chore: Update manifests after change

This commit is contained in:
2025-12-03 02:20:07 +00:00
parent fea922a75b
commit 7ab7d8f9b9
15 changed files with 74953 additions and 283 deletions

View File

@@ -51,8 +51,8 @@ metadata:
name: cilium-ca
namespace: cilium
data:
ca.crt: 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
ca.key: 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
ca.crt: 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
ca.key: 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
---
# Source: cilium/charts/cilium/templates/hubble/tls-helm/relay-client-secret.yaml
apiVersion: v1
@@ -62,9 +62,9 @@ metadata:
namespace: cilium
type: kubernetes.io/tls
data:
ca.crt: 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
tls.crt: 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
tls.key: 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
ca.crt: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURFekNDQWZ1Z0F3SUJBZ0lRYWxsK3l3NjFVWXdPekxsYTBtTGFqREFOQmdrcWhraUc5dzBCQVFzRkFEQVUKTVJJd0VBWURWUVFERXdsRGFXeHBkVzBnUTBFd0hoY05NalV4TWpBek1ESXhNVE01V2hjTk1qZ3hNakF5TURJeApNVE01V2pBVU1SSXdFQVlEVlFRREV3bERhV3hwZFcwZ1EwRXdnZ0VpTUEwR0NTcUdTSWIzRFFFQkFRVUFBNElCCkR3QXdnZ0VLQW9JQkFRREdIVzZkNUR3ZHRKbThYTGdXVldoV3hRbFZ3c2l5RGY0d0o0ZUx6blRTWEhTYStGSHYKdkg1c1RlZFlGVjlBMnFTR2JWSHE2NlplZHBFUm83N21aN0hyb1BtcUZJeEJCeThXOUZQRWo3aUZqVlo1NUV6Vgo4d3NsbmVPRkREMEcrOXpWbjZxR3dDZEtud1k3SDdheHhqVlZRUXdsMjNTcjAzSUxQeGM0b0g2YmJmOWhUY0dZCmVpcTRhdTRDdGZhcDZQajNpZEsxbmFrZHo0MUFSWHQ0dndkQlZqY2c2UnJ1TGVITEdBQmtmY0kyUE9rMDFwYnkKbHg5cU5weWZuK3JRTHoyM3JBWmhBNlNWVEFpOVNnKzkxSlJkYnNkNE02dUtLNmV1YmZvK3VuWk5JR2JJYXFCYgpIWnJlazIyeWg5MVIxZnQ5ZzlkS2dvYjl2bm9ma3lJd0x5V1RBZ01CQUFHallUQmZNQTRHQTFVZER3RUIvd1FFCkF3SUNwREFkQmdOVkhTVUVGakFVQmdnckJnRUZCUWNEQVFZSUt3WUJCUVVIQXdJd0R3WURWUjBUQVFIL0JBVXcKQXdFQi96QWRCZ05WSFE0RUZnUVVnTmtPQ3JiMm0rY0tacTJ1Znh1MkRFOTdQYUF3RFFZSktvWklodmNOQVFFTApCUUFEZ2dFQkFLcmlZazdCeVBnaitFdjJpMlM0ejE1ZWIvQnM4YW1hb2RWTFlOWjZJd2lMQ3BwMk9zamZ5bUJHCjFpT3B4NkVyUjVZUXc3eVUxQWY2ZnQ4Nm9nbTczaFRNeldya3Y2ZlFIeDlnRy9iQ1h6L09SenY5T3BERFRPa00KL2ZZOTlnZi9RejZaVWtTcDFIcFhYRmF0T21HN1VtS3FmWVhvb296SDVKb2lpbzdiYWNQM1ljcEg1Z09TTDRrTgpPRjk5eWgwZjJTZnRYTktPbll0bjVlT0thOE5rMzR1OEdYMzl6dGFCVFdsOXViemtnczBjSDVmZ05lWTBUbnV6CjFUSFlwSGNHaU5Ybk4relhVQmhkZ0tGS2tyWitKbU02Qk40WXBtVXFMRTQ1eDZEWUVIV3JuNXNlNjl6Vk12eEEKOW9MWkd3YTB3a2ZteWs0RERySGh0MUkrcWpUcWVBOD0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo=
tls.crt: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURTRENDQWpDZ0F3SUJBZ0lRZUJnRjVVYXJja3lkMFZadjNMblh4ekFOQmdrcWhraUc5dzBCQVFzRkFEQVUKTVJJd0VBWURWUVFERXdsRGFXeHBkVzBnUTBFd0hoY05NalV4TWpBek1ESXhNVE01V2hjTk1qWXhNakF6TURJeApNVE01V2pBak1TRXdId1lEVlFRRERCZ3FMbWgxWW1Kc1pTMXlaV3hoZVM1amFXeHBkVzB1YVc4d2dnRWlNQTBHCkNTcUdTSWIzRFFFQkFRVUFBNElCRHdBd2dnRUtBb0lCQVFDcXZ3bXMveUxTell5VkEyRk1LWGZtUWFBUlVnZFQKMWN3OE5rZEhBY0dDUmtmZmUxYVpvSmlScG1HNEUxdnBQaWxGcDQ1MklOR0hrNVQ3VHlXZmtqZTVHUWtTdHpJNwpBUE50dEFkWkc4S3lGcU90M0NrYStRYmNmOVZKd2Qxb0pNbkFQVzgwRjEreHNxdjFPcVNteTBqZVB4NHA3anFICjEweUswL3BGMEdrcnh1QmEwL0Z3SCtxMWZ4Z1laQlFFOFdPZHRZVHQwdzQzSUZuMHNmRmt1bHFGQkR2V29YcmIKRytRN0tGekF3VGtyRW1SR3l1TEIzRGVZVldEdjNNQnhUNVNnTFRxN0w4NFRtaSt4a25jUVAwL2NrUHgzYmJwRwp6REpOM0hBN3BnamRvbTV2RWk4NkhnSDQvaHdTVjNKTEtLaHVGSDFVaDBlT3hLamVXNlJJZ0R3ZkFnTUJBQUdqCmdZWXdnWU13RGdZRFZSMFBBUUgvQkFRREFnV2dNQjBHQTFVZEpRUVdNQlFHQ0NzR0FRVUZCd01CQmdnckJnRUYKQlFjREFqQU1CZ05WSFJNQkFmOEVBakFBTUI4R0ExVWRJd1FZTUJhQUZJRFpEZ3EyOXB2bkNtYXRybjhidGd4UAplejJnTUNNR0ExVWRFUVFjTUJxQ0dDb3VhSFZpWW14bExYSmxiR0Y1TG1OcGJHbDFiUzVwYnpBTkJna3Foa2lHCjl3MEJBUXNGQUFPQ0FRRUFKdC9VblExTmlHTmZuQ2VsZEVPeGpES250S1hZN00wQkh3b2tZb0E4Z25UY3ltODQKSC9XRmpyM29ldVgzV01aRDl4d0JlS05mUUZhQ2pWcEsrc2w0YnB6a0pldlYrVENkS01WelNrM3NXSndmMjJYcQp6U3FhUCtYcVdSWUN2aW4vRTVnUk9hSFVhWmxER1RXTEYyVnFMc1RnV21DWjFUR21BYzgwanYxVDJhY0FXVk02Cno0MWhqWmJaZWU4Ym8xUTJGNEFJbEladWJWTnVxTGtDRlRzMGh4NWtJekJZczhOeUs2bWxLeEJlV0xkZkNERC8KczZyTklDalkrTkMwT2JPTk5wMEtjZjNuVk9oSnFaUEw2MUpaa3ZZbUIxWnU0aml4YWpycHp5Q3hsNWtJa09KRwoxY1ZWa0hmUGZzVkw3NEJzejNwblFObXJITXFDQi83ZStxSncrdz09Ci0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0K
tls.key: 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
---
# Source: cilium/charts/cilium/templates/hubble/tls-helm/server-secret.yaml
apiVersion: v1
@@ -74,9 +74,9 @@ metadata:
namespace: cilium
type: kubernetes.io/tls
data:
ca.crt: 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
tls.crt: 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
tls.key: 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
ca.crt: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURFekNDQWZ1Z0F3SUJBZ0lRYWxsK3l3NjFVWXdPekxsYTBtTGFqREFOQmdrcWhraUc5dzBCQVFzRkFEQVUKTVJJd0VBWURWUVFERXdsRGFXeHBkVzBnUTBFd0hoY05NalV4TWpBek1ESXhNVE01V2hjTk1qZ3hNakF5TURJeApNVE01V2pBVU1SSXdFQVlEVlFRREV3bERhV3hwZFcwZ1EwRXdnZ0VpTUEwR0NTcUdTSWIzRFFFQkFRVUFBNElCCkR3QXdnZ0VLQW9JQkFRREdIVzZkNUR3ZHRKbThYTGdXVldoV3hRbFZ3c2l5RGY0d0o0ZUx6blRTWEhTYStGSHYKdkg1c1RlZFlGVjlBMnFTR2JWSHE2NlplZHBFUm83N21aN0hyb1BtcUZJeEJCeThXOUZQRWo3aUZqVlo1NUV6Vgo4d3NsbmVPRkREMEcrOXpWbjZxR3dDZEtud1k3SDdheHhqVlZRUXdsMjNTcjAzSUxQeGM0b0g2YmJmOWhUY0dZCmVpcTRhdTRDdGZhcDZQajNpZEsxbmFrZHo0MUFSWHQ0dndkQlZqY2c2UnJ1TGVITEdBQmtmY0kyUE9rMDFwYnkKbHg5cU5weWZuK3JRTHoyM3JBWmhBNlNWVEFpOVNnKzkxSlJkYnNkNE02dUtLNmV1YmZvK3VuWk5JR2JJYXFCYgpIWnJlazIyeWg5MVIxZnQ5ZzlkS2dvYjl2bm9ma3lJd0x5V1RBZ01CQUFHallUQmZNQTRHQTFVZER3RUIvd1FFCkF3SUNwREFkQmdOVkhTVUVGakFVQmdnckJnRUZCUWNEQVFZSUt3WUJCUVVIQXdJd0R3WURWUjBUQVFIL0JBVXcKQXdFQi96QWRCZ05WSFE0RUZnUVVnTmtPQ3JiMm0rY0tacTJ1Znh1MkRFOTdQYUF3RFFZSktvWklodmNOQVFFTApCUUFEZ2dFQkFLcmlZazdCeVBnaitFdjJpMlM0ejE1ZWIvQnM4YW1hb2RWTFlOWjZJd2lMQ3BwMk9zamZ5bUJHCjFpT3B4NkVyUjVZUXc3eVUxQWY2ZnQ4Nm9nbTczaFRNeldya3Y2ZlFIeDlnRy9iQ1h6L09SenY5T3BERFRPa00KL2ZZOTlnZi9RejZaVWtTcDFIcFhYRmF0T21HN1VtS3FmWVhvb296SDVKb2lpbzdiYWNQM1ljcEg1Z09TTDRrTgpPRjk5eWgwZjJTZnRYTktPbll0bjVlT0thOE5rMzR1OEdYMzl6dGFCVFdsOXViemtnczBjSDVmZ05lWTBUbnV6CjFUSFlwSGNHaU5Ybk4relhVQmhkZ0tGS2tyWitKbU02Qk40WXBtVXFMRTQ1eDZEWUVIV3JuNXNlNjl6Vk12eEEKOW9MWkd3YTB3a2ZteWs0RERySGh0MUkrcWpUcWVBOD0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo=
tls.crt: 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
tls.key: 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
---
# Source: cilium/charts/cilium/templates/cilium-configmap.yaml
apiVersion: v1

View File

@@ -0,0 +1,303 @@
---
# Source: coredns/charts/coredns/templates/serviceaccount.yaml
apiVersion: v1
kind: ServiceAccount
metadata:
name: coredns
namespace: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
---
# Source: coredns/charts/coredns/templates/configmap.yaml
apiVersion: v1
kind: ConfigMap
metadata:
name: coredns
namespace: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
data:
Corefile: |-
dns://.:53 {
errors
health {
lameduck 5s
}
ready
kubernetes cluster.local in-addr.arpa ip6.arpa {
pods insecure
fallthrough in-addr.arpa ip6.arpa
ttl 30
}
prometheus :9153
forward . /etc/resolv.conf
cache 30
loop
reload
loadbalance
}
dns://alexlebens.net:53 {
errors
cache 30
forward . 10.111.232.172
}
dns://ts.net:53 {
errors
cache 30
forward . 10.97.20.219
}
---
# Source: coredns/charts/coredns/templates/clusterrole.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
name: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
rules:
- apiGroups:
- ""
resources:
- endpoints
- services
- pods
- namespaces
verbs:
- list
- watch
- apiGroups:
- discovery.k8s.io
resources:
- endpointslices
verbs:
- list
- watch
---
# Source: coredns/charts/coredns/templates/clusterrolebinding.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: coredns
subjects:
- kind: ServiceAccount
name: coredns
namespace: coredns
---
# Source: coredns/charts/coredns/templates/service-metrics.yaml
apiVersion: v1
kind: Service
metadata:
name: coredns-metrics
namespace: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
app.kubernetes.io/component: metrics
annotations:
prometheus.io/port: "9153"
prometheus.io/scrape: "true"
spec:
selector:
app.kubernetes.io/instance: "coredns"
k8s-app: coredns
app.kubernetes.io/name: coredns
ports:
- name: metrics
port: 9153
targetPort: 9153
---
# Source: coredns/charts/coredns/templates/service.yaml
apiVersion: v1
kind: Service
metadata:
name: kube-dns
namespace: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
spec:
selector:
app.kubernetes.io/instance: "coredns"
k8s-app: coredns
app.kubernetes.io/name: coredns
clusterIP: 10.96.0.10
clusterIPs:
- 10.96.0.10
ports:
- {"name":"udp-53","port":53,"protocol":"UDP","targetPort":53}
- {"name":"tcp-53","port":53,"protocol":"TCP","targetPort":53}
type: ClusterIP
---
# Source: coredns/charts/coredns/templates/deployment.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
name: coredns
namespace: coredns
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
app.kubernetes.io/version: "v1.13.1"
spec:
replicas: 3
strategy:
type: RollingUpdate
rollingUpdate:
maxUnavailable: 1
maxSurge: 25%
selector:
matchLabels:
app.kubernetes.io/instance: "coredns"
k8s-app: coredns
app.kubernetes.io/name: coredns
template:
metadata:
labels:
k8s-app: coredns
app.kubernetes.io/name: coredns
app.kubernetes.io/instance: "coredns"
annotations:
checksum/config: c88338e27f92b25d827831c17939bcc66b53e4896251fe02edb9a06a05de4fc8
scheduler.alpha.kubernetes.io/tolerations: '[{"key":"CriticalAddonsOnly", "operator":"Exists"}]'
spec:
terminationGracePeriodSeconds: 30
serviceAccountName: coredns
priorityClassName: "system-cluster-critical"
dnsPolicy: Default
tolerations:
- effect: NoSchedule
key: node-role.kubernetes.io/control-plane
operator: Exists
- effect: NoSchedule
key: node.cloudprovider.kubernetes.io/uninitialized
operator: Exists
nodeSelector:
kubernetes.io/os: linux
containers:
- name: "coredns"
image: "registry.k8s.io/coredns/coredns:v1.13.1"
imagePullPolicy: IfNotPresent
args: [ "-conf", "/etc/coredns/Corefile" ]
volumeMounts:
- name: config-volume
mountPath: /etc/coredns
resources:
limits:
cpu: 100m
memory: 128Mi
requests:
cpu: 50m
memory: 128Mi
ports:
- {"containerPort":53,"name":"udp-53","protocol":"UDP"}
- {"containerPort":53,"name":"tcp-53","protocol":"TCP"}
- {"containerPort":9153,"name":"tcp-9153","protocol":"TCP"}
livenessProbe:
httpGet:
path: /health
port: 8080
scheme: HTTP
initialDelaySeconds: 60
periodSeconds: 10
timeoutSeconds: 5
successThreshold: 1
failureThreshold: 5
readinessProbe:
httpGet:
path: /ready
port: 8181
scheme: HTTP
initialDelaySeconds: 30
periodSeconds: 5
timeoutSeconds: 5
successThreshold: 1
failureThreshold: 1
securityContext:
allowPrivilegeEscalation: false
capabilities:
add:
- NET_BIND_SERVICE
drop:
- ALL
readOnlyRootFilesystem: true
volumes:
- name: config-volume
configMap:
name: coredns
items:
- key: Corefile
path: Corefile
---
# Source: coredns/charts/coredns/templates/servicemonitor.yaml
apiVersion: monitoring.coreos.com/v1
kind: ServiceMonitor
metadata:
name: coredns
namespace: kube-system
labels:
app.kubernetes.io/managed-by: "Helm"
app.kubernetes.io/instance: "coredns"
helm.sh/chart: "coredns-1.45.0"
k8s-app: coredns
kubernetes.io/cluster-service: "true"
kubernetes.io/name: "CoreDNS"
app.kubernetes.io/name: coredns
spec:
namespaceSelector:
matchNames:
- coredns
selector:
matchLabels:
app.kubernetes.io/instance: "coredns"
k8s-app: coredns
app.kubernetes.io/name: coredns
app.kubernetes.io/component: metrics
endpoints:
- port: metrics

View File

@@ -46,27 +46,6 @@ data:
---
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: garage-data
labels:
app.kubernetes.io/instance: garage
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage
helm.sh/chart: garage-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: garage
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "800Gi"
storageClassName: "synology-iscsi-delete"
---
# Source: garage/charts/garage/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: garage-db
labels:
@@ -107,6 +86,51 @@ spec:
storageClassName: "synology-iscsi-delete"
---
# Source: garage/charts/garage/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: garage-data
labels:
app.kubernetes.io/instance: garage
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage
helm.sh/chart: garage-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: garage
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "800Gi"
storageClassName: "synology-iscsi-delete"
---
# Source: garage/charts/garage/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: garage-webui
labels:
app.kubernetes.io/instance: garage
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage
app.kubernetes.io/service: garage-webui
helm.sh/chart: garage-4.4.0
namespace: garage
spec:
type: ClusterIP
ports:
- port: 3909
targetPort: 3909
protocol: TCP
name: webui
selector:
app.kubernetes.io/controller: webui
app.kubernetes.io/instance: garage
app.kubernetes.io/name: garage
---
# Source: garage/charts/garage/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
@@ -143,30 +167,6 @@ spec:
app.kubernetes.io/name: garage
---
# Source: garage/charts/garage/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: garage-webui
labels:
app.kubernetes.io/instance: garage
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage
app.kubernetes.io/service: garage-webui
helm.sh/chart: garage-4.4.0
namespace: garage
spec:
type: ClusterIP
ports:
- port: 3909
targetPort: 3909
protocol: TCP
name: webui
selector:
app.kubernetes.io/controller: webui
app.kubernetes.io/instance: garage
app.kubernetes.io/name: garage
---
# Source: garage/charts/garage/templates/common.yaml
apiVersion: apps/v1
kind: Deployment
metadata:

View File

@@ -74,9 +74,9 @@ metadata:
app.kubernetes.io/version: "2.14.0"
type: Opaque
data:
tls.crt: "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"
tls.key: "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"
ca.crt: "LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURGRENDQWZ5Z0F3SUJBZ0lSQUs0Umt5a2V0VUJzaFQzYU54WHBwWDB3RFFZSktvWklodmNOQVFFTEJRQXcKRkRFU01CQUdBMVVFQXhNSmFHRnlZbTl5TFdOaE1CNFhEVEkxTVRJd016QXdNelV4TUZvWERUSTJNVEl3TXpBdwpNelV4TUZvd0ZERVNNQkFHQTFVRUF4TUphR0Z5WW05eUxXTmhNSUlCSWpBTkJna3Foa2lHOXcwQkFRRUZBQU9DCkFROEFNSUlCQ2dLQ0FRRUEwQ0J0N21GejBQNCsrS2dqSUh4YktCMkRvTDV5SHFYbU5pZVF4SVRnY09zVldrZ0gKTGxMbEF6bVVONEwzelp6dnZrQ2ZibmJGcDRYVXJkNHVaOE90ZXowWU53V1d6Z05rdGtJcmpoa3dLVnJxWU9CTApySGlEWjhzbzhvaGxrWHN6Z01GbmxLd0dHSlBic0FQWjJjWFJON3AwQVBkZTF3UlBjbmF2cGVkVEZsQnZKUDFoCmllQmRLU04yV3UwOUZhL3FZWGhBNHpXM0lMZVVKZFU4MThGMjlLWjNQdnBudW81QUNTWEcrZFhyQ1g5czZVT3QKUDFnVTlOYWRpU0xrd0NoeHBmOUZFSklRVFQ1U0FIK0ZuTE5sa29LZ0ZuN1dlWitVVnlNRG1WMmd6Y05pNXdkUQpTaTRZYVpjMmZ3VEJRR3RnUEZtbDZwQmUxOEtJWXJWTHNIUU9Xd0lEQVFBQm8yRXdYekFPQmdOVkhROEJBZjhFCkJBTUNBcVF3SFFZRFZSMGxCQll3RkFZSUt3WUJCUVVIQXdFR0NDc0dBUVVGQndNQ01BOEdBMVVkRXdFQi93UUYKTUFNQkFmOHdIUVlEVlIwT0JCWUVGSitIVDB4V0FZNXNTNGY5TmpRc3ZuOE9rcFZwTUEwR0NTcUdTSWIzRFFFQgpDd1VBQTRJQkFRQUxXVHB4T2ErNlZ6azNRN3pBMjNQVnloc1FQM09GU2NJU2d2Vkw4RFNOT2pDWDlCQitoQVZ1Cjc4YjNLUDMxekMzaWlUanU0U3Fwai95L2VjS2MzTHpNMWtGcUdxNzFQRWhpR1p1dDBNbGpETmlyOTZ0SWlGVisKdnhDWng1dkNjSzB0NkpJL2MxWGFLSXhpV0NmcmwreFp4L3NjZkdRVEgzeXNHMko5aUloUFkzVTUxRThDalRtYgp1VHo2a2lyK0VLK2xuNEpMbWs5ZUl6R0pNeWhQbFVZOGRUa01YZDNQWmZkSkNEUDhKZXRZZDBnaXYvZUFydjlBCkI4REgyRFJqcy9ZSkVyVnVKUm1KOURhcVE2TXVGbkh4UmF3QW0rSFh1YnlpL09LREZSeFl6a2t6S3RHMDBUL1EKSUdXWGJTaXQ3ek1nM2QyT0x4NUlna1ViczZRL2hkaFQKLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo="
tls.crt: "LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURRekNDQWl1Z0F3SUJBZ0lSQVA5MjQ4Ry9hYlZhYVFnZ0RHZjgvRkF3RFFZSktvWklodmNOQVFFTEJRQXcKRkRFU01CQUdBMVVFQXhNSmFHRnlZbTl5TFdOaE1CNFhEVEkxTVRJd016QXlNVE15TWxvWERUSTJNVEl3TXpBeQpNVE15TWxvd0lERWVNQndHQTFVRUF4TVZhR0Z5WW05eUxtRnNaWGhzWldKbGJuTXVibVYwTUlJQklqQU5CZ2txCmhraUc5dzBCQVFFRkFBT0NBUThBTUlJQkNnS0NBUUVBeHpaNEdHSEExZkxLWVR5amFmNkt5MUN0ZHlKNXk4aEEKVmgzRlhVTWR5cExMWWhpTERGZDhuNlJNdHphenAyOWNKSDREODNoWERnR0ppNEcxWW5zdzRkcTMwS1JxY202WQp3MG5aZEtJbmJhSEhuZ2NwY1ZycDJGVTdLQVBsM1lONUowQ1lqeTNWZmFaaHMwc0RKb3l1L3R1V2FndVJFMFR6ClhaOG1rL1I0cVB6bE1qS05tNFc5eUpLTzEydlNEWHlhTEI4SmRkLzlNWDE4Z0U5OXNMSnhPOTZuRnJoaXBHbGEKQWxZNXZ5WitHc3R5KytaUTd3VnczeTBnZFl3Y2xZaVNaNElNL3JPdkl1dVBnczVxSWFJTnRrMGVNK3lYL2VINgpRVW8vdEVCWkNOR2lTdTVDc3U4SmZuS1RYK05GLzYreG1yOWczVjBQQSs2ZXJxYlZSK296OHdJREFRQUJvNEdECk1JR0FNQTRHQTFVZER3RUIvd1FFQXdJRm9EQWRCZ05WSFNVRUZqQVVCZ2dyQmdFRkJRY0RBUVlJS3dZQkJRVUgKQXdJd0RBWURWUjBUQVFIL0JBSXdBREFmQmdOVkhTTUVHREFXZ0JSV0ZkWm8rU0hiV0txaDJMd0NFdjRya3BCZQpkREFnQmdOVkhSRUVHVEFYZ2hWb1lYSmliM0l1WVd4bGVHeGxZbVZ1Y3k1dVpYUXdEUVlKS29aSWh2Y05BUUVMCkJRQURnZ0VCQUlyaEJkTXJUcDB2ZENxUW5RdSs4MTZZWlo5SndaaG52ZGZFa013by9Qd0Q0Q3AzLzEyZjVYY00KRmJ1QmxGWWpvYlJmMzcxRTZ5RWkzeXhiL3QwbFVCaUNLYldUM3RSOXBUTVY3dDVXYVhzY1ZJcTg2eWhFcDI5WgpMTWFUUXhBRTN2a0UvL2dXTXp3RVo2aFhUNHVpTU94ZHhKNllwcXdCUXBXMm14cFRSN2JUSnVnNFpXUGhoQTFpCkpMZDlIY0JXeS9Bc2RsYjl6N0dzelFPRnQ0SkEvdERZazdRNFgxaExCV2lvakovcnZSOElkVzR3elZXQkVDejUKVGo0UHQvTnNNZkhhT2VtR1dyWGZFV0FkWWM0RlQ3TnVNSzBwelIvRlJQM3lZRzI4OTFoNG4rckovdUVITmZ3agp2c1FnUzFzTC9McmhlL1M2V1l3WjdGVDQzWVZRSXA0PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg=="
tls.key: "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"
ca.crt: "LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURGRENDQWZ5Z0F3SUJBZ0lSQUtWd2p1eVA1amFGMjdFSDNYYlM4NFF3RFFZSktvWklodmNOQVFFTEJRQXcKRkRFU01CQUdBMVVFQXhNSmFHRnlZbTl5TFdOaE1CNFhEVEkxTVRJd016QXlNVE15TWxvWERUSTJNVEl3TXpBeQpNVE15TWxvd0ZERVNNQkFHQTFVRUF4TUphR0Z5WW05eUxXTmhNSUlCSWpBTkJna3Foa2lHOXcwQkFRRUZBQU9DCkFROEFNSUlCQ2dLQ0FRRUFxMnMzSEQ2WnQ4ZkQ3K0xHbDhhalJhbEZnb2doQXFKb3VjWlMxMGFhemczZVFhbHkKWWlaQjAvVC9qamoyZGtnRlNmMkxLTC9VRXlrRDVXOExWWEpwcDB6dWRIMlZTMGVncENIK3FLbTFXcUs4VCtDawovSDFkd3d2QmNIWGNZckJqakJpZXQzUmNkVUpaaWZSVHhjZVRCMnR5THhvVTJPbllZOFhmK241VmdvZEw4M0VCCkZoRmUzNkluMDFFbG8rSUcvSFNBclNJU1MzcGJLUDg1WmpkVGZ4NyttbFlUUWxvUWU3dFN5OGlCYWNTK0VhMGUKYVVUUVZwR3BzZURuT2g5djlhcVF1TCt4NmhuWlRuL3RLTSsxRnkrOUFneG9aSURJOUprZGRKaVlqMU1Lc2M3Mgo3TkpWeUF4V3VobVd5dG1Va25reXhPWUtsdXRrMThNRVlodnVwUUlEQVFBQm8yRXdYekFPQmdOVkhROEJBZjhFCkJBTUNBcVF3SFFZRFZSMGxCQll3RkFZSUt3WUJCUVVIQXdFR0NDc0dBUVVGQndNQ01BOEdBMVVkRXdFQi93UUYKTUFNQkFmOHdIUVlEVlIwT0JCWUVGRllWMW1qNUlkdFlxcUhZdkFJUy9pdVNrRjUwTUEwR0NTcUdTSWIzRFFFQgpDd1VBQTRJQkFRQnRmdnp6K3VxRFo4Z3FDYWhBY3NvNDEwSHlRZmd1NjUvUkU5dmd1UjJsc0libU5MNnBsKysvCjRnMHBEOGRvLzdNYWNGRVRZTTFVT0ZlaEp3Qkx5R1BaRXZmVnYyYlBZYVllSDRyT3RlNnpVWjJkNmMwSlRpbGEKVWpaODI2TWk1L1pCRkhjWmllVUZlK2Z0elpKMWJMOFRFYTh6dldZL0dmSU14Z1haUGJlc0lPNE9XaUxiMlpEbQpOYTZGZlpZTVFhczduaXFXT0ZHV2RoRHFoelB4Y2JYUENOMkN1ZjN0aDZsbkhMZHFUMi9FNmx6Qy9hWmszWWJDCkhLbnRTSXNwc1Bvbm5Ba2lFTUFlbkowaEwvVFI2NEI4U0h6SlF4c1QycGQ4SVJ2SGZLTUtmTnBOQTRWODdoZ0oKOStBK2ZaNnBJZTljaHhGYnF3ZkhFbi9aR0djUEd2dFQKLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo="
---
# Source: harbor/charts/harbor/templates/registry/registry-secret.yaml
apiVersion: v1
@@ -1268,7 +1268,7 @@ spec:
app.kubernetes.io/component: nginx
annotations:
checksum/configmap: 55921b41f4478ded4d60da7edb83b828382ba722214816271ce3ffd2a77aed35
checksum/secret: 08d1955b76ccdecd220173afc07aa94b1cbe258fbb6fdc863f2f0db809870ef2
checksum/secret: 1917ed1f7dd89e9c1996cbb3dbe20a46cfc18579b5f7f3f547e430e875e3f7ef
spec:
securityContext:
runAsUser: 10000

