diff --git a/k8s/apps/media/arr/prowlarr/deployment.yaml b/k8s/apps/media/arr/prowlarr/deployment.yaml index 65efa76..c2f3c25 100644 --- a/k8s/apps/media/arr/prowlarr/deployment.yaml +++ b/k8s/apps/media/arr/prowlarr/deployment.yaml @@ -30,7 +30,7 @@ spec: type: RuntimeDefault containers: - name: prowlarr - image: ghcr.io/onedr0p/prowlarr:1.25.4 # renovate: docker=ghcr.io/onedr0p/prowlarr + image: ghcr.io/onedr0p/prowlarr:1.28.2 # renovate: docker=ghcr.io/onedr0p/prowlarr securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/apps/media/arr/radarr/deployment.yaml b/k8s/apps/media/arr/radarr/deployment.yaml index cfc95b7..c99ea30 100644 --- a/k8s/apps/media/arr/radarr/deployment.yaml +++ b/k8s/apps/media/arr/radarr/deployment.yaml @@ -30,7 +30,7 @@ spec: type: RuntimeDefault containers: - name: radarr - image: ghcr.io/onedr0p/radarr:5.14.0 # renovate: docker=ghcr.io/onedr0p/radarr + image: ghcr.io/onedr0p/radarr:5.16.3 # renovate: docker=ghcr.io/onedr0p/radarr securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/apps/media/arr/sonarr/deployment.yaml b/k8s/apps/media/arr/sonarr/deployment.yaml index 0047c6a..a3ab193 100644 --- a/k8s/apps/media/arr/sonarr/deployment.yaml +++ b/k8s/apps/media/arr/sonarr/deployment.yaml @@ -30,7 +30,7 @@ spec: type: RuntimeDefault containers: - name: sonarr - image: ghcr.io/onedr0p/sonarr:4.0.10 # renovate: docker=ghcr.io/onedr0p/sonarr + image: ghcr.io/onedr0p/sonarr:4.0.11 # renovate: docker=ghcr.io/onedr0p/sonarr securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/apps/media/arr/torrent/deployment.yaml b/k8s/apps/media/arr/torrent/deployment.yaml index 28a941f..1255e41 100644 --- a/k8s/apps/media/arr/torrent/deployment.yaml +++ b/k8s/apps/media/arr/torrent/deployment.yaml @@ -30,7 +30,7 @@ spec: type: RuntimeDefault containers: - name: git-sync-vuetorrent - image: registry.k8s.io/git-sync/git-sync:v4.3.0 # renovate: docker=registry.k8s.io/git-sync/git-sync + image: registry.k8s.io/git-sync/git-sync:v4.4.0 # renovate: docker=registry.k8s.io/git-sync/git-sync securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true @@ -57,7 +57,7 @@ spec: - name: tmp mountPath: /tmp - name: torrent - image: ghcr.io/onedr0p/qbittorrent:5.0.1 # renovate: docker=ghcr.io/onedr0p/qbittorrent + image: ghcr.io/onedr0p/qbittorrent:5.0.3 # renovate: docker=ghcr.io/onedr0p/qbittorrent securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/apps/media/jellyfin/deployment.yaml b/k8s/apps/media/jellyfin/deployment.yaml index ffca41b..b469ebe 100644 --- a/k8s/apps/media/jellyfin/deployment.yaml +++ b/k8s/apps/media/jellyfin/deployment.yaml @@ -25,7 +25,7 @@ spec: type: RuntimeDefault containers: - name: jellyfin - image: ghcr.io/jellyfin/jellyfin:10.10.2 # renovate: docker=ghcr.io/jellyfin/jellyfin + image: ghcr.io/jellyfin/jellyfin:10.10.3 # renovate: docker=ghcr.io/jellyfin/jellyfin securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/apps/media/plex/deployment.yaml b/k8s/apps/media/plex/deployment.yaml index f79b0a9..4611d97 100644 --- a/k8s/apps/media/plex/deployment.yaml +++ b/k8s/apps/media/plex/deployment.yaml @@ -28,7 +28,7 @@ spec: type: RuntimeDefault containers: - name: plex - image: ghcr.io/onedr0p/plex:1.41.2.9200-c6bbc1b53 # renovate: docker=ghcr.io/onedr0p/plex versioning=loose + image: ghcr.io/onedr0p/plex:1.41.3.9314-a0bfb8370 # renovate: docker=ghcr.io/onedr0p/plex versioning=loose securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/infra/auth/authelia/kustomization.yaml b/k8s/infra/auth/authelia/kustomization.yaml index ba392bd..aa1c1e3 100644 --- a/k8s/infra/auth/authelia/kustomization.yaml +++ b/k8s/infra/auth/authelia/kustomization.yaml @@ -16,5 +16,5 @@ helmCharts: repo: https://charts.authelia.com releaseName: authelia namespace: authelia - version: 0.9.9 + version: 0.9.14 valuesFile: values.yaml diff --git a/k8s/infra/auth/keycloak/kustomization.yaml b/k8s/infra/auth/keycloak/kustomization.yaml index 3a0c1c5..1035b71 100644 --- a/k8s/infra/auth/keycloak/kustomization.yaml +++ b/k8s/infra/auth/keycloak/kustomization.yaml @@ -13,5 +13,5 @@ helmCharts: repo: oci://registry-1.docker.io/bitnamicharts releaseName: keycloak namespace: keycloak - version: 24.2.0 + version: 24.3.1 valuesFile: values.yaml diff --git a/k8s/infra/auth/lldap/bootstrap.yaml b/k8s/infra/auth/lldap/bootstrap.yaml index 8690178..85e9930 100644 --- a/k8s/infra/auth/lldap/bootstrap.yaml +++ b/k8s/infra/auth/lldap/bootstrap.yaml @@ -12,7 +12,7 @@ spec: restartPolicy: OnFailure containers: - name: lldap-bootstrap - image: ghcr.io/lldap/lldap:2024-11-17-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose + image: ghcr.io/lldap/lldap:2024-12-24-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose command: [ /app/bootstrap.sh ] envFrom: - configMapRef: diff --git a/k8s/infra/auth/lldap/deployment.yaml b/k8s/infra/auth/lldap/deployment.yaml index 64b639a..72d099b 100644 --- a/k8s/infra/auth/lldap/deployment.yaml +++ b/k8s/infra/auth/lldap/deployment.yaml @@ -28,7 +28,7 @@ spec: type: RuntimeDefault containers: - name: lldap - image: ghcr.io/lldap/lldap:2024-11-17-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose + image: ghcr.io/lldap/lldap:2024-12-24-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/infra/auth/lldap/lldap-config.yaml b/k8s/infra/auth/lldap/lldap-config.yaml index 8735aff..eceed5b 100644 --- a/k8s/infra/auth/lldap/lldap-config.yaml +++ b/k8s/infra/auth/lldap/lldap-config.yaml @@ -1,16 +1,13 @@ ---- apiVersion: bitnami.com/v1alpha1 kind: SealedSecret metadata: - creationTimestamp: null name: lldap-config namespace: lldap spec: encryptedData: - groups.json: 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 - users.json: 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 + groups.json: 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 + users.json: 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 template: metadata: - creationTimestamp: null name: lldap-config namespace: lldap diff --git a/k8s/infra/controllers/argocd/kustomization.yaml b/k8s/infra/controllers/argocd/kustomization.yaml index 5fe82a9..728e6ba 100644 --- a/k8s/infra/controllers/argocd/kustomization.yaml +++ b/k8s/infra/controllers/argocd/kustomization.yaml @@ -9,7 +9,7 @@ resources: helmCharts: - name: argo-cd repo: https://argoproj.github.io/argo-helm - version: 7.7.3 + version: 7.7.11 releaseName: "argocd" namespace: argocd valuesFile: values.yaml diff --git a/k8s/infra/controllers/cert-manager/kustomization.yaml b/k8s/infra/controllers/cert-manager/kustomization.yaml index 6c1f4e3..3713973 100644 --- a/k8s/infra/controllers/cert-manager/kustomization.yaml +++ b/k8s/infra/controllers/cert-manager/kustomization.yaml @@ -9,7 +9,7 @@ resources: helmCharts: - name: cert-manager repo: https://charts.jetstack.io - version: v1.16.1 # renovate: github-releases=cert-manager/cert-manager + version: v1.16.2 # renovate: github-releases=cert-manager/cert-manager releaseName: cert-manager namespace: cert-manager valuesFile: values.yaml diff --git a/k8s/infra/controllers/crossplane/kustomization.yaml b/k8s/infra/controllers/crossplane/kustomization.yaml index f668b25..0447ad1 100644 --- a/k8s/infra/controllers/crossplane/kustomization.yaml +++ b/k8s/infra/controllers/crossplane/kustomization.yaml @@ -9,4 +9,4 @@ helmCharts: repo: https://charts.crossplane.io/stable releaseName: crossplane namespace: crossplane - version: 1.18.0 + version: 1.18.2 diff --git a/k8s/infra/controllers/node-feature-discovery/kustomization.yaml b/k8s/infra/controllers/node-feature-discovery/kustomization.yaml index a69d830..b2fb786 100644 --- a/k8s/infra/controllers/node-feature-discovery/kustomization.yaml +++ b/k8s/infra/controllers/node-feature-discovery/kustomization.yaml @@ -10,7 +10,7 @@ resources: helmCharts: - name: node-feature-discovery repo: https://kubernetes-sigs.github.io/node-feature-discovery/charts - version: 0.16.6 + version: 0.17.0 releaseName: nfd includeCRDs: true namespace: node-feature-discovery diff --git a/k8s/infra/controllers/sealed-secrets/kustomization.yaml b/k8s/infra/controllers/sealed-secrets/kustomization.yaml index c42d67c..2cc2a54 100644 --- a/k8s/infra/controllers/sealed-secrets/kustomization.yaml +++ b/k8s/infra/controllers/sealed-secrets/kustomization.yaml @@ -4,7 +4,7 @@ kind: Kustomization helmCharts: - name: sealed-secrets repo: oci://registry-1.docker.io/bitnamicharts - version: 2.4.11 + version: 2.5.0 releaseName: sealed-secrets-controller namespace: sealed-secrets includeCRDs: true diff --git a/k8s/infra/crossplane-crds/config/keycloak/functions.yaml b/k8s/infra/crossplane-crds/config/keycloak/functions.yaml index 35d7475..5133a3b 100644 --- a/k8s/infra/crossplane-crds/config/keycloak/functions.yaml +++ b/k8s/infra/crossplane-crds/config/keycloak/functions.yaml @@ -10,7 +10,7 @@ kind: Function metadata: name: function-auto-ready spec: - package: xpkg.upbound.io/crossplane-contrib/function-auto-ready:v0.3.0 # renovate: github-releases=crossplane-contrib/function-auto-ready + package: xpkg.upbound.io/crossplane-contrib/function-auto-ready:v0.4.0 # renovate: github-releases=crossplane-contrib/function-auto-ready --- apiVersion: pkg.crossplane.io/v1beta1 kind: Function diff --git a/k8s/infra/database/cnpg/kustomization.yaml b/k8s/infra/database/cnpg/kustomization.yaml index 7418482..c855cbf 100644 --- a/k8s/infra/database/cnpg/kustomization.yaml +++ b/k8s/infra/database/cnpg/kustomization.yaml @@ -11,5 +11,5 @@ helmCharts: releaseName: cnpg namespace: cnpg-system includeCRDs: true - version: 0.22.1 + version: 0.23.0 valuesFile: values.yaml diff --git a/k8s/infra/network/cilium/kustomization.yaml b/k8s/infra/network/cilium/kustomization.yaml index 6345f89..cc43294 100644 --- a/k8s/infra/network/cilium/kustomization.yaml +++ b/k8s/infra/network/cilium/kustomization.yaml @@ -8,7 +8,7 @@ resources: helmCharts: - name: cilium repo: https://helm.cilium.io - version: 1.16.3 # renovate: github-releases=cilium/cilium + version: 1.16.5 # renovate: github-releases=cilium/cilium releaseName: "cilium" includeCRDs: true namespace: kube-system diff --git a/k8s/infra/network/cloudflared/daemon-set.yaml b/k8s/infra/network/cloudflared/daemon-set.yaml index 012743a..9b2e4e6 100644 --- a/k8s/infra/network/cloudflared/daemon-set.yaml +++ b/k8s/infra/network/cloudflared/daemon-set.yaml @@ -16,7 +16,7 @@ spec: spec: containers: - name: cloudflared - image: cloudflare/cloudflared:2024.11.0 # renovate: docker=cloudflare/cloudflared + image: cloudflare/cloudflared:2024.12.2 # renovate: docker=cloudflare/cloudflared imagePullPolicy: IfNotPresent args: - tunnel diff --git a/k8s/infra/network/dns/adguard/deployment.yaml b/k8s/infra/network/dns/adguard/deployment.yaml index d0f4615..f56b173 100644 --- a/k8s/infra/network/dns/adguard/deployment.yaml +++ b/k8s/infra/network/dns/adguard/deployment.yaml @@ -49,7 +49,7 @@ spec: mountPath: /opt/adguardhome/conf containers: - name: adguard - image: docker.io/adguard/adguardhome:v0.107.54 # renovate: docker=docker.io/adguard/adguardhome + image: docker.io/adguard/adguardhome:v0.107.55 # renovate: docker=docker.io/adguard/adguardhome securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true diff --git a/k8s/infra/storage/proxmox-csi/kustomization.yaml b/k8s/infra/storage/proxmox-csi/kustomization.yaml index 4c7ac94..87001ff 100644 --- a/k8s/infra/storage/proxmox-csi/kustomization.yaml +++ b/k8s/infra/storage/proxmox-csi/kustomization.yaml @@ -4,7 +4,7 @@ kind: Kustomization helmCharts: - name: proxmox-csi-plugin repo: oci://ghcr.io/sergelogvinov/charts - version: 0.2.13 + version: 0.3.0 releaseName: proxmox-csi-plugin includeCRDs: true namespace: csi-proxmox diff --git a/k8s/infra/vpn/netbird/agent/daemon-set.yaml b/k8s/infra/vpn/netbird/agent/daemon-set.yaml index 6288de8..d695817 100644 --- a/k8s/infra/vpn/netbird/agent/daemon-set.yaml +++ b/k8s/infra/vpn/netbird/agent/daemon-set.yaml @@ -17,7 +17,7 @@ spec: # type: RuntimeDefault containers: - name: netbird - image: docker.io/netbirdio/netbird:0.32.0 # renovate: docker=docker.io/netbirdio/netbird + image: docker.io/netbirdio/netbird:0.35.1 # renovate: docker=docker.io/netbirdio/netbird imagePullPolicy: IfNotPresent # securityContext: # allowPrivilegeEscalation: false diff --git a/k8s/infra/vpn/netbird/backend/values.yaml b/k8s/infra/vpn/netbird/backend/values.yaml index 16441f4..4698e7c 100644 --- a/k8s/infra/vpn/netbird/backend/values.yaml +++ b/k8s/infra/vpn/netbird/backend/values.yaml @@ -23,7 +23,7 @@ idp: management: image: - tag: 0.32.0 # renovate: docker=docker.io/netbirdio/management + tag: 0.35.1 # renovate: docker=docker.io/netbirdio/management nodeSelector: topology.kubernetes.io/zone: abel ingress: @@ -31,7 +31,7 @@ management: signal: image: - tag: 0.32.0 # renovate: docker=docker.io/netbirdio/signal + tag: 0.35.1 # renovate: docker=docker.io/netbirdio/signal nodeSelector: topology.kubernetes.io/zone: abel uri: netbird.stonegarden.dev:443 diff --git a/k8s/infra/vpn/netbird/dashboard/values.yaml b/k8s/infra/vpn/netbird/dashboard/values.yaml index d6e002c..132fabc 100644 --- a/k8s/infra/vpn/netbird/dashboard/values.yaml +++ b/k8s/infra/vpn/netbird/dashboard/values.yaml @@ -1,5 +1,5 @@ image: - tag: v2.7.0 # renovate: docker=docker.io/netbirdio/dashboard + tag: v2.8.0 # renovate: docker=docker.io/netbirdio/dashboard auth: authority: https://keycloak.stonegarden.dev/realms/homelab diff --git a/tofu/home-assistant/main.tf b/tofu/home-assistant/main.tf index 3f42789..d2e415a 100644 --- a/tofu/home-assistant/main.tf +++ b/tofu/home-assistant/main.tf @@ -2,7 +2,7 @@ terraform { required_providers { proxmox = { source = "bpg/proxmox" - version = "0.66.3" + version = "0.69.0" } } } diff --git a/tofu/kubernetes/main.tf b/tofu/kubernetes/main.tf index bb9e5e7..e9f0cd7 100644 --- a/tofu/kubernetes/main.tf +++ b/tofu/kubernetes/main.tf @@ -7,7 +7,7 @@ module "talos" { image = { version = "v1.8.1" - update_version = "v1.8.3" # renovate: github-releases=siderolabs/talos + update_version = "v1.9.1" # renovate: github-releases=siderolabs/talos schematic = file("${path.module}/talos/image/schematic.yaml") } diff --git a/tofu/kubernetes/providers.tf b/tofu/kubernetes/providers.tf index ed07e6e..7827326 100644 --- a/tofu/kubernetes/providers.tf +++ b/tofu/kubernetes/providers.tf @@ -2,15 +2,15 @@ terraform { required_providers { kubernetes = { source = "hashicorp/kubernetes" - version = "2.33.0" + version = "2.35.1" } proxmox = { source = "bpg/proxmox" - version = "0.66.3" + version = "0.69.0" } talos = { source = "siderolabs/talos" - version = "0.6.1" + version = "0.7.0" } restapi = { source = "Mastercard/restapi" diff --git a/tofu/kubernetes/talos/inline-manifests/cilium-install.yaml b/tofu/kubernetes/talos/inline-manifests/cilium-install.yaml index 071de28..3454e51 100644 --- a/tofu/kubernetes/talos/inline-manifests/cilium-install.yaml +++ b/tofu/kubernetes/talos/inline-manifests/cilium-install.yaml @@ -75,7 +75,7 @@ spec: command: - cilium - install - - --version=v1.16.3 # renovate: github-releases=cilium/cilium + - --version=v1.16.5 # renovate: github-releases=cilium/cilium - --set - kubeProxyReplacement=true - --values