chore: Update manifests after change

This commit is contained in:
2025-12-27 23:47:54 +00:00
parent 1c422f0977
commit 058d1d52dc
212 changed files with 4675 additions and 308 deletions

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: actual-data-backup-secret-local
namespace: actual
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: actual
app.kubernetes.io/part-of: actual
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: actual-data-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/actual/actual-data"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: actual-data-backup-source-local
namespace: actual
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: actual
app.kubernetes.io/part-of: actual
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: actual-data-backup
spec:
sourcePVC: actual-data
trigger:
schedule: 0 8 * * *
restic:
pruneIntervalDays: 7
repository: actual-data-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: audiobookshelf-config-backup-secret-local
namespace: audiobookshelf
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: audiobookshelf
app.kubernetes.io/part-of: audiobookshelf
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: audiobookshelf-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/audiobookshelf/audiobookshelf-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: audiobookshelf-metadata-backup-secret-local
namespace: audiobookshelf
labels:
helm.sh/chart: volsync-target-metadata-0.7.0
app.kubernetes.io/instance: audiobookshelf
app.kubernetes.io/part-of: audiobookshelf
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: audiobookshelf-metadata-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/audiobookshelf/audiobookshelf-metadata"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: audiobookshelf-config-backup-source-local
namespace: audiobookshelf
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: audiobookshelf
app.kubernetes.io/part-of: audiobookshelf
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: audiobookshelf-config-backup
spec:
sourcePVC: audiobookshelf-config
trigger:
schedule: 2 8 * * *
restic:
pruneIntervalDays: 7
repository: audiobookshelf-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: audiobookshelf-metadata-backup-source-local
namespace: audiobookshelf
labels:
helm.sh/chart: volsync-target-metadata-0.7.0
app.kubernetes.io/instance: audiobookshelf
app.kubernetes.io/part-of: audiobookshelf
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: audiobookshelf-metadata-backup
spec:
sourcePVC: audiobookshelf-metadata
trigger:
schedule: 4 8 * * *
restic:
pruneIntervalDays: 7
repository: audiobookshelf-metadata-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: backrest-config-backup-secret-local
namespace: backrest
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: backrest
app.kubernetes.io/part-of: backrest
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: backrest-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/backrest/backrest-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: backrest-data-backup-secret-local
namespace: backrest
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: backrest
app.kubernetes.io/part-of: backrest
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: backrest-data-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/backrest/backrest-data"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: backrest-config-backup-source-local
namespace: backrest
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: backrest
app.kubernetes.io/part-of: backrest
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: backrest-config-backup
spec:
sourcePVC: backrest-config
trigger:
schedule: 8 8 * * *
restic:
pruneIntervalDays: 7
repository: backrest-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: backrest-data-backup-source-local
namespace: backrest
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: backrest
app.kubernetes.io/part-of: backrest
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: backrest-data-backup
spec:
sourcePVC: backrest-data
trigger:
schedule: 6 8 * * *
restic:
pruneIntervalDays: 7
repository: backrest-data-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: bazarr-config-backup-secret-local
namespace: bazarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: bazarr
app.kubernetes.io/part-of: bazarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: bazarr-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/bazarr/bazarr-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: bazarr-config-backup-source-local
namespace: bazarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: bazarr
app.kubernetes.io/part-of: bazarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: bazarr-config-backup
spec:
sourcePVC: bazarr-config
trigger:
schedule: 10 8 * * *
restic:
pruneIntervalDays: 7
repository: bazarr-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: booklore-config-backup-secret-local
namespace: booklore
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: booklore
app.kubernetes.io/part-of: booklore
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: booklore-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/booklore/booklore-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: booklore-config-backup-source-local
namespace: booklore
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: booklore
app.kubernetes.io/part-of: booklore
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: booklore-config-backup
spec:
sourcePVC: booklore-config
trigger:
schedule: 12 8 * * *
restic:
pruneIntervalDays: 7
repository: booklore-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: code-server-config-backup-secret-local
namespace: code-server
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: code-server
app.kubernetes.io/part-of: code-server
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: code-server-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/code-server/code-server-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: code-server-config-backup-source-local
namespace: code-server
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: code-server
app.kubernetes.io/part-of: code-server
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: code-server-config-backup
spec:
sourcePVC: code-server-config
trigger:
schedule: 16 8 * * *
restic:
pruneIntervalDays: 7
repository: code-server-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: ephemera-backup-secret-local
namespace: ephemera
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: ephemera
app.kubernetes.io/part-of: ephemera
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ephemera-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/ephemera/ephemera"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: ephemera-backup-source-local
namespace: ephemera
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: ephemera
app.kubernetes.io/part-of: ephemera
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ephemera-backup
spec:
sourcePVC: ephemera
trigger:
schedule: 16 8 * * *
restic:
pruneIntervalDays: 7
repository: ephemera-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: freshrss-postgresql-18-cluster
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: freshrss-data-backup-secret-local
namespace: freshrss
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss-data-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/freshrss/freshrss-data"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: freshrss-postgresql-18-backup-garage-local-secret
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: freshrss-postgresql-18-recovery-secret
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss-postgresql-18-recovery-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: freshrss-postgresql-18-backup-garage-local
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss-postgresql-18-backup-garage-local
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: "freshrss-postgresql-18-recovery"
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "freshrss-postgresql-18-recovery"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: freshrss-postgresql-18-alert-rules
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
groups:
@@ -21,7 +21,7 @@ spec:
Pod {{ $labels.pod }}
has been waiting for longer than 5 minutes
expr: |
cnpg_backends_waiting_total > 300
cnpg_backends_waiting_total{namespace="freshrss"} > 300
for: 1m
labels:
severity: warning
@@ -34,7 +34,7 @@ spec:
There are over 10 deadlock conflicts in
{{ $labels.pod }}
expr: |
cnpg_pg_stat_database_deadlocks > 10
cnpg_pg_stat_database_deadlocks{namespace="freshrss"} > 10
for: 1m
labels:
severity: warning
@@ -151,7 +151,7 @@ spec:
CloudNativePG Cluster Pod {{ $labels.pod }}
is taking more than 5 minutes (300 seconds) for a query.
expr: |-
cnpg_backends_max_tx_duration_seconds > 300
cnpg_backends_max_tx_duration_seconds{namespace="freshrss"} > 300
for: 1m
labels:
severity: warning
@@ -222,7 +222,7 @@ spec:
Over 300,000,000 transactions from frozen xid
on pod {{ $labels.pod }}
expr: |
cnpg_pg_database_xid_age > 300000000
cnpg_pg_database_xid_age{namespace="freshrss"} > 300000000
for: 1m
labels:
severity: warning
@@ -247,7 +247,7 @@ spec:
Replica {{ $labels.pod }}
is failing to replicate
expr: |
cnpg_pg_replication_in_recovery > cnpg_pg_replication_is_wal_receiver_up
cnpg_pg_replication_in_recovery{namespace="freshrss"} > cnpg_pg_replication_is_wal_receiver_up{namespace="freshrss"}
for: 1m
labels:
severity: warning

View File

@@ -0,0 +1,39 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: freshrss-data-backup-source-local
namespace: freshrss
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss-data-backup
spec:
sourcePVC: freshrss-data
trigger:
schedule: 18 8 * * *
restic:
pruneIntervalDays: 7
repository: freshrss-data-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 568
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 568
runAsUser: 568
supplementalGroups:
- 44
- 100
- 109
- 65539
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: "freshrss-postgresql-18-scheduled-backup-live-backup"
namespace: freshrss
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: freshrss-postgresql-18
app.kubernetes.io/instance: freshrss
app.kubernetes.io/part-of: freshrss
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "freshrss-postgresql-18-scheduled-backup-live-backup"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: gatus-postgresql-18-cluster
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: gatus-backup-secret-local
namespace: gatus
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: gatus-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/gatus/gatus"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: gatus-postgresql-18-backup-garage-local-secret
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: gatus-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: gatus-postgresql-18-recovery-secret
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: gatus-postgresql-18-recovery-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: gatus-postgresql-18-backup-garage-local
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: gatus-postgresql-18-backup-garage-local
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: "gatus-postgresql-18-recovery"
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "gatus-postgresql-18-recovery"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: gatus-postgresql-18-alert-rules
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
groups:
@@ -21,7 +21,7 @@ spec:
Pod {{ $labels.pod }}
has been waiting for longer than 5 minutes
expr: |
cnpg_backends_waiting_total > 300
cnpg_backends_waiting_total{namespace="gatus"} > 300
for: 1m
labels:
severity: warning
@@ -34,7 +34,7 @@ spec:
There are over 10 deadlock conflicts in
{{ $labels.pod }}
expr: |
cnpg_pg_stat_database_deadlocks > 10
cnpg_pg_stat_database_deadlocks{namespace="gatus"} > 10
for: 1m
labels:
severity: warning
@@ -151,7 +151,7 @@ spec:
CloudNativePG Cluster Pod {{ $labels.pod }}
is taking more than 5 minutes (300 seconds) for a query.
expr: |-
cnpg_backends_max_tx_duration_seconds > 300
cnpg_backends_max_tx_duration_seconds{namespace="gatus"} > 300
for: 1m
labels:
severity: warning
@@ -222,7 +222,7 @@ spec:
Over 300,000,000 transactions from frozen xid
on pod {{ $labels.pod }}
expr: |
cnpg_pg_database_xid_age > 300000000
cnpg_pg_database_xid_age{namespace="gatus"} > 300000000
for: 1m
labels:
severity: warning
@@ -247,7 +247,7 @@ spec:
Replica {{ $labels.pod }}
is failing to replicate
expr: |
cnpg_pg_replication_in_recovery > cnpg_pg_replication_is_wal_receiver_up
cnpg_pg_replication_in_recovery{namespace="gatus"} > cnpg_pg_replication_is_wal_receiver_up{namespace="gatus"}
for: 1m
labels:
severity: warning

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: gatus-backup-source-local
namespace: gatus
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: gatus-backup
spec:
sourcePVC: gatus
trigger:
schedule: 22 8 * * *
restic:
pruneIntervalDays: 7
repository: gatus-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: "gatus-postgresql-18-scheduled-backup-live-backup"
namespace: gatus
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: gatus-postgresql-18
app.kubernetes.io/instance: gatus
app.kubernetes.io/part-of: gatus
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "gatus-postgresql-18-scheduled-backup-live-backup"
spec:

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: home-assistant-config-backup-secret-local
namespace: home-assistant
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: home-assistant
app.kubernetes.io/part-of: home-assistant
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: home-assistant-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/home-assistant/home-assistant-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: home-assistant-config-backup-source-local
namespace: home-assistant
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: home-assistant
app.kubernetes.io/part-of: home-assistant
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: home-assistant-config-backup
spec:
sourcePVC: home-assistant-config
trigger:
schedule: 24 8 * * *
restic:
pruneIntervalDays: 7
repository: home-assistant-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: huntarr-config-backup-secret-local
namespace: huntarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: huntarr
app.kubernetes.io/part-of: huntarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: huntarr-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/huntarr/huntarr-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: huntarr-config-backup-source-local
namespace: huntarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: huntarr
app.kubernetes.io/part-of: huntarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: huntarr-config-backup
spec:
sourcePVC: huntarr-config
trigger:
schedule: 26 8 * * *
restic:
pruneIntervalDays: 7
repository: huntarr-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: jellyfin-config-backup-secret-local
namespace: jellyfin
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: jellyfin
app.kubernetes.io/part-of: jellyfin
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellyfin-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/jellyfin/jellyfin-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: jellyfin-config-backup-source-local
namespace: jellyfin
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: jellyfin
app.kubernetes.io/part-of: jellyfin
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellyfin-config-backup
spec:
sourcePVC: jellyfin-config
trigger:
schedule: 30 8 * * *
restic:
pruneIntervalDays: 7
repository: jellyfin-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 10Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: jellystat-postgresql-18-cluster
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: jellystat-data-backup-secret-local
namespace: jellystat
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellystat-data-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/jellystat/jellystat-data"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: jellystat-postgresql-18-backup-garage-local-secret
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellystat-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: jellystat-postgresql-18-recovery-secret
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellystat-postgresql-18-recovery-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: jellystat-postgresql-18-backup-garage-local
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellystat-postgresql-18-backup-garage-local
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: "jellystat-postgresql-18-recovery"
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "jellystat-postgresql-18-recovery"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: jellystat-postgresql-18-alert-rules
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
groups:
@@ -21,7 +21,7 @@ spec:
Pod {{ $labels.pod }}
has been waiting for longer than 5 minutes
expr: |
cnpg_backends_waiting_total > 300
cnpg_backends_waiting_total{namespace="jellystat"} > 300
for: 1m
labels:
severity: warning
@@ -34,7 +34,7 @@ spec:
There are over 10 deadlock conflicts in
{{ $labels.pod }}
expr: |
cnpg_pg_stat_database_deadlocks > 10
cnpg_pg_stat_database_deadlocks{namespace="jellystat"} > 10
for: 1m
labels:
severity: warning
@@ -151,7 +151,7 @@ spec:
CloudNativePG Cluster Pod {{ $labels.pod }}
is taking more than 5 minutes (300 seconds) for a query.
expr: |-
cnpg_backends_max_tx_duration_seconds > 300
cnpg_backends_max_tx_duration_seconds{namespace="jellystat"} > 300
for: 1m
labels:
severity: warning
@@ -222,7 +222,7 @@ spec:
Over 300,000,000 transactions from frozen xid
on pod {{ $labels.pod }}
expr: |
cnpg_pg_database_xid_age > 300000000
cnpg_pg_database_xid_age{namespace="jellystat"} > 300000000
for: 1m
labels:
severity: warning
@@ -247,7 +247,7 @@ spec:
Replica {{ $labels.pod }}
is failing to replicate
expr: |
cnpg_pg_replication_in_recovery > cnpg_pg_replication_is_wal_receiver_up
cnpg_pg_replication_in_recovery{namespace="jellystat"} > cnpg_pg_replication_is_wal_receiver_up{namespace="jellystat"}
for: 1m
labels:
severity: warning

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: jellystat-data-backup-source-local
namespace: jellystat
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: jellystat-data-backup
spec:
sourcePVC: jellystat-data
trigger:
schedule: 32 8 * * *
restic:
pruneIntervalDays: 7
repository: jellystat-data-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: "jellystat-postgresql-18-scheduled-backup-live-backup"
namespace: jellystat
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: jellystat-postgresql-18
app.kubernetes.io/instance: jellystat
app.kubernetes.io/part-of: jellystat
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "jellystat-postgresql-18-scheduled-backup-live-backup"
spec:

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: karakeep-backup-secret-local
namespace: karakeep
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: karakeep
app.kubernetes.io/part-of: karakeep
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: karakeep-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/karakeep/karakeep"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: karakeep-backup-source-local
namespace: karakeep
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: karakeep
app.kubernetes.io/part-of: karakeep
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: karakeep-backup
spec:
sourcePVC: karakeep
trigger:
schedule: 34 8 * * *
restic:
pruneIntervalDays: 7
repository: karakeep-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: libation-backup-secret-local
namespace: libation
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: libation
app.kubernetes.io/part-of: libation
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: libation-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/libation/libation"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: libation-backup-source-local
namespace: libation
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: libation
app.kubernetes.io/part-of: libation
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: libation-backup
spec:
sourcePVC: libation
trigger:
schedule: 36 8 * * *
restic:
pruneIntervalDays: 7
repository: libation-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: lidarr-postgresql-18-cluster
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: lidarr-config-backup-secret-local
namespace: lidarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidarr-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/lidarr/lidarr-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: lidarr-postgresql-18-backup-garage-local-secret
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidarr-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: lidarr-postgresql-18-recovery-secret
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidarr-postgresql-18-recovery-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: lidarr-postgresql-18-backup-garage-local
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidarr-postgresql-18-backup-garage-local
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: "lidarr-postgresql-18-recovery"
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "lidarr-postgresql-18-recovery"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: lidarr-postgresql-18-alert-rules
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
groups:
@@ -21,7 +21,7 @@ spec:
Pod {{ $labels.pod }}
has been waiting for longer than 5 minutes
expr: |
cnpg_backends_waiting_total > 300
cnpg_backends_waiting_total{namespace="lidarr"} > 300
for: 1m
labels:
severity: warning
@@ -34,7 +34,7 @@ spec:
There are over 10 deadlock conflicts in
{{ $labels.pod }}
expr: |
cnpg_pg_stat_database_deadlocks > 10
cnpg_pg_stat_database_deadlocks{namespace="lidarr"} > 10
for: 1m
labels:
severity: warning
@@ -151,7 +151,7 @@ spec:
CloudNativePG Cluster Pod {{ $labels.pod }}
is taking more than 5 minutes (300 seconds) for a query.
expr: |-
cnpg_backends_max_tx_duration_seconds > 300
cnpg_backends_max_tx_duration_seconds{namespace="lidarr"} > 300
for: 1m
labels:
severity: warning
@@ -222,7 +222,7 @@ spec:
Over 300,000,000 transactions from frozen xid
on pod {{ $labels.pod }}
expr: |
cnpg_pg_database_xid_age > 300000000
cnpg_pg_database_xid_age{namespace="lidarr"} > 300000000
for: 1m
labels:
severity: warning
@@ -247,7 +247,7 @@ spec:
Replica {{ $labels.pod }}
is failing to replicate
expr: |
cnpg_pg_replication_in_recovery > cnpg_pg_replication_is_wal_receiver_up
cnpg_pg_replication_in_recovery{namespace="lidarr"} > cnpg_pg_replication_is_wal_receiver_up{namespace="lidarr"}
for: 1m
labels:
severity: warning

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: lidarr-config-backup-source-local
namespace: lidarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidarr-config-backup
spec:
sourcePVC: lidarr-config
trigger:
schedule: 38 8 * * *
restic:
pruneIntervalDays: 7
repository: lidarr-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: "lidarr-postgresql-18-scheduled-backup-live-backup"
namespace: lidarr
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: lidarr-postgresql-18
app.kubernetes.io/instance: lidarr
app.kubernetes.io/part-of: lidarr
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "lidarr-postgresql-18-scheduled-backup-live-backup"
spec:

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: lidatube-config-backup-secret-local
namespace: lidatube
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: lidatube
app.kubernetes.io/part-of: lidatube
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidatube-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/lidatube/lidatube-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: lidatube-config-backup-source-local
namespace: lidatube
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: lidatube
app.kubernetes.io/part-of: lidatube
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: lidatube-config-backup
spec:
sourcePVC: lidatube-config
trigger:
schedule: 40 8 * * *
restic:
pruneIntervalDays: 7
repository: lidatube-config-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: listenarr-backup-secret-local
namespace: listenarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: listenarr
app.kubernetes.io/part-of: listenarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: listenarr-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/listenarr/listenarr"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: listenarr-backup-source-local
namespace: listenarr
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: listenarr
app.kubernetes.io/part-of: listenarr
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: listenarr-backup
spec:
sourcePVC: listenarr
trigger:
schedule: 42 8 * * *
restic:
pruneIntervalDays: 7
repository: listenarr-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-cluster
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-database-mautrix-discord
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
name: mautrix-discord

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-database-mautrix-whatsapp
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
name: mautrix-whatsapp

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: matrix-hookshot-backup-secret-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-hookshot-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-hookshot-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/matrix-synapse/matrix-hookshot"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: matrix-synapse-backup-secret-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-synapse-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-synapse-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/matrix-synapse/matrix-synapse"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-backup-garage-local-secret
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-synapse-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-recovery-secret
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-synapse-postgresql-18-recovery-secret
spec:

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: mautrix-discord-backup-secret-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-discord-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: mautrix-discord-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/matrix-synapse/mautrix-discord"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: mautrix-whatsapp-backup-secret-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-whatsapp-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: mautrix-whatsapp-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/matrix-synapse/mautrix-whatsapp"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-backup-garage-local
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-synapse-postgresql-18-backup-garage-local
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: "matrix-synapse-postgresql-18-recovery"
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "matrix-synapse-postgresql-18-recovery"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: matrix-synapse-postgresql-18-alert-rules
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
groups:
@@ -21,7 +21,7 @@ spec:
Pod {{ $labels.pod }}
has been waiting for longer than 5 minutes
expr: |
cnpg_backends_waiting_total > 300
cnpg_backends_waiting_total{namespace="matrix-synapse"} > 300
for: 1m
labels:
severity: warning
@@ -34,7 +34,7 @@ spec:
There are over 10 deadlock conflicts in
{{ $labels.pod }}
expr: |
cnpg_pg_stat_database_deadlocks > 10
cnpg_pg_stat_database_deadlocks{namespace="matrix-synapse"} > 10
for: 1m
labels:
severity: warning
@@ -151,7 +151,7 @@ spec:
CloudNativePG Cluster Pod {{ $labels.pod }}
is taking more than 5 minutes (300 seconds) for a query.
expr: |-
cnpg_backends_max_tx_duration_seconds > 300
cnpg_backends_max_tx_duration_seconds{namespace="matrix-synapse"} > 300
for: 1m
labels:
severity: warning
@@ -222,7 +222,7 @@ spec:
Over 300,000,000 transactions from frozen xid
on pod {{ $labels.pod }}
expr: |
cnpg_pg_database_xid_age > 300000000
cnpg_pg_database_xid_age{namespace="matrix-synapse"} > 300000000
for: 1m
labels:
severity: warning
@@ -247,7 +247,7 @@ spec:
Replica {{ $labels.pod }}
is failing to replicate
expr: |
cnpg_pg_replication_in_recovery > cnpg_pg_replication_is_wal_receiver_up
cnpg_pg_replication_in_recovery{namespace="matrix-synapse"} > cnpg_pg_replication_is_wal_receiver_up{namespace="matrix-synapse"}
for: 1m
labels:
severity: warning

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: matrix-hookshot-backup-source-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-hookshot-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-hookshot-backup
spec:
sourcePVC: matrix-hookshot
trigger:
schedule: 46 8 * * *
restic:
pruneIntervalDays: 7
repository: matrix-hookshot-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,29 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: matrix-synapse-backup-source-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-synapse-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: matrix-synapse-backup
spec:
sourcePVC: matrix-synapse
trigger:
schedule: 44 8 * * *
restic:
pruneIntervalDays: 7
repository: matrix-synapse-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,32 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: mautrix-discord-backup-source-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-discord-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: mautrix-discord-backup
spec:
sourcePVC: mautrix-discord
trigger:
schedule: 48 8 * * *
restic:
pruneIntervalDays: 7
repository: mautrix-discord-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
runAsGroup: 1337
runAsUser: 1337
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -0,0 +1,32 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: mautrix-whatsapp-backup-source-local
namespace: matrix-synapse
labels:
helm.sh/chart: volsync-target-whatsapp-0.7.0
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: mautrix-whatsapp-backup
spec:
sourcePVC: mautrix-whatsapp
trigger:
schedule: 50 8 * * *
restic:
pruneIntervalDays: 7
repository: mautrix-whatsapp-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
runAsGroup: 1337
runAsUser: 1337
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: "matrix-synapse-postgresql-18-scheduled-backup-live-backup"
namespace: matrix-synapse
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: matrix-synapse-postgresql-18
app.kubernetes.io/instance: matrix-synapse
app.kubernetes.io/part-of: matrix-synapse
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "matrix-synapse-postgresql-18-scheduled-backup-live-backup"
spec:

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: navidrome-data-backup-secret-local
namespace: navidrome
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: navidrome
app.kubernetes.io/part-of: navidrome
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: navidrome-data-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/navidrome/navidrome-data"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -0,0 +1,34 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: navidrome-data-backup-source-local
namespace: navidrome
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: navidrome
app.kubernetes.io/part-of: navidrome
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: navidrome-data-backup
spec:
sourcePVC: navidrome-data
trigger:
schedule: 52 8 * * *
restic:
pruneIntervalDays: 7
repository: navidrome-data-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsUser: 1000
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: ollama-web-postgresql-18-cluster
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: ollama-web-data-backup-secret-local
namespace: ollama
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama-web-data-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/ollama/ollama-web-data"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: ollama-web-postgresql-18-backup-garage-local-secret
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama-web-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: ollama-web-postgresql-18-recovery-secret
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama-web-postgresql-18-recovery-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: ollama-web-postgresql-18-backup-garage-local
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama-web-postgresql-18-backup-garage-local
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: "ollama-web-postgresql-18-recovery"
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "ollama-web-postgresql-18-recovery"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: ollama-web-postgresql-18-alert-rules
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
groups:
@@ -21,7 +21,7 @@ spec:
Pod {{ $labels.pod }}
has been waiting for longer than 5 minutes
expr: |
cnpg_backends_waiting_total > 300
cnpg_backends_waiting_total{namespace="ollama"} > 300
for: 1m
labels:
severity: warning
@@ -34,7 +34,7 @@ spec:
There are over 10 deadlock conflicts in
{{ $labels.pod }}
expr: |
cnpg_pg_stat_database_deadlocks > 10
cnpg_pg_stat_database_deadlocks{namespace="ollama"} > 10
for: 1m
labels:
severity: warning
@@ -151,7 +151,7 @@ spec:
CloudNativePG Cluster Pod {{ $labels.pod }}
is taking more than 5 minutes (300 seconds) for a query.
expr: |-
cnpg_backends_max_tx_duration_seconds > 300
cnpg_backends_max_tx_duration_seconds{namespace="ollama"} > 300
for: 1m
labels:
severity: warning
@@ -222,7 +222,7 @@ spec:
Over 300,000,000 transactions from frozen xid
on pod {{ $labels.pod }}
expr: |
cnpg_pg_database_xid_age > 300000000
cnpg_pg_database_xid_age{namespace="ollama"} > 300000000
for: 1m
labels:
severity: warning
@@ -247,7 +247,7 @@ spec:
Replica {{ $labels.pod }}
is failing to replicate
expr: |
cnpg_pg_replication_in_recovery > cnpg_pg_replication_is_wal_receiver_up
cnpg_pg_replication_in_recovery{namespace="ollama"} > cnpg_pg_replication_is_wal_receiver_up{namespace="ollama"}
for: 1m
labels:
severity: warning

View File

@@ -0,0 +1,32 @@
apiVersion: volsync.backube/v1alpha1
kind: ReplicationSource
metadata:
name: ollama-web-data-backup-source-local
namespace: ollama
labels:
helm.sh/chart: volsync-target-data-0.7.0
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama-web-data-backup
spec:
sourcePVC: ollama-web-data
trigger:
schedule: 54 8 * * *
restic:
pruneIntervalDays: 7
repository: ollama-web-data-backup-secret-local
retain:
daily: 7
hourly: 0
monthly: 3
weekly: 4
yearly: 1
moverSecurityContext:
runAsGroup: 1337
runAsUser: 1337
copyMethod: Snapshot
storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot
cacheCapacity: 1Gi

View File

@@ -4,11 +4,11 @@ metadata:
name: "ollama-web-postgresql-18-scheduled-backup-live-backup"
namespace: ollama
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: ollama-web-postgresql-18
app.kubernetes.io/instance: ollama
app.kubernetes.io/part-of: ollama
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: "ollama-web-postgresql-18-scheduled-backup-live-backup"
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: postiz-postgresql-18-cluster
namespace: postiz
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: postiz-postgresql-18
app.kubernetes.io/instance: postiz
app.kubernetes.io/part-of: postiz
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
spec:
instances: 3

View File

@@ -0,0 +1,58 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: postiz-config-backup-secret-local
namespace: postiz
labels:
helm.sh/chart: volsync-target-config-0.7.0
app.kubernetes.io/instance: postiz
app.kubernetes.io/part-of: postiz
app.kubernetes.io/version: "0.7.0"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: postiz-config-backup-secret-local
spec:
secretStoreRef:
kind: ClusterSecretStore
name: vault
target:
template:
mergePolicy: Merge
engineVersion: v2
data:
RESTIC_REPOSITORY: "{{ .BUCKET_ENDPOINT }}/postiz/postiz-config"
data:
- secretKey: BUCKET_ENDPOINT
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: BUCKET_ENDPOINT
- secretKey: RESTIC_PASSWORD
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /volsync/restic/garage-local
metadataPolicy: None
property: RESTIC_PASSWORD
- secretKey: AWS_DEFAULT_REGION
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_REGION
- secretKey: AWS_ACCESS_KEY_ID
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_KEY_ID
- secretKey: AWS_SECRET_ACCESS_KEY
remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /garage/home-infra/volsync-backups
metadataPolicy: None
property: ACCESS_SECRET_KEY

View File

@@ -4,11 +4,11 @@ metadata:
name: postiz-postgresql-18-backup-garage-local-secret
namespace: postiz
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: postiz-postgresql-18
app.kubernetes.io/instance: postiz
app.kubernetes.io/part-of: postiz
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: postiz-postgresql-18-backup-garage-local-secret
spec:

View File

@@ -4,11 +4,11 @@ metadata:
name: postiz-postgresql-18-recovery-secret
namespace: postiz
labels:
helm.sh/chart: postgres-18-cluster-7.4.4
helm.sh/chart: postgres-18-cluster-7.4.5
app.kubernetes.io/name: postiz-postgresql-18
app.kubernetes.io/instance: postiz
app.kubernetes.io/part-of: postiz
app.kubernetes.io/version: "7.4.4"
app.kubernetes.io/version: "7.4.5"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: postiz-postgresql-18-recovery-secret
spec:

Some files were not shown because too many files have changed in this diff Show More