View File

@@ -68,6 +68,30 @@ spec:
# Source: immich/charts/immich/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: immich-machine-learning
labels:
app.kubernetes.io/instance: immich
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: immich
app.kubernetes.io/service: immich-machine-learning
helm.sh/chart: immich-4.4.0
namespace: immich
spec:
type: ClusterIP
ports:
- port: 3003
targetPort: 3003
protocol: TCP
name: http
selector:
app.kubernetes.io/controller: machine-learning
app.kubernetes.io/instance: immich
app.kubernetes.io/name: immich
---
# Source: immich/charts/immich/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: immich-main
labels:
@@ -98,30 +122,6 @@ spec:
app.kubernetes.io/name: immich
---
# Source: immich/charts/immich/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: immich-machine-learning
labels:
app.kubernetes.io/instance: immich
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: immich
app.kubernetes.io/service: immich-machine-learning
helm.sh/chart: immich-4.4.0
namespace: immich
spec:
type: ClusterIP
ports:
- port: 3003
targetPort: 3003
protocol: TCP
name: http
selector:
app.kubernetes.io/controller: machine-learning
app.kubernetes.io/instance: immich
app.kubernetes.io/name: immich
---
# Source: immich/charts/immich/templates/common.yaml
apiVersion: apps/v1
kind: Deployment
metadata:

View File

@@ -14,7 +14,7 @@ stringData:
config.yaml: |
## Registration ##
registration_shared_secret: "78qf09lp4y9ddCAOIHzIZl8w"
registration_shared_secret: "6fAFKKt3SEB7izipqAi3NuAi"
## API Configuration ##
@@ -552,7 +552,7 @@ spec:
metadata:
annotations:
checksum/config: e77b3b25301ed2f4b5eac2f16ed5d058374ed1ffcd7e9ca4d8eef44867647feb
checksum/secrets: b64796d44c09bd998e1ed681b5f911cb93f96ef424e2077226f933b022640d59
checksum/secrets: 436898f25e6954bf4f044ddd56f93cc4ed6982a1a4e018fee77823a9a637be45
labels:
app.kubernetes.io/name: matrix-synapse
app.kubernetes.io/instance: matrix-synapse

View File

@@ -0,0 +1,285 @@
---
# Source: metrics-server/charts/metrics-server/templates/serviceaccount.yaml
apiVersion: v1
kind: ServiceAccount
metadata:
name: metrics-server
namespace: metrics-server
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
---
# Source: metrics-server/charts/metrics-server/templates/clusterrole-aggregated-reader.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
name: system:metrics-server-aggregated-reader
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
rbac.authorization.k8s.io/aggregate-to-admin: "true"
rbac.authorization.k8s.io/aggregate-to-edit: "true"
rbac.authorization.k8s.io/aggregate-to-view: "true"
rules:
- apiGroups:
- metrics.k8s.io
resources:
- pods
- nodes
verbs:
- get
- list
- watch
---
# Source: metrics-server/charts/metrics-server/templates/clusterrole.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
name: system:metrics-server
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
rules:
- apiGroups:
- ""
resources:
- nodes/metrics
verbs:
- get
- apiGroups:
- ""
resources:
- pods
- nodes
- namespaces
- configmaps
verbs:
- get
- list
- watch
---
# Source: metrics-server/charts/metrics-server/templates/clusterrolebinding-auth-delegator.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: metrics-server:system:auth-delegator
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: system:auth-delegator
subjects:
- kind: ServiceAccount
name: metrics-server
namespace: metrics-server
---
# Source: metrics-server/charts/metrics-server/templates/clusterrolebinding.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: system:metrics-server
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: system:metrics-server
subjects:
- kind: ServiceAccount
name: metrics-server
namespace: metrics-server
---
# Source: metrics-server/charts/metrics-server/templates/rolebinding.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding
metadata:
name: metrics-server-auth-reader
namespace: kube-system
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: Role
name: extension-apiserver-authentication-reader
subjects:
- kind: ServiceAccount
name: metrics-server
namespace: metrics-server
---
# Source: metrics-server/charts/metrics-server/templates/service.yaml
apiVersion: v1
kind: Service
metadata:
name: metrics-server
namespace: metrics-server
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
spec:
type: ClusterIP
ports:
- name: https
port: 443
protocol: TCP
targetPort: https
appProtocol: https
selector:
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
---
# Source: metrics-server/charts/metrics-server/templates/deployment.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
name: metrics-server
namespace: metrics-server
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
spec:
replicas: 3
selector:
matchLabels:
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
template:
metadata:
labels:
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
spec:
serviceAccountName: metrics-server
priorityClassName: "system-cluster-critical"
containers:
- name: metrics-server
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop:
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
image: registry.k8s.io/metrics-server/metrics-server:v0.8.0
imagePullPolicy: IfNotPresent
args:
- --secure-port=10250
- --cert-dir=/tmp
- --kubelet-preferred-address-types=InternalIP,ExternalIP,Hostname
- --kubelet-use-node-status-port
- --metric-resolution=15s
- --kubelet-insecure-tls
- --authorization-always-allow-paths=/metrics
ports:
- name: https
protocol: TCP
containerPort: 10250
livenessProbe:
failureThreshold: 3
httpGet:
path: /livez
port: https
scheme: HTTPS
initialDelaySeconds: 0
periodSeconds: 10
readinessProbe:
failureThreshold: 3
httpGet:
path: /readyz
port: https
scheme: HTTPS
initialDelaySeconds: 20
periodSeconds: 10
volumeMounts:
- name: tmp
mountPath: /tmp
resources:
requests:
cpu: 100m
memory: 200Mi
volumes:
- name: tmp
emptyDir: {}
---
# Source: metrics-server/charts/metrics-server/templates/apiservice.yaml
apiVersion: apiregistration.k8s.io/v1
kind: APIService
metadata:
name: v1beta1.metrics.k8s.io
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
annotations:
spec:
group: metrics.k8s.io
groupPriorityMinimum: 100
insecureSkipTLSVerify: true
service:
name: metrics-server
namespace: metrics-server
port: 443
version: v1beta1
versionPriority: 100
---
# Source: metrics-server/charts/metrics-server/templates/servicemonitor.yaml
apiVersion: monitoring.coreos.com/v1
kind: ServiceMonitor
metadata:
name: metrics-server
namespace: metrics-server
labels:
helm.sh/chart: metrics-server-3.13.0
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
app.kubernetes.io/version: "0.8.0"
app.kubernetes.io/managed-by: Helm
spec:
jobLabel: app.kubernetes.io/instance
namespaceSelector:
matchNames:
- metrics-server
selector:
matchLabels:
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: metrics-server
endpoints:
- port: https
path: /metrics
scheme: https
tlsConfig:
insecureSkipVerify: true
interval: 1m
scrapeTimeout: 10s

View File

@@ -22,30 +22,6 @@ spec:
# Source: n8n/charts/n8n/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: n8n-worker
labels:
app.kubernetes.io/instance: n8n
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: n8n
app.kubernetes.io/service: n8n-worker
helm.sh/chart: n8n-4.4.0
namespace: n8n
spec:
type: ClusterIP
ports:
- port: 80
targetPort: 5678
protocol: TCP
name: http
selector:
app.kubernetes.io/controller: worker
app.kubernetes.io/instance: n8n
app.kubernetes.io/name: n8n
---
# Source: n8n/charts/n8n/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: n8n-main
labels:
@@ -92,6 +68,30 @@ spec:
app.kubernetes.io/name: n8n
---
# Source: n8n/charts/n8n/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: n8n-worker
labels:
app.kubernetes.io/instance: n8n
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: n8n
app.kubernetes.io/service: n8n-worker
helm.sh/chart: n8n-4.4.0
namespace: n8n
spec:
type: ClusterIP
ports:
- port: 80
targetPort: 5678
protocol: TCP
name: http
selector:
app.kubernetes.io/controller: worker
app.kubernetes.io/instance: n8n
app.kubernetes.io/name: n8n
---
# Source: n8n/charts/n8n/templates/common.yaml
apiVersion: apps/v1
kind: DaemonSet
metadata:

View File

@@ -3,48 +3,6 @@
---
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: ollama-server-1
labels:
app.kubernetes.io/instance: ollama
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama
helm.sh/chart: ollama-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: ollama
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "40Gi"
storageClassName: "ceph-block"
---
# Source: ollama/charts/ollama/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: ollama-server-2
labels:
app.kubernetes.io/instance: ollama
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama
helm.sh/chart: ollama-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: ollama
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "40Gi"
storageClassName: "ceph-block"
---
# Source: ollama/charts/ollama/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: ollama-server-3
labels:
@@ -85,6 +43,48 @@ spec:
storageClassName: "ceph-block"
---
# Source: ollama/charts/ollama/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: ollama-server-1
labels:
app.kubernetes.io/instance: ollama
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama
helm.sh/chart: ollama-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: ollama
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "40Gi"
storageClassName: "ceph-block"
---
# Source: ollama/charts/ollama/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: ollama-server-2
labels:
app.kubernetes.io/instance: ollama
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: ollama
helm.sh/chart: ollama-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: ollama
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "40Gi"
storageClassName: "ceph-block"
---
# Source: ollama/charts/ollama/templates/common.yaml
apiVersion: v1
kind: Service
metadata:

File diff suppressed because it is too large Load Diff

View File

@@ -254,27 +254,6 @@ spec:
---
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: qbittorrent-theme-data
labels:
app.kubernetes.io/instance: qbittorrent
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: qbittorrent
helm.sh/chart: qbittorrent-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: qbittorrent
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "1Gi"
storageClassName: "ceph-block"
---
# Source: qbittorrent/charts/qbittorrent/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: qbittorrent-qbit-manage-config-data
labels:
@@ -314,6 +293,27 @@ spec:
storage: "1Gi"
storageClassName: "ceph-block"
---
# Source: qbittorrent/charts/qbittorrent/templates/common.yaml
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: qbittorrent-theme-data
labels:
app.kubernetes.io/instance: qbittorrent
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: qbittorrent
helm.sh/chart: qbittorrent-4.4.0
annotations:
helm.sh/resource-policy: keep
namespace: qbittorrent
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "1Gi"
storageClassName: "ceph-block"
---
# Source: qbittorrent/templates/persistent-volume-claim.yaml
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -2,30 +2,6 @@
# Source: s3-exporter/charts/s3-exporter/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: s3-exporter-ceph-directus
labels:
app.kubernetes.io/instance: s3-exporter
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: s3-exporter
app.kubernetes.io/service: s3-exporter-ceph-directus
helm.sh/chart: s3-exporter-4.4.0
namespace: s3-exporter
spec:
type: ClusterIP
ports:
- port: 9655
targetPort: 9655
protocol: TCP
name: metrics
selector:
app.kubernetes.io/controller: ceph-directus
app.kubernetes.io/instance: s3-exporter
app.kubernetes.io/name: s3-exporter
---
# Source: s3-exporter/charts/s3-exporter/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: s3-exporter-digital-ocean
labels:
@@ -96,6 +72,30 @@ spec:
app.kubernetes.io/name: s3-exporter
---
# Source: s3-exporter/charts/s3-exporter/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: s3-exporter-ceph-directus
labels:
app.kubernetes.io/instance: s3-exporter
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: s3-exporter
app.kubernetes.io/service: s3-exporter-ceph-directus
helm.sh/chart: s3-exporter-4.4.0
namespace: s3-exporter
spec:
type: ClusterIP
ports:
- port: 9655
targetPort: 9655
protocol: TCP
name: metrics
selector:
app.kubernetes.io/controller: ceph-directus
app.kubernetes.io/instance: s3-exporter
app.kubernetes.io/name: s3-exporter
---
# Source: s3-exporter/charts/s3-exporter/templates/common.yaml
---
apiVersion: apps/v1
kind: Deployment

View File

@@ -89,71 +89,6 @@ spec:
# Source: searxng/charts/searxng/templates/common.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
name: searxng-browser
labels:
app.kubernetes.io/controller: browser
app.kubernetes.io/instance: searxng
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: searxng
helm.sh/chart: searxng-4.4.0
namespace: searxng
spec:
revisionHistoryLimit: 3
replicas: 1
strategy:
type: Recreate
selector:
matchLabels:
app.kubernetes.io/controller: browser
app.kubernetes.io/name: searxng
app.kubernetes.io/instance: searxng
template:
metadata:
labels:
app.kubernetes.io/controller: browser
app.kubernetes.io/instance: searxng
app.kubernetes.io/name: searxng
spec:
enableServiceLinks: false
serviceAccountName: default
automountServiceAccountToken: true
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
containers:
- env:
- name: SEARXNG_BASE_URL
value: https://searxng.alexlebens.net/
- name: SEARXNG_QUERY_URL
value: https://searxng.alexlebens.net/search?q=<query>
- name: SEARXNG_HOSTNAME
value: searxng.alexlebens.net
- name: SEARXNG_REDIS_URL
value: redis://redis-replication-searxng-master.searxng:6379/0
- name: UWSGI_WORKERS
value: "4"
- name: UWSGI_THREADS
value: "4"
image: searxng/searxng:latest@sha256:277cb4b82fbdd69d88812089a5755860d379de907f09fb511443ff03d35191af
imagePullPolicy: IfNotPresent
name: main
resources:
requests:
cpu: 10m
memory: 256Mi
volumeMounts:
- mountPath: /etc/searxng
name: browser-data
volumes:
- name: browser-data
persistentVolumeClaim:
claimName: searxng-browser-data
---
# Source: searxng/charts/searxng/templates/common.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
name: searxng-api
labels:
@@ -235,6 +170,71 @@ spec:
secret:
secretName: searxng-api-config-secret
---
# Source: searxng/charts/searxng/templates/common.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
name: searxng-browser
labels:
app.kubernetes.io/controller: browser
app.kubernetes.io/instance: searxng
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: searxng
helm.sh/chart: searxng-4.4.0
namespace: searxng
spec:
revisionHistoryLimit: 3
replicas: 1
strategy:
type: Recreate
selector:
matchLabels:
app.kubernetes.io/controller: browser
app.kubernetes.io/name: searxng
app.kubernetes.io/instance: searxng
template:
metadata:
labels:
app.kubernetes.io/controller: browser
app.kubernetes.io/instance: searxng
app.kubernetes.io/name: searxng
spec:
enableServiceLinks: false
serviceAccountName: default
automountServiceAccountToken: true
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
containers:
- env:
- name: SEARXNG_BASE_URL
value: https://searxng.alexlebens.net/
- name: SEARXNG_QUERY_URL
value: https://searxng.alexlebens.net/search?q=<query>
- name: SEARXNG_HOSTNAME
value: searxng.alexlebens.net
- name: SEARXNG_REDIS_URL
value: redis://redis-replication-searxng-master.searxng:6379/0
- name: UWSGI_WORKERS
value: "4"
- name: UWSGI_THREADS
value: "4"
image: searxng/searxng:latest@sha256:277cb4b82fbdd69d88812089a5755860d379de907f09fb511443ff03d35191af
imagePullPolicy: IfNotPresent
name: main
resources:
requests:
cpu: 10m
memory: 256Mi
volumeMounts:
- mountPath: /etc/searxng
name: browser-data
volumes:
- name: browser-data
persistentVolumeClaim:
claimName: searxng-browser-data
---
# Source: searxng/templates/external-secret.yaml
apiVersion: external-secrets.io/v1
kind: ExternalSecret

View File

@@ -38,6 +38,202 @@ spec:
- PruneLast=true
- RespectIgnoreDifferences=true
---
# Source: stack/templates/application.yaml
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: cilium
namespace: argocd
labels:
app.kubernetes.io/name: cilium
app.kubernetes.io/instance: argocd
app.kubernetes.io/part-of: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: http://gitea-http.gitea:3000/alexlebens/infrastructure
targetRevision: manifests
path: clusters/cl01tl/manifests/cilium
destination:
name: in-cluster
namespace: kube-system
revisionHistoryLimit: 3
ignoreDifferences:
- group: monitoring.coreos.com
kind: ServiceMonitor
jqPathExpressions:
- .spec.endpoints[]?.relabelings[]?.action
syncPolicy:
automated:
prune: true
selfHeal: false
retry:
limit: 3
backoff:
duration: 1m
factor: 2
maxDuration: 15m
syncOptions:
- CreateNamespace=false
- ApplyOutOfSyncOnly=true
- ServerSideApply=true
- PruneLast=true
- RespectIgnoreDifferences=true
---
# Source: stack/templates/application.yaml
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: coredns
namespace: argocd
labels:
app.kubernetes.io/name: coredns
app.kubernetes.io/instance: argocd
app.kubernetes.io/part-of: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: http://gitea-http.gitea:3000/alexlebens/infrastructure
targetRevision: manifests
path: clusters/cl01tl/manifests/coredns
destination:
name: in-cluster
namespace: kube-system
revisionHistoryLimit: 3
syncPolicy:
automated:
prune: true
selfHeal: true
retry:
limit: 3
backoff:
duration: 1m
factor: 2
maxDuration: 15m
syncOptions:
- CreateNamespace=false
- ApplyOutOfSyncOnly=true
- ServerSideApply=true
- PruneLast=true
---
# Source: stack/templates/application.yaml
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: metrics-server
namespace: argocd
labels:
app.kubernetes.io/name: metrics-server
app.kubernetes.io/instance: argocd
app.kubernetes.io/part-of: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: http://gitea-http.gitea:3000/alexlebens/infrastructure
targetRevision: manifests
path: clusters/cl01tl/manifests/metrics-server
destination:
name: in-cluster
namespace: kube-system
revisionHistoryLimit: 3
syncPolicy:
automated:
prune: true
selfHeal: true
retry:
limit: 3
backoff:
duration: 1m
factor: 2
maxDuration: 15m
syncOptions:
- CreateNamespace=false
- ApplyOutOfSyncOnly=true
- ServerSideApply=true
- PruneLast=true
---
# Source: stack/templates/application.yaml
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: kubelet-serving-cert-approver
namespace: argocd
labels:
app.kubernetes.io/name: kubelet-serving-cert-approver
app.kubernetes.io/instance: argocd
app.kubernetes.io/part-of: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: http://gitea-http.gitea:3000/alexlebens/infrastructure
targetRevision: manifests
path: clusters/cl01tl/manifests/kubelet-serving-cert-approver
destination:
name: in-cluster
namespace: kubelet-serving-cert-approver
revisionHistoryLimit: 3
syncPolicy:
automated:
prune: true
selfHeal: false
retry:
limit: 3
backoff:
duration: 1m
factor: 2
maxDuration: 15m
syncOptions:
- CreateNamespace=true
- ApplyOutOfSyncOnly=true
- ServerSideApply=true
- PruneLast=true
---
# Source: stack/templates/application.yaml
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: prometheus-operator-crds
namespace: argocd
labels:
app.kubernetes.io/name: prometheus-operator-crds
app.kubernetes.io/instance: argocd
app.kubernetes.io/part-of: argocd
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: http://gitea-http.gitea:3000/alexlebens/infrastructure
targetRevision: manifests
path: clusters/cl01tl/manifests/prometheus-operator-crds
destination:
name: in-cluster
namespace: kube-system
revisionHistoryLimit: 3
syncPolicy:
automated:
prune: true
selfHeal: false
retry:
limit: 3
backoff:
duration: 1m
factor: 2
maxDuration: 15m
syncOptions:
- CreateNamespace=false
- ApplyOutOfSyncOnly=true
- ServerSideApply=true
- PruneLast=true
---
# Source: stack/templates/application-set.yaml
apiVersion: argoproj.io/v1alpha1
kind: ApplicationSet
@@ -60,6 +256,16 @@ spec:
- path: clusters/cl01tl/manifests/*
- path: clusters/cl01tl/manifests/stack
exclude: true
- path: clusters/cl01tl/manifests/cilium
exclude: true
- path: clusters/cl01tl/manifests/coredns
exclude: true
- path: clusters/cl01tl/manifests/metrics-server
exclude: true
- path: clusters/cl01tl/manifests/kubelet-serving-cert-approver
exclude: true
- path: clusters/cl01tl/manifests/prometheus-operator-crds
exclude: true
template:
metadata:
name: '{{path.basename}}'

View File

@@ -111,30 +111,6 @@ spec:
# Source: tdarr/charts/tdarr/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: tdarr-web
labels:
app.kubernetes.io/instance: tdarr
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: tdarr
app.kubernetes.io/service: tdarr-web
helm.sh/chart: tdarr-4.4.0
namespace: tdarr
spec:
type: ClusterIP
ports:
- port: 8265
targetPort: 8265
protocol: TCP
name: http
selector:
app.kubernetes.io/controller: server
app.kubernetes.io/instance: tdarr
app.kubernetes.io/name: tdarr
---
# Source: tdarr/charts/tdarr/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: tdarr-api
labels:
@@ -157,6 +133,30 @@ spec:
app.kubernetes.io/name: tdarr
---
# Source: tdarr/charts/tdarr/templates/common.yaml
apiVersion: v1
kind: Service
metadata:
name: tdarr-web
labels:
app.kubernetes.io/instance: tdarr
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: tdarr
app.kubernetes.io/service: tdarr-web
helm.sh/chart: tdarr-4.4.0
namespace: tdarr
spec:
type: ClusterIP
ports:
- port: 8265
targetPort: 8265
protocol: TCP
name: http
selector:
app.kubernetes.io/controller: server
app.kubernetes.io/instance: tdarr
app.kubernetes.io/name: tdarr
---
# Source: tdarr/charts/tdarr/templates/common.yaml
apiVersion: apps/v1
kind: DaemonSet
metadata: