1 Commits

Author SHA1 Message Date
fd3f232557 Update grafana/promtail Docker tag to v3 2025-11-05 03:24:29 +00:00
20 changed files with 56 additions and 333 deletions

View File

@@ -1,26 +0,0 @@
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: cluster-fun-homelab-accessible-check
namespace: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: cluster.fun
destination:
namespace: homelab-accessible-check
name: cluster-fun (v2)
source:
path: manifests/homelab-accessible-check
repoURL: "https://git.cluster.fun/AverageMarcus/cluster.fun.git"
targetRevision: HEAD
syncPolicy:
automated: {}
syncOptions:
- CreateNamespace=true
ignoreDifferences:
- kind: Secret
jsonPointers:
- /data
---

View File

@@ -1,25 +0,0 @@
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: url-to-grist
namespace: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: cluster.fun
destination:
namespace: cloudnative-now
name: cluster-fun (v2)
source:
path: manifests/url-to-grist
repoURL: "https://git.cluster.fun/AverageMarcus/cluster.fun.git"
targetRevision: HEAD
syncPolicy:
syncOptions:
- CreateNamespace=true
automated: {}
ignoreDifferences:
- kind: Secret
jsonPointers:
- /data
---

View File

@@ -68,7 +68,7 @@ spec:
mountPath: /config/
- name: oauth-proxy
image: quay.io/oauth2-proxy/oauth2-proxy:v7.13.0
image: quay.io/oauth2-proxy/oauth2-proxy:v7.12.0
args:
- --cookie-secure=false
- --provider=oidc

View File

@@ -81,7 +81,7 @@ spec:
secretKeyRef:
key: password
name: dashboard-auth
image: quay.io/oauth2-proxy/oauth2-proxy:v7.13.0
image: quay.io/oauth2-proxy/oauth2-proxy:v7.12.0
name: oauth-proxy
ports:
- containerPort: 8000

View File

@@ -43,7 +43,7 @@ spec:
priorityClassName: critical
containers:
- name: git
image: gitea/gitea:1.25.2
image: gitea/gitea:1.25.0
env:
- name: APP_NAME
value: "Git"

View File

@@ -75,7 +75,7 @@ spec:
priorityClassName: critical
containers:
- name: grist
image: gristlabs/grist-oss:1.7.8
image: gristlabs/grist-oss:1.7.5
imagePullPolicy: IfNotPresent
ports:
- name: http

View File

@@ -1,53 +0,0 @@
apiVersion: v1
kind: Secret
metadata:
name: docker-config
namespace: homelab-accessible-check
annotations:
kube-1password: i6ngbk5zf4k52xgwdwnfup5bby
kube-1password/vault: Kubernetes
kube-1password/secret-text-key: .dockerconfigjson
type: kubernetes.io/dockerconfigjson
data:
.dockerconfigjson: e30=
---
apiVersion: v1
kind: Secret
metadata:
name: homelab-accessible-check
namespace: homelab-accessible-check
annotations:
kube-1password: bz6ujxc5neqma242lpfqdxfiay
kube-1password/vault: Kubernetes
kube-1password/secret-text-parse: "true"
type: Opaque
---
apiVersion: apps/v1
kind: Deployment
metadata:
name: homelab-accessible-check
namespace: homelab-accessible-check
spec:
replicas: 1
selector:
matchLabels:
app: homelab-accessible-check
template:
metadata:
labels:
app: homelab-accessible-check
spec:
imagePullSecrets:
- name: docker-config
containers:
- name: checker
image: rg.fr-par.scw.cloud/averagemarcus-private/homelab-accessible-check:latest
imagePullPolicy: Always
envFrom:
- secretRef:
name: "homelab-accessible-check"
resources:
limits:
memory: 50Mi
requests:
memory: 50Mi

View File

@@ -35,8 +35,6 @@ data:
cnsmunich-feedback: https://yay-or-nay.cluster.fun/feedback/20UETBI0
containerdays25: https://speaking.marcusnoble.co.uk/HARSlE/the-future-of-kubernetes-admission-logic
containerdays25-feedback: https://yay-or-nay.cluster.fun/feedback/F8P351QK
cdl-2026: https://speaking.marcusnoble.co.uk/lMcEwR/pod-deep-dive-the-interesting-bits
cdl-2026-feedback: https://yay-or-nay.cluster.fun/feedback/EMLARINI
---
apiVersion: v1
kind: Service

View File

@@ -31,7 +31,7 @@ spec:
priorityClassName: critical
containers:
- name: frontend
image: ghcr.io/mealie-recipes/mealie:v3.6.1
image: ghcr.io/mealie-recipes/mealie:v3.4.0
imagePullPolicy: Always
envFrom:
- secretRef:

View File

@@ -38,7 +38,7 @@ spec:
operator: "Exists"
automountServiceAccountToken: false
containers:
- image: ghcr.io/google/cadvisor:0.54.1
- image: ghcr.io/google/cadvisor:v0.53.0
name: cadvisor
ports:
- containerPort: 8080

View File

@@ -216,7 +216,7 @@ spec:
serviceAccountName: promtail
containers:
- name: promtail
image: "grafana/promtail:3.6.2"
image: "grafana/promtail:3.5.7"
imagePullPolicy: IfNotPresent
args:
- "-config.file=/etc/promtail/promtail.yaml"

View File

@@ -217,7 +217,7 @@ spec:
serviceAccountName: prometheus-server
containers:
- name: vmagent
image: "victoriametrics/vmagent:v1.131.0"
image: "victoriametrics/vmagent:v1.129.0"
imagePullPolicy: "IfNotPresent"
args:
- -remoteWrite.url=http://vmcluster.auth-proxy.svc/insert/0/prometheus/

View File

@@ -56,9 +56,7 @@ data:
general.config.php: |-
<?php
$CONFIG = array (
'overwriteprotocol' => 'https',
'loglevel' => 1,
'log_rotate_size' => 100 * 1024 * 1024
'overwriteprotocol' => 'https'
);
.htaccess: |-
# line below if for Apache 2.4
@@ -206,7 +204,7 @@ spec:
priorityClassName: critical
containers:
- name: nextcloud
image: "nextcloud:32.0.2-apache"
image: "nextcloud:32.0.1-apache"
imagePullPolicy: IfNotPresent
env:
- name: SQLITE_DATABASE
@@ -339,97 +337,6 @@ spec:
- name: nextcloud-config
mountPath: /var/www/html/config/smtp.config.php
subPath: smtp.config.php
- name: cron
image: "nextcloud:32.0.2-apache"
imagePullPolicy: IfNotPresent
command:
- /cron.sh
env:
- name: SQLITE_DATABASE
value: "nextcloud"
- name: NEXTCLOUD_ADMIN_USER
valueFrom:
secretKeyRef:
name: nextcloud-nextcloud
key: nextcloud-username
- name: NEXTCLOUD_ADMIN_PASSWORD
valueFrom:
secretKeyRef:
name: nextcloud-nextcloud
key: nextcloud-password
- name: NEXTCLOUD_TRUSTED_DOMAINS
value: nextcloud.cluster.fun
- name: NEXTCLOUD_DATA_DIR
value: "/var/www/html/data"
- name: REDIS_HOST
valueFrom:
secretKeyRef:
name: nextcloud-nextcloud-redis
key: redis-host
- name: REDIS_PORT
valueFrom:
secretKeyRef:
name: nextcloud-nextcloud-redis
key: redis-port
- name: REDIS_HOST_PASSWORD
valueFrom:
secretKeyRef:
name: nextcloud-nextcloud-redis
key: redis-password
- name: REDIS_DB_INDEX
valueFrom:
secretKeyRef:
name: nextcloud-nextcloud-redis
key: redis-db-index
volumeMounts:
- name: nextcloud-data
mountPath: /var/www/
subPath: root
- name: nextcloud-data
mountPath: /var/www/html
subPath: html
- name: nextcloud-data
mountPath: /var/www/html/data
subPath: data
- name: nextcloud-data
mountPath: /var/www/html/config
subPath: config
- name: nextcloud-data
mountPath: /var/www/html/custom_apps
subPath: custom_apps
- name: nextcloud-data
mountPath: /var/www/tmp
subPath: tmp
- name: nextcloud-data
mountPath: /var/www/html/themes
subPath: themes
- name: nextcloud-config
mountPath: /var/www/html/config/general.config.php
subPath: general.config.php
- name: nextcloud-s3
mountPath: /var/www/html/config/s3.config.php
subPath: s3.config.php
- name: nextcloud-config
mountPath: /var/www/html/config/.htaccess
subPath: .htaccess
- name: nextcloud-config
mountPath: /var/www/html/config/apache-pretty-urls.config.php
subPath: apache-pretty-urls.config.php
- name: nextcloud-config
mountPath: /var/www/html/config/apcu.config.php
subPath: apcu.config.php
- name: nextcloud-config
mountPath: /var/www/html/config/apps.config.php
subPath: apps.config.php
- name: nextcloud-config
mountPath: /var/www/html/config/autoconfig.php
subPath: autoconfig.php
- name: nextcloud-config
mountPath: /var/www/html/config/redis.config.php
subPath: redis.config.php
- name: nextcloud-config
mountPath: /var/www/html/config/smtp.config.php
subPath: smtp.config.php
volumes:
- name: nextcloud-data
persistentVolumeClaim:
@@ -444,6 +351,45 @@ spec:
securityContext:
fsGroup: 33
---
# Source: nextcloud/templates/cronjob.yaml
apiVersion: batch/v1
kind: CronJob
metadata:
name: nextcloud-nextcloud-cron
labels:
app.kubernetes.io/name: nextcloud
app.kubernetes.io/instance: nextcloud-nextcloud
annotations:
{}
spec:
schedule: "*/5 * * * *"
concurrencyPolicy: Forbid
failedJobsHistoryLimit: 5
successfulJobsHistoryLimit: 2
jobTemplate:
metadata:
labels:
app.kubernetes.io/name: nextcloud
spec:
template:
metadata:
labels:
app.kubernetes.io/name: nextcloud
spec:
restartPolicy: Never
containers:
- name: nextcloud
image: "nextcloud:32.0.1-apache"
imagePullPolicy: IfNotPresent
command: [ "curl" ]
args:
- "--fail"
- "-L"
- "https://nextcloud.cluster.fun/cron.php"
resources:
requests:
memory: 200Mi
---
# Source: nextcloud/templates/ingress.yaml
apiVersion: networking.k8s.io/v1
kind: Ingress

View File

@@ -492,7 +492,7 @@ spec:
fieldPath: metadata.namespace
- name: LD_PRELOAD
value: /usr/local/lib/libmimalloc.so
image: registry.k8s.io/ingress-nginx/controller:v1.14.1@sha256:f95a79b85fb93ac3de752c71a5c27d5ceae10a18b61904dec224c1c6a4581e47
image: registry.k8s.io/ingress-nginx/controller:v1.14.0@sha256:e4127065d0317bd11dc64c4dd38dcf7fb1c3d72e468110b4086e636dbaac943d
imagePullPolicy: IfNotPresent
lifecycle:
preStop:

View File

@@ -57,7 +57,7 @@ spec:
- name: data
mountPath: /data
- name: update-native-modules
image: nodered/node-red:4.1.2-18
image: nodered/node-red:4.1.1-18
imagePullPolicy: IfNotPresent
command:
- bash
@@ -73,7 +73,7 @@ spec:
mountPath: /data
containers:
- name: web
image: nodered/node-red:4.1.2-18
image: nodered/node-red:4.1.1-18
imagePullPolicy: Always
ports:
- containerPort: 1880

View File

@@ -46,7 +46,7 @@ spec:
priorityClassName: critical
containers:
- name: outline
image: outlinewiki/outline:1.1.0
image: outlinewiki/outline:1.0.1
imagePullPolicy: IfNotPresent
env:
- name: ALLOWED_DOMAINS

View File

@@ -92,7 +92,7 @@ spec:
secretKeyRef:
key: password
name: social-to-rolodex-auth
image: quay.io/oauth2-proxy/oauth2-proxy:v7.13.0
image: quay.io/oauth2-proxy/oauth2-proxy:v7.12.0
name: oauth-proxy
ports:
- containerPort: 8000

View File

@@ -45,7 +45,7 @@ spec:
- --entrypoints.websecure.http.tls=true
- --entrypoints.web.http.redirections.entrypoint.to=websecure
- --entrypoints.web.http.redirections.entrypoint.scheme=https
image: rancher/mirrored-library-traefik:2.11.31
image: rancher/mirrored-library-traefik:2.11.29
imagePullPolicy: IfNotPresent
livenessProbe:
failureThreshold: 3

View File

@@ -1,117 +0,0 @@
apiVersion: v1
kind: Secret
metadata:
name: url-to-grist
namespace: cloudnative-now
annotations:
kube-1password: bu4lczquzosu3yxhyrzbtepply
kube-1password/vault: Kubernetes
kube-1password/secret-text-parse: "true"
labels:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
type: Opaque
---
apiVersion: v1
kind: Service
metadata:
name: url-to-grist
labels:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
spec:
type: ClusterIP
ports:
- port: 80
targetPort: web
name: web
selector:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
---
apiVersion: apps/v1
kind: Deployment
metadata:
name: url-to-grist
labels:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
annotations:
secret.reloader.stakater.com/reload: "url-to-grist"
spec:
replicas: 1
selector:
matchLabels:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
template:
metadata:
labels:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
spec:
containers:
- name: url-to-grist
image: ghcr.io/namelessplanet/url-to-grist:v1.5.3
imagePullPolicy: IfNotPresent
env:
- name: PORT
value: "8080"
envFrom:
- secretRef:
name: "url-to-grist"
ports:
- containerPort: 8080
name: web
livenessProbe:
httpGet:
port: web
path: /healthz
initialDelaySeconds: 1
periodSeconds: 5
successThreshold: 1
failureThreshold: 3
timeoutSeconds: 3
readinessProbe:
httpGet:
port: web
path: /healthz
initialDelaySeconds: 1
periodSeconds: 5
successThreshold: 1
failureThreshold: 3
timeoutSeconds: 3
resources:
limits:
memory: 20Mi
requests:
memory: 20Mi
---
apiVersion: networking.k8s.io/v1
kind: Ingress
metadata:
name: url-to-grist
namespace: cloudnative-now
labels:
app.kubernetes.io/name: url-to-grist
app.kubernetes.io/part-of: cloudnative.now
annotations:
cert-manager.io/cluster-issuer: letsencrypt
nginx.ingress.kubernetes.io/force-ssl-redirect: "true"
spec:
ingressClassName: nginx
tls:
- hosts:
- "url-to-grist.cloudnative.now"
secretName: "url-to-grist-ingress"
rules:
- host: "url-to-grist.cloudnative.now"
http:
paths:
- path: "/"
pathType: ImplementationSpecific
backend:
service:
name: url-to-grist
port:
name: web

View File

@@ -17,7 +17,7 @@ metadata:
app: yay-or-nay
app.kubernetes.io/name: yay-or-nay
annotations:
secret.reloader.stakater.com/reload: "yay-or-nay"
reloader.stakater.com/search: "true"
spec:
replicas: 1
selector: