1
0
Fork 0
Resources for deploying and managing my personal Kubernetes cluster
 
 
 
Go to file
Dustin f17ad4f779 updatebot: Updates for latest version
The latest version of `updatebot` has two major changes:

1. Projects can encompass multiple images, eliminating the need for
   multiple configuration files and CronJobs.  Projects are now defined
   in a YAML documen, since the data structure is very nested and is
   cumbersome to express in TOML.
2. Pull requests can now include a diff of the resources that will
   change if the PR is merged.  This requires the `kubectl` and `diff`
   programs (which are not currently included in the _updatebot_
   container image, so we bind-mount them from the host) and permission
   to compare the local manifests using the Kubernetes API.  Oddly,
   computing the diff requires permission to use the PATCH method, even
   though the client is not requesting any changes.  This is apparently
   a long-standing bug ([issue #981][0]) that may or may not ever be
   fixed.

[0]: https://github.com/kubernetes/kubectl/issues/981
2024-09-08 19:54:58 -05:00
argocd argocd: apps: Remove PostgreSQL 2024-08-27 19:09:52 -05:00
authelia authelia: Point to external PostgreSQL server 2024-07-02 18:16:05 -05:00
autoscaler autoscaler: Add SealedSecret for AWS key 2024-02-22 09:59:16 -06:00
cert-manager websites: Manage dcow cert via Ingress annotation 2024-08-24 11:30:56 -05:00
collectd collectd: Add DaemonSet for collectd 2024-06-26 18:29:49 -05:00
dch-root-ca step-ca: Re-deploy (again) with DCH CA R2 2024-04-05 13:03:34 -05:00
dch-webhooks dch-webhooks: Disable HTTPS redirect 2024-01-22 16:55:03 -06:00
device-plugins device-plugins: Allow FUSE plugin on Jenkins nodes 2024-02-13 07:56:35 -06:00
docker-distribution docker-distribution: Deploy OCI image registry 2022-07-31 01:15:01 -05:00
dynk8s-provisioner dynk8s-provisioner: Set instance label for Argo CD 2023-10-14 07:43:37 -05:00
firefly-iii firefly-iii: Update to 6.1.19 2024-08-27 20:22:01 +00:00
fleetlock fleetlock: Deploy Zincati fleet lock manager 2024-05-31 15:18:01 -05:00
grafana grafana: Trust dch-root-ca for LDAP connections 2024-06-26 18:29:49 -05:00
home-assistant zwavejs2mqtt: Update to 9.18.0 2024-09-02 11:32:06 +00:00
hudctrl hudctrl: Update for v0.2.0 2022-12-18 16:26:07 -06:00
ingress ingress: Proxy AMQP 2024-07-26 20:59:00 -05:00
invoice-ninja invoice-ninja: Fix document upload feature 2024-07-27 13:04:02 -05:00
jenkins jenkins: Remove Argo CD sync hook 2024-07-04 06:53:58 -05:00
keyserv keyserv: Add age keys for unifi2 2024-05-26 11:48:12 -05:00
kitchen kitchen: Run as non-root user 2024-06-06 11:03:42 -05:00
loki-ca loki-ca: Add cert-manager issuer for Loki CA 2024-02-22 07:10:01 -06:00
metrics metrics: Add role to allow anon access to metrics 2022-11-05 16:23:02 -05:00
ntfy ntfy: Handle ntfy.pyrocufflink.net name 2024-08-24 11:31:47 -05:00
paperless-ngx paperless-ngx: Use volume claim template for redis 2024-06-26 18:29:49 -05:00
photoframesvc photoframesvc: Initial commit 2023-10-14 11:25:50 -05:00
phpipam phpipam: Migrate to Sealed Secrets 2023-10-14 10:56:20 -05:00
postgresql postgresql: Fix pod secrets 2023-10-19 07:12:16 -05:00
prometheus_speedtest prom_speedtest: Add application manifest 2022-08-06 22:21:06 -05:00
promtail promtail: Deploy as DaemonSet 2024-02-22 07:10:01 -06:00
rabbitmq rabbitmq: Deploy RabbitMQ Server 2024-07-26 20:59:00 -05:00
rent-reminder rent-reminder: Add CronJob to send reminders 2024-01-04 08:54:54 -06:00
restic-exporter restic-exporter: Deploy Restic Prometheus exporter 2024-06-26 18:29:49 -05:00
scanservjs scanservjs: Update to v2.27.0 2023-07-08 07:06:10 -05:00
sealed-secrets sealed-secrets: Deploy Bitnami Sealed Secrets 2023-10-13 18:34:01 -05:00
setup setup: ks: Generate iSCSI initiator name 2022-08-23 21:22:01 -05:00
sshca sshca: Add machine IDs for VM hosts 2024-08-31 17:49:36 -05:00
step-ca Merge remote-tracking branch 'refs/remotes/origin/master' 2024-08-06 08:03:42 -05:00
storage home-assistant: Deploy Home Assistant 2023-07-24 17:53:58 -05:00
updatebot updatebot: Updates for latest version 2024-09-08 19:54:58 -05:00
victoria-metrics v-m: Remove BURP metrics, alerts 2024-09-05 20:16:01 -05:00
websites websites: Manage dcow cert via Ingress annotation 2024-08-24 11:30:56 -05:00
xactfetch xactfetch: Configure secretsocket 2024-07-11 22:49:07 -05:00
xactmon xactmon: Deploy Invoice Ninja importer for HLC 2024-08-03 13:39:17 -05:00
README.md README: Add storage section 2022-07-31 01:38:46 -05:00

README.md

Dustin's Kubernetes Cluster

This repository contains resources for deploying and managing my on-premises Kubernetes cluster

Cluster Setup

The cluster primarily consists of libvirt/QEMU+KVM virtual machines. The Control Plane nodes are VMs, as are the x86_64 worker nodes. Eventually, I would like to add Raspberry Pi or Pine64 machines as aarch64 nodes.

All machines run Fedora, using only Fedora builds of the Kubernetes components (kubeadm, kubectl, and kubeadm).

See Cluster Setup for details.

Jenkins Agents

One of the main use cases for the Kubernetes cluster is to provide dynamic agents for Jenkins. Using the Kubernetes Plugin, Jenkins will automatically launch worker nodes as Kubernetes pods.

See Jenkins Kubernetes Integration for details.

Persistent Storage

Persistent storage for pods is provided by Longhorn. Longhorn runs within the cluster and provisions storage on worker nodes to make available to pods over iSCSI.

See Persistent Storage Using Longorn for details.