Vegard Hagen
787f027c87
wip(db): configure a simple databse
2024-11-06 22:27:27 +01:00
renovate[bot]
4e517fa186
chore(deps): renovate bonanza
...
chore(deps): update helm release intel-device-plugins-operator to v0.31.1
chore(deps): update helm release intel-device-plugins-gpu to v0.31.1
chore(deps): update docker.io/adguard/adguardhome docker tag to v0.107.53
chore(deps): update sealed-secrets docker tag to v2.4.9
chore(deps): update ghcr.io/lldap/lldap docker tag to v2024-11-04-debian-rootless
chore(deps): update docker.io/adguard/adguardhome docker tag to v0.107.54
chore(deps): update cloudflare/cloudflared docker tag to v2024.11.0
chore(deps): update ghcr.io/authelia/authelia docker tag to v4.38.17
chore(deps): update helm release authelia to v0.9.9
chore(deps): update helm release cert-manager to v1.16.1
chore(deps): update dependency cilium/cilium to v1.16.3
chore(deps): update dependency intel/intel-device-plugins-for-kubernetes to v0.31.1
chore(deps): update helm release cloudnative-pg to v0.22.1
chore(deps): update dependency umputun/remark42 to v1.14.0
chore(deps): update helm release node-feature-discovery to v0.16.6
chore(deps): update terraform talos to v0.6.1
chore(deps): update dependency siderolabs/talos to v1.8.2
chore(deps): update terraform proxmox to v0.66.3
chore(deps): update helm release argo-cd to v7.7.0
chore(deps): update terraform kubernetes to v2.33.0
chore(deps): update registry.k8s.io/git-sync/git-sync docker tag to v4.3.0
chore(deps): update docker.io/mvance/unbound docker tag to v1.22.0
chore(deps): update helm release crossplane to v1.18.0
chore(deps): update media containers
chore(deps): update netbird
chore(deps): update ghcr.io/onedr0p/qbittorrent docker tag to v5
chore(deps): update helm release coturn to v1
chore(config): migrate config renovate.json
2024-11-06 22:20:36 +01:00
Vegard Hagen
d84d1b61d0
feat: add extra admin user
2024-11-06 22:20:36 +01:00
Vegard Hagen
8f4e22f3c8
chore(qBit): downgrade to 4.6.5
2024-11-06 22:20:35 +01:00
Vegard Hagen
dc295853e6
feat(authelia): add "optional" secrets in config
2024-11-06 22:20:35 +01:00
Vegard Hagen
afadd86a26
feat(authelia): make cert-manager generate jwks
2024-11-06 22:20:35 +01:00
Vegard Hagen
71524934c2
feat(tofu): use new talos_image_factory_schematic resource
...
talos provider 0.6 added a new resource for generating the image schematic id
2024-11-06 22:20:35 +01:00
Vegard Hagen
397e03e423
fix(authelia): add access_control policy rule
2024-11-06 22:20:35 +01:00
Vegard Hagen
33c9f773cf
chore(talos): upgrade last node ctrl-00
...
Regular 'terraform apply' was enough this time
We're now on Talos 1.8.1 and Kubernetes 1.31.1
2024-11-06 22:20:35 +01:00
Vegard Hagen
7146a23a47
chore(talos): upgrade node ctrl-02
...
It worked with 'tofu apply -refresh=false'! Still had to manually shut down the VM though. Still scary!
2024-11-06 22:20:35 +01:00
Vegard Hagen
0877baed7e
chore(talos): upgrade node ctrl-01
...
start manual talos upgrade process
Issue with upgrading 'endppoint' node (ctrl-02) since API becomes unresponsive. Either do proper LB or maybe 'tofu apply -refresh=false'
2024-11-06 22:20:35 +01:00
renovate[bot]
9898d39243
chore(deps): merge renovate PRs
...
chore(deps): update netbird
chore(deps): update helm release crossplane to v1.17.1
chore(deps): update media containers
chore(deps): update dependency crossplane-contrib/function-auto-ready to v0.3.0
chore(deps): update helm release argo-cd to v7.6.8
chore(deps): update ghcr.io/lldap/lldap docker tag to v2024-10-10-debian-rootless
chore(deps): update proxmox-csi-plugin docker tag to v0.2.13
chore(deps): update ghcr.io/authelia/authelia docker tag to v4.38.16
chore(deps): update terraform proxmox to v0.66.1
chore(deps): update terraform talos to v0.6.0
chore(deps): update dependency cilium/cilium to v1.16.2
chore(deps): update dependency siderolabs/talos to v1.8.1
2024-11-06 22:20:05 +01:00
Vegard Hagen
c2a5ce8e1f
feat(authelia): add ES256 jwk and use it
2024-10-10 20:32:49 +01:00
Vegard Hagen
bbf5212642
fix(cert-manager): update API token
2024-10-10 21:18:05 +02:00
Vegard Hagen
f85bae11fd
feat(authelia): enable 2FA
2024-10-10 20:58:14 +02:00
Vegard Hagen
b242ad7294
feat(authelia): add ES256 jwk
2024-10-10 20:41:58 +02:00
Vegard Hagen
a78d517e7d
fix(oidc): conceal jwks signing key
2024-10-10 17:17:57 +02:00
Vegard Hagen
c3e433dbd8
fix(oidc): conceal argo cd client secret
2024-10-08 22:56:58 +02:00
Vegard Hagen
4817635633
feat(authelia): add Argo CD client
2024-10-01 21:59:38 +02:00
Vegard Hagen
8b5d9dc3e1
feat(lldap): create and use own authelia user
2024-09-15 17:37:47 +02:00
Vegard Hagen
ab6efa1d84
feat(auth): add Authelia for OIDC
...
Use Authelia in an attempt to replace Keycloak. Kanidm is another alternative we're going to try later.
2024-09-15 17:37:47 +02:00
Vegard Hagen
d8ee2a5297
chore(torrent): change torrent ports
2024-09-15 17:37:27 +02:00
Vegard Hagen
dd75072338
feat(cilium): enable maglev loadBalancer
...
Maglev Consistent Hashing should improve resiliency in case of failures https://docs.cilium.io/en/stable/network/kubernetes/kubeproxy-free/\#maglev-consistent-hashing
2024-09-13 17:26:51 +02:00
Vegard Hagen
640d54aa4b
fix(argocd): turn on server-side diff
...
https://argo-cd.readthedocs.io/en/latest/user-guide/diff-strategies/\#server-side-diff
This should solve out-of-sync for e.g. Cilium ref https://github.com/argoproj/argo-cd/issues/19038
2024-09-13 17:26:45 +02:00
renovate[bot]
eda151061d
chore(deps): update helm release crossplane to v1.17.0
2024-09-13 14:45:49 +02:00
renovate[bot]
9f48897db8
chore(deps): update helm release argo-cd to v7.5.2
2024-09-13 14:45:49 +02:00
renovate[bot]
5f99f6b302
chore(deps): update terraform talos to v0.6.0-beta.0
2024-09-13 14:45:48 +02:00
renovate[bot]
27e9a39b41
chore(deps): update media containers
2024-09-13 14:45:48 +02:00
renovate[bot]
02c8c33572
chore(deps): update ghcr.io/lldap/lldap docker tag to v2024-09-11
2024-09-13 14:45:17 +02:00
renovate[bot]
dac59fb36e
chore(deps): update sealed-secrets docker tag to v2.4.6
2024-09-13 14:44:25 +02:00
renovate[bot]
633e636377
chore(deps): update keycloak docker tag to v22.2.3
2024-09-13 14:44:25 +02:00
renovate[bot]
55b3f09c27
chore(deps): update terraform proxmox to v0.64.0
2024-09-13 14:44:24 +02:00
renovate[bot]
ff0ee73520
chore(deps): update cloudflare/cloudflared docker tag to v2024.9.1
2024-09-13 14:44:24 +02:00
renovate[bot]
6d532bfc0e
chore(deps): update terraform restapi to v1.20.0
2024-09-13 14:44:18 +02:00
Vegard Hagen
c44d39b34a
feat(lldap): bootstrap lldap users with script
2024-09-07 20:48:33 +02:00
Vegard Hagen
5b50f157eb
feat(ldap): add lldap as ldap server
2024-09-07 18:23:24 +02:00
Vegard Hagen
79f80e290d
feat(cnpg): configure test-database for external connection
2024-09-07 16:52:00 +02:00
Vegard Hagen
e91621014d
feat(renovate): group related containers for fewer renovate PRs
2024-09-02 23:45:26 +02:00
Vegard Hagen
f2be78cef6
feat(unrar): add an image for unrar tool
2024-09-02 23:45:26 +02:00
renovate[bot]
799ac65acb
chore(deps): update ghcr.io/onedr0p/plex docker tag to v1.40.5.8921-836b34c27
2024-09-02 23:45:26 +02:00
Vegard Stenhjem Hagen
90574518cf
fix(netbird): expose netbird dashboard
2024-09-02 23:45:26 +02:00
Vegard Hagen
c9db88e0e8
fix: route plex and jellyfin through gateway for tls-termination
2024-08-27 07:18:10 +02:00
renovate[bot]
0f5c079754
chore(deps): update ghcr.io/onedr0p/sonarr docker tag to v4.0.9
2024-08-26 14:05:03 +02:00
Vegard Hagen
03c851eb25
feat(database): add cnpg for database management
2024-08-25 23:58:06 +02:00
renovate[bot]
b0bb4fff4c
chore(deps): update proxmox-csi-plugin docker tag to v0.2.9
2024-08-25 13:21:35 +02:00
renovate[bot]
d93167a2ef
chore(deps): update ghcr.io/jellyfin/jellyfin docker tag to v10.9.10
2024-08-25 13:21:35 +02:00
renovate[bot]
5e74c8a8a2
chore(deps): update keycloak docker tag to v22.1.3
2024-08-25 13:20:49 +02:00
renovate[bot]
1e9032797b
chore(deps): update dependency corewire/images/crossplane/function-keycloak-builtin-objects to v3
2024-08-25 13:20:49 +02:00
renovate[bot]
04e1e78240
chore(deps): update terraform proxmox to v0.63.0
2024-08-25 13:20:49 +02:00
renovate[bot]
559cfea2c9
chore(deps): update helm release argo-cd to v7.4.5
2024-08-25 13:20:49 +02:00