Compare commits
1 Commits
dcde12299a
...
2ae15a9d83
| Author | SHA1 | Date | |
|---|---|---|---|
|
2ae15a9d83
|
@@ -124,7 +124,7 @@ blocky:
|
|||||||
home IN CNAME traefik-cl01tl
|
home IN CNAME traefik-cl01tl
|
||||||
home-assistant IN CNAME traefik-cl01tl
|
home-assistant IN CNAME traefik-cl01tl
|
||||||
home-assistant-code-server IN CNAME traefik-cl01tl
|
home-assistant-code-server IN CNAME traefik-cl01tl
|
||||||
hubble IN CNAME traefik-cl01tl
|
hubble IN CNAME cilium-cl01tl
|
||||||
huntarr IN CNAME traefik-cl01tl
|
huntarr IN CNAME traefik-cl01tl
|
||||||
immich IN CNAME traefik-cl01tl
|
immich IN CNAME traefik-cl01tl
|
||||||
jellyfin IN CNAME traefik-cl01tl
|
jellyfin IN CNAME traefik-cl01tl
|
||||||
|
|||||||
@@ -1,18 +1,18 @@
|
|||||||
# apiVersion: "cilium.io/v2alpha1"
|
apiVersion: "cilium.io/v2alpha1"
|
||||||
# kind: CiliumL2AnnouncementPolicy
|
kind: CiliumL2AnnouncementPolicy
|
||||||
# metadata:
|
metadata:
|
||||||
# name: node-gateway-l2-policy
|
name: node-gateway-l2-policy
|
||||||
# namespace: {{ .Release.Namespace }}
|
namespace: {{ .Release.Namespace }}
|
||||||
# labels:
|
labels:
|
||||||
# app.kubernetes.io/name: node-gateway-l2-policy
|
app.kubernetes.io/name: node-gateway-l2-policy
|
||