5d48
Add longhorn 2023-04-12 21:30:01 -04:00
bab5543e4d
Dont configure traefik's load balancer service 2023-04-12 21:29:59 -04:00
735be23ba4
Move things around 2023-04-12 21:29:57 -04:00
f1d75d667a
I'm stumped 2023-04-12 21:29:55 -04:00
4c28ebea46
Use an ingress route 2023-04-12 21:29:54 -04:00
d4ae2055a7
Completely rewrite the traefik ingress 2023-04-12 21:29:52 -04:00
540778c368
Oops, typo 2023-04-12 21:29:50 -04:00
ac9812b60d
Manually create a ingress resource for traefik dashboard 2023-04-12 21:29:48 -04:00
a26d94a5ac
Set only one entry point 2023-04-12 21:29:46 -04:00
531f255933
Try to fix traefik 2023-04-12 21:29:44 -04:00
c0b9baab87
Change rule one more time 2023-04-12 21:29:42 -04:00
75fa1fcc8d
Change dashboard entrypoint 2023-04-12 21:29:40 -04:00
3215cbfde5
Add host for traefik dashboard ingress 2023-04-12 21:29:38 -04:00
30830a6120
Change traefik values 2023-04-02 20:01:37 -04:00
87f8818c2b
Enable traefik dashboard ingress 2023-04-02 19:52:37 -04:00
1ea905ec3a
Add traefik and metrics values to traefik 2023-04-02 17:03:02 -04:00
1c08810bf7
Specify true for crds 2023-04-02 16:35:58 -04:00
2cb28a251e
Add it back in 2023-04-02 16:35:33 -04:00
02653ab311
comment out static ips for a bit 2023-04-02 16:34:54 -04:00
37ea633618
Include metallb crds 2023-04-02 16:33:48 -04:00
155c1479bc
Add static ips again 2023-04-02 16:09:00 -04:00
4c809ae8ab
Comment out static-ips for now 2023-04-02 16:07:19 -04:00
619fd321fb
Try to get metallb working 2023-04-02 15:47:47 -04:00
27ce643071
Add namespace manifests 2023-04-02 15:27:09 -04:00
ae1f53b4bc
Remove podinfo, add metallb 2023-04-02 15:25:25 -04:00
f076e6ff00
Define values in release.yaml 2023-04-02 15:18:48 -04:00
f841383021
Remove unused comments 2023-04-02 15:11:57 -04:00
b78374e434
Try to get traefik helm working 2023-04-02 14:41:12 -04:00
49a8d53cbf
Change podinfo kustomization 2023-04-02 14:36:33 -04:00
77bda86adc
Add podinfo for testing 2023-04-02 14:35:53 -04:00
b84baec12f
Change traefik chart 2023-04-02 14:26:12 -04:00
5dba3891d8
Try to get traefik helm working 2023-04-02 14:20:08 -04:00
ca8f22db3f
Remove unused things, make secret fields a string 2023-04-02 14:05:38 -04:00
2a4da01d16
Change 'source' to 'resources' 2023-04-02 13:54:23 -04:00
0d4c97e3d9
Enable decryption in gotk-sync.yaml 2023-04-02 13:53:20 -04:00
9daa7a9575
Move apps.yaml 2023-04-02 13:46:40 -04:00
01482cc6db
Add flux/apps.yaml 2023-04-02 13:46:01 -04:00
514414c4b0
Dont use ksops, maybe 2023-04-02 13:39:06 -04:00
2ae133a7e2
Attempt to add traefik with sops secrets 2023-04-02 13:34:20 -04:00
Flux
6e749490cf Add Flux sync manifests 2023-04-02 12:58:44 -04:00
Flux
c8fc720b5f Add Flux v0.31.1 component manifests 2023-04-02 12:58:35 -04:00