98 Commits

Author SHA1 Message Date
2a47baca3d longhorn: move images to infra project 2026-01-16 20:00:17 -03:00
5406f432dd longhorn: force image pulls during migration 2026-01-16 18:26:29 -03:00
eb4aa701d6 cert-manager: pin webhook and cainjector to rpi nodes 2026-01-16 18:17:40 -03:00
dcfd357658 longhorn: pin vault sync to rpi workers 2026-01-16 17:45:29 -03:00
5ba9501db9 longhorn: use harbor mirrors and vault pull secret 2026-01-16 17:31:29 -03:00
c2bfdb57d3 longhorn: add helm repo and adopt workflow 2026-01-16 16:25:40 -03:00
6477997bd5 traefik: add CRDs 2026-01-16 11:21:58 -03:00
90a25ac73e platform: add cert-manager and align postgres vault path 2026-01-16 11:14:48 -03:00
4de2e96f4d gitea: expose ssh via metallb shared IP 2026-01-15 16:39:04 -03:00
04a58b43d6 core: add bstein.dev coredns overrides 2026-01-15 16:29:32 -03:00
ab4f0d4fe2 traefik: wire LB service to custom deployment 2026-01-15 11:26:46 -03:00
fb05c442f5 longhorn: read oauth2-proxy secrets from vault 2026-01-14 17:48:12 -03:00
ac0d7a40ab infra: add vault injector 2026-01-14 11:46:13 -03:00
bdc32b7a36 vault(consumption): sync secrets via CSI 2026-01-14 05:07:23 -03:00
5d53d900aa feat: start vault consumption for outline and planka 2026-01-14 01:30:41 -03:00
6f4cc58941 vault: prep helm releases and image pins 2026-01-13 19:29:14 -03:00
3c3a573e3d platform: move postgres to infrastructure 2026-01-13 17:53:04 -03:00
987dd126fa Fix Jetson device plugin args 2026-01-11 01:57:20 -03:00
c887aaeecf logging: add trace analytics ingestion 2026-01-10 00:13:59 -03:00
abc6e45d17 logging: add opensearch dashboards ui 2026-01-09 08:54:07 -03:00
b33be4a7c2 logging: add loki and fluent-bit 2026-01-08 22:31:45 -03:00
91de1c1d8d gpu: enable time-slicing and refresh dashboards 2026-01-01 14:16:08 -03:00
0d8febe8f8 metallb: restore speaker log level info 2025-12-31 22:35:16 -03:00
8f5c0c087c metallb: set speaker lb-class 2025-12-31 22:15:08 -03:00
5df2279688 metallb: enable speaker debug logs 2025-12-31 22:00:09 -03:00
075549ddf7 metallb: run speaker on all nodes 2025-12-31 21:45:12 -03:00
df72873ca7 metallb: schedule speaker on rpi4+rpi5 2025-12-31 21:00:18 -03:00
ca3a5dec6a communication: add Othrys stack via Flux 2025-12-31 12:00:12 -03:00
b41eac80b9 vault-csi: deploy vault provider daemonset 2025-12-25 03:20:13 -03:00
78099cd6b9 platform: add vault csi driver 2025-12-25 03:14:50 -03:00
669a7cc69a harbor: deploy chart via flux 2025-12-15 22:05:40 -03:00
be0c321648 harbor: add helm repo and deploy via helmrelease 2025-12-15 22:05:32 -03:00
02956b18c9 jenkins: add helm release with ingress + astreae storage 2025-12-14 15:57:42 -03:00
97b14715c3 flux: add weave gitops ui 2025-12-14 14:38:08 -03:00
8d6650129e nextcloud: integration with mailu & gitops-ui: initial install 2025-12-14 14:21:40 -03:00
0771bc954d mailu: capture helm release and cert 2025-12-11 23:54:43 -03:00
88db462f8f longhorn/vault: gate via oauth2-proxy 2025-12-07 19:44:02 -03:00
e44def25f8 auth: remove error middleware to allow redirect 2025-12-07 13:19:45 -03:00
088fed6720 auth: forward-auth via external auth host (svc traffic flaky) 2025-12-07 13:03:29 -03:00
84aa870cda auth: use internal oauth2-proxy svc for forward-auth 2025-12-07 11:25:29 -03:00
876ec19543 auth: add 401 redirect middleware to oauth2-proxy 2025-12-07 11:14:25 -03:00
ec1d33f1ca auth: point forward-auth to external auth host 2025-12-07 11:09:09 -03:00
571bf759a2 auth: add namespace-local forward-auth middlewares 2025-12-07 10:25:44 -03:00
7525289a0c auth: wire oauth2-proxy and enable grafana oidc 2025-12-07 02:01:21 -03:00
ea60425d42 traefik: use responding timeouts only 2025-11-18 20:01:16 -03:00
a8cb8c0287 traefik: extend upload timeouts 2025-11-18 19:43:19 -03:00
dca749cc04 gpu: drop runtimeClass from minipc plugin 2025-11-09 13:28:40 -03:00
1bdc0efdac core: point flux to infrastructure path 2025-11-09 12:49:54 -03:00
e2e2916139 fix: flux automation and monitoring config 2025-11-09 12:31:38 -03:00
077654fa2d refactor: restructure atlas flux layout 2025-11-09 11:48:45 -03:00