mirror of
				https://github.com/optim-enterprises-bv/homelab.git
				synced 2025-10-30 17:37:59 +00:00 
			
		
		
		
	chore(deps): renovate bonanza
chore(deps): update helm release intel-device-plugins-operator to v0.31.1 chore(deps): update helm release intel-device-plugins-gpu to v0.31.1 chore(deps): update docker.io/adguard/adguardhome docker tag to v0.107.53 chore(deps): update sealed-secrets docker tag to v2.4.9 chore(deps): update ghcr.io/lldap/lldap docker tag to v2024-11-04-debian-rootless chore(deps): update docker.io/adguard/adguardhome docker tag to v0.107.54 chore(deps): update cloudflare/cloudflared docker tag to v2024.11.0 chore(deps): update ghcr.io/authelia/authelia docker tag to v4.38.17 chore(deps): update helm release authelia to v0.9.9 chore(deps): update helm release cert-manager to v1.16.1 chore(deps): update dependency cilium/cilium to v1.16.3 chore(deps): update dependency intel/intel-device-plugins-for-kubernetes to v0.31.1 chore(deps): update helm release cloudnative-pg to v0.22.1 chore(deps): update dependency umputun/remark42 to v1.14.0 chore(deps): update helm release node-feature-discovery to v0.16.6 chore(deps): update terraform talos to v0.6.1 chore(deps): update dependency siderolabs/talos to v1.8.2 chore(deps): update terraform proxmox to v0.66.3 chore(deps): update helm release argo-cd to v7.7.0 chore(deps): update terraform kubernetes to v2.33.0 chore(deps): update registry.k8s.io/git-sync/git-sync docker tag to v4.3.0 chore(deps): update docker.io/mvance/unbound docker tag to v1.22.0 chore(deps): update helm release crossplane to v1.18.0 chore(deps): update media containers chore(deps): update netbird chore(deps): update ghcr.io/onedr0p/qbittorrent docker tag to v5 chore(deps): update helm release coturn to v1 chore(config): migrate config renovate.json
This commit is contained in:
		![29139614+renovate[bot]@users.noreply.github.com](/assets/img/avatar_default.png) renovate[bot]
					renovate[bot]
				
			
				
					committed by
					
						 Vegard Hagen
						Vegard Hagen
					
				
			
			
				
	
			
			
			 Vegard Hagen
						Vegard Hagen
					
				
			
						parent
						
							4dd769fdf7
						
					
				
				
					commit
					d898ef76e9
				
			| @@ -30,7 +30,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: remark42 | ||||
|           image: ghcr.io/umputun/remark42:v1.13.1 # renovate: github-releases=umputun/remark42 | ||||
|           image: ghcr.io/umputun/remark42:v1.14.0 # renovate: github-releases=umputun/remark42 | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -30,7 +30,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: prowlarr | ||||
|           image: ghcr.io/onedr0p/prowlarr:1.24.3 # renovate: docker=ghcr.io/onedr0p/prowlarr | ||||
|           image: ghcr.io/onedr0p/prowlarr:1.25.4 # renovate: docker=ghcr.io/onedr0p/prowlarr | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -30,7 +30,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: radarr | ||||
|           image: ghcr.io/onedr0p/radarr:5.11.0 # renovate: docker=ghcr.io/onedr0p/radarr | ||||
|           image: ghcr.io/onedr0p/radarr:5.14.0 # renovate: docker=ghcr.io/onedr0p/radarr | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -30,7 +30,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: sonarr | ||||
|           image: ghcr.io/onedr0p/sonarr:4.0.9 # renovate: docker=ghcr.io/onedr0p/sonarr | ||||
|           image: ghcr.io/onedr0p/sonarr:4.0.10 # renovate: docker=ghcr.io/onedr0p/sonarr | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -30,7 +30,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: git-sync-vuetorrent | ||||
|           image: registry.k8s.io/git-sync/git-sync:v4.2.4 # renovate: docker=registry.k8s.io/git-sync/git-sync | ||||
|           image: registry.k8s.io/git-sync/git-sync:v4.3.0 # renovate: docker=registry.k8s.io/git-sync/git-sync | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
| @@ -57,7 +57,7 @@ spec: | ||||
|             - name: tmp | ||||
|               mountPath: /tmp | ||||
|         - name: torrent | ||||
|           image: ghcr.io/onedr0p/qbittorrent:4.6.5 # renovate: docker=ghcr.io/onedr0p/qbittorrent | ||||
|           image: ghcr.io/onedr0p/qbittorrent:5.0.1 # renovate: docker=ghcr.io/onedr0p/qbittorrent | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -25,7 +25,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: jellyfin | ||||
|           image: ghcr.io/jellyfin/jellyfin:10.9.11 # renovate: docker=ghcr.io/jellyfin/jellyfin | ||||
|           image: ghcr.io/jellyfin/jellyfin:10.10.1 # renovate: docker=ghcr.io/jellyfin/jellyfin | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -28,7 +28,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: plex | ||||
|           image: ghcr.io/onedr0p/plex:1.41.0.8994-f2c27da23 # renovate: docker=ghcr.io/onedr0p/plex versioning=loose | ||||
|           image: ghcr.io/onedr0p/plex:1.41.1.9057-af5eaea7a # renovate: docker=ghcr.io/onedr0p/plex versioning=loose | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -16,5 +16,5 @@ helmCharts: | ||||
|     repo: https://charts.authelia.com | ||||
|     releaseName: authelia | ||||
|     namespace: authelia | ||||
|     version: 0.9.5 | ||||
|     version: 0.9.9 | ||||
|     valuesFile: values.yaml | ||||
|   | ||||
| @@ -2,7 +2,7 @@ | ||||
| image: | ||||
|   registry: ghcr.io | ||||
|   repository: authelia/authelia | ||||
|   tag: 4.38.16 # renovate: docker=ghcr.io/authelia/authelia | ||||
|   tag: 4.38.17 # renovate: docker=ghcr.io/authelia/authelia | ||||
|   pullPolicy: IfNotPresent | ||||
|  | ||||
| pod: | ||||
|   | ||||
| @@ -12,7 +12,7 @@ spec: | ||||
|       restartPolicy: OnFailure | ||||
|       containers: | ||||
|         - name: lldap-bootstrap | ||||
|           image: ghcr.io/lldap/lldap:2024-10-10-debian # renovate: docker=ghcr.io/lldap/lldap versioning=loose | ||||
|           image: ghcr.io/lldap/lldap:2024-11-04-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose | ||||
|           command: [ /app/bootstrap.sh ] | ||||
|           envFrom: | ||||
|             - configMapRef: | ||||
|   | ||||
| @@ -28,7 +28,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: lldap | ||||
|           image: ghcr.io/lldap/lldap:2024-10-10-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose | ||||
|           image: ghcr.io/lldap/lldap:2024-11-04-debian-rootless # renovate: docker=ghcr.io/lldap/lldap versioning=loose | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -9,7 +9,7 @@ resources: | ||||
| helmCharts: | ||||
|   - name: argo-cd | ||||
|     repo: https://argoproj.github.io/argo-helm | ||||
|     version: 7.6.8 | ||||
|     version: 7.7.0 | ||||
|     releaseName: "argocd" | ||||
|     namespace: argocd | ||||
|     valuesFile: values.yaml | ||||
|   | ||||
| @@ -9,7 +9,7 @@ resources: | ||||
| helmCharts: | ||||
|   - name: cert-manager | ||||
|     repo: https://charts.jetstack.io | ||||
|     version: v1.15.3 | ||||
|     version: v1.16.1 # renovate: github-releases=cert-manager/cert-manager | ||||
|     releaseName: cert-manager | ||||
|     namespace: cert-manager | ||||
|     valuesFile: values.yaml | ||||
|   | ||||
| @@ -9,4 +9,4 @@ helmCharts: | ||||
|     repo: https://charts.crossplane.io/stable | ||||
|     releaseName: crossplane | ||||
|     namespace: crossplane | ||||
|     version: 1.17.1 | ||||
|     version: 1.18.0 | ||||
|   | ||||
| @@ -4,7 +4,7 @@ kind: Kustomization | ||||
| helmCharts: | ||||
|   - name: intel-device-plugins-gpu | ||||
|     repo: https://intel.github.io/helm-charts/ | ||||
|     version: 0.30.0 | ||||
|     version: 0.31.1 | ||||
|     namespace: intel-device-plugins | ||||
|     releaseName: intel-device-plugins-gpu | ||||
|     includeCRDs: true | ||||
|   | ||||
| @@ -4,7 +4,7 @@ kind: Kustomization | ||||
| helmCharts: | ||||
|   - name: intel-device-plugins-operator | ||||
|     repo: https://intel.github.io/helm-charts/ | ||||
|     version: 0.30.0 | ||||
|     version: 0.31.1 | ||||
|     namespace: intel-device-plugins | ||||
|     releaseName: intel-device-plugins-operator | ||||
|     includeCRDs: true | ||||
| @@ -4,13 +4,13 @@ kind: Kustomization | ||||
| resources: | ||||
|   - ns.yaml | ||||
|   # NFD rules for Intel HW | ||||
|   - https://github.com/intel/intel-device-plugins-for-kubernetes/deployments/nfd/overlays/node-feature-rules?ref=v0.30.0 | ||||
|   - https://github.com/intel/intel-device-plugins-for-kubernetes/deployments/nfd/overlays/node-feature-rules?ref=v0.31.1 | ||||
|  | ||||
| # https://kubernetes-sigs.github.io/node-feature-discovery/v0.16/deployment/helm.html | ||||
| helmCharts: | ||||
|   - name: node-feature-discovery | ||||
|     repo: https://kubernetes-sigs.github.io/node-feature-discovery/charts | ||||
|     version: 0.16.4 | ||||
|     version: 0.16.6 | ||||
|     releaseName: nfd | ||||
|     includeCRDs: true | ||||
|     namespace: node-feature-discovery | ||||
|   | ||||
| @@ -4,7 +4,7 @@ kind: Kustomization | ||||
| helmCharts: | ||||
|   - name: sealed-secrets | ||||
|     repo: oci://registry-1.docker.io/bitnamicharts | ||||
|     version: 2.4.6 | ||||
|     version: 2.4.9 | ||||
|     releaseName: sealed-secrets-controller | ||||
|     namespace: sealed-secrets | ||||
|     includeCRDs: true | ||||
|   | ||||
| @@ -11,5 +11,5 @@ helmCharts: | ||||
|     releaseName: cnpg | ||||
|     namespace: cnpg-system | ||||
|     includeCRDs: true | ||||
|     version: 0.22.0 | ||||
|     version: 0.22.1 | ||||
|     valuesFile: values.yaml | ||||
|   | ||||
| @@ -8,7 +8,7 @@ resources: | ||||
| helmCharts: | ||||
|   - name: cilium | ||||
|     repo: https://helm.cilium.io | ||||
|     version: 1.16.2 # renovate: github-releases=cilium/cilium | ||||
|     version: 1.16.3 # renovate: github-releases=cilium/cilium | ||||
|     releaseName: "cilium" | ||||
|     includeCRDs: true | ||||
|     namespace: kube-system | ||||
|   | ||||
| @@ -16,7 +16,7 @@ spec: | ||||
|     spec: | ||||
|       containers: | ||||
|         - name: cloudflared | ||||
|           image: cloudflare/cloudflared:2024.9.1 # renovate: docker=cloudflare/cloudflared | ||||
|           image: cloudflare/cloudflared:2024.11.0 # renovate: docker=cloudflare/cloudflared | ||||
|           imagePullPolicy: IfNotPresent | ||||
|           args: | ||||
|             - tunnel | ||||
|   | ||||
| @@ -49,7 +49,7 @@ spec: | ||||
|               mountPath: /opt/adguardhome/conf | ||||
|       containers: | ||||
|         - name: adguard | ||||
|           image: docker.io/adguard/adguardhome:v0.107.52 # renovate: docker=docker.io/adguard/adguardhome | ||||
|           image: docker.io/adguard/adguardhome:v0.107.54 # renovate: docker=docker.io/adguard/adguardhome | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: true | ||||
|   | ||||
| @@ -17,7 +17,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: unbound | ||||
|           image: docker.io/mvance/unbound:1.20.0  # renovate: docker=docker.io/mvance/unbound | ||||
|           image: docker.io/mvance/unbound:1.22.0  # renovate: docker=docker.io/mvance/unbound | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|             readOnlyRootFilesystem: false | ||||
|   | ||||
| @@ -11,5 +11,5 @@ helmCharts: | ||||
|     repo: https://charts.jaconi.io | ||||
|     releaseName: coturn | ||||
|     namespace: coturn | ||||
|     version: 0.8.6 | ||||
|     version: 1.0.0 | ||||
|     valuesFile: values.yaml | ||||
|   | ||||
| @@ -17,7 +17,7 @@ spec: | ||||
|           type: RuntimeDefault | ||||
|       containers: | ||||
|         - name: netbird | ||||
|           image: docker.io/netbirdio/netbird:0.30.1 # renovate: docker=docker.io/netbirdio/netbird | ||||
|           image: docker.io/netbirdio/netbird:0.31.0 # renovate: docker=docker.io/netbirdio/netbird | ||||
|           imagePullPolicy: IfNotPresent | ||||
|           securityContext: | ||||
|             allowPrivilegeEscalation: false | ||||
|   | ||||
| @@ -23,7 +23,7 @@ idp: | ||||
|  | ||||
| management: | ||||
|   image: | ||||
|     tag: 0.30.1 # renovate: docker=docker.io/netbirdio/management | ||||
|     tag: 0.31.0 # renovate: docker=docker.io/netbirdio/management | ||||
|   nodeSelector: | ||||
|     topology.kubernetes.io/zone: abel | ||||
|   ingress: | ||||
| @@ -31,7 +31,7 @@ management: | ||||
|  | ||||
| signal: | ||||
|   image: | ||||
|     tag: 0.30.1 # renovate: docker=docker.io/netbirdio/signal | ||||
|     tag: 0.31.0 # renovate: docker=docker.io/netbirdio/signal | ||||
|   nodeSelector: | ||||
|     topology.kubernetes.io/zone: abel | ||||
|   uri: netbird.stonegarden.dev:443 | ||||
|   | ||||
| @@ -1,5 +1,5 @@ | ||||
| image: | ||||
|   tag: v2.6.1 # renovate: docker=docker.io/netbirdio/dashboard | ||||
|   tag: v2.7.0 # renovate: docker=docker.io/netbirdio/dashboard | ||||
|  | ||||
| auth: | ||||
|   authority: https://keycloak.stonegarden.dev/realms/homelab | ||||
|   | ||||
| @@ -1,7 +1,7 @@ | ||||
| { | ||||
|   "$schema": "https://docs.renovatebot.com/renovate-schema.json", | ||||
|   "extends": [ | ||||
|     "config:base" | ||||
|     "config:recommended" | ||||
|   ], | ||||
|   "kustomize": { | ||||
|     "fileMatch": [ | ||||
| @@ -25,15 +25,27 @@ | ||||
|   "packageRules": [ | ||||
|     { | ||||
|       "groupName": "Media containers", | ||||
|       "matchPackagePrefixes": [ | ||||
|         "ghcr.io/onedr0p", | ||||
|         "ghcr.io/jellyfin" | ||||
|       "matchPackageNames": [ | ||||
|         "ghcr.io/onedr0p**", | ||||
|         "ghcr.io/jellyfin**" | ||||
|       ] | ||||
|     }, | ||||
|     { | ||||
|       "groupName": "Netbird", | ||||
|       "matchPackagePrefixes": [ | ||||
|         "docker.io/netbirdio" | ||||
|       "matchPackageNames": [ | ||||
|         "docker.io/netbirdio**" | ||||
|       ] | ||||
|     }, | ||||
|     { | ||||
|       "groupName": "Intel Device Plugins", | ||||
|       "matchPackageNames": [ | ||||
|         "/intel-device-plugins/" | ||||
|       ] | ||||
|     }, | ||||
|     { | ||||
|       "groupName": "Cilium", | ||||
|       "matchPackageNames": [ | ||||
|         "/cilium/" | ||||
|       ] | ||||
|     }, | ||||
|     { | ||||
|   | ||||
| @@ -2,7 +2,7 @@ terraform { | ||||
|   required_providers { | ||||
|     proxmox = { | ||||
|       source  = "bpg/proxmox" | ||||
|       version = "0.66.1" | ||||
|       version = "0.66.3" | ||||
|     } | ||||
|   } | ||||
| } | ||||
|   | ||||
| @@ -7,7 +7,7 @@ module "talos" { | ||||
|  | ||||
|   image = { | ||||
|     version = "v1.8.1" | ||||
|     update_version = "v1.8.1" # renovate: github-releases=siderolabs/talos | ||||
|     update_version = "v1.8.2" # renovate: github-releases=siderolabs/talos | ||||
|     schematic = file("${path.module}/talos/image/schematic.yaml") | ||||
|   } | ||||
|  | ||||
|   | ||||
| @@ -2,15 +2,15 @@ terraform { | ||||
|   required_providers { | ||||
|     kubernetes = { | ||||
|       source  = "hashicorp/kubernetes" | ||||
|       version = "2.32.0" | ||||
|       version = "2.33.0" | ||||
|     } | ||||
|     proxmox = { | ||||
|       source  = "bpg/proxmox" | ||||
|       version = "0.66.1" | ||||
|       version = "0.66.3" | ||||
|     } | ||||
|     talos = { | ||||
|       source  = "siderolabs/talos" | ||||
|       version = "0.6.0" | ||||
|       version = "0.6.1" | ||||
|     } | ||||
|     restapi = { | ||||
|       source  = "Mastercard/restapi" | ||||
|   | ||||
| @@ -75,7 +75,7 @@ spec: | ||||
|         command: | ||||
|           - cilium | ||||
|           - install | ||||
|           - --version=v1.16.2 # renovate: github-releases=cilium/cilium | ||||
|           - --version=v1.16.3 # renovate: github-releases=cilium/cilium | ||||
|           - --set | ||||
|           - kubeProxyReplacement=true | ||||
|           - --values | ||||
|   | ||||
		Reference in New Issue
	
	Block a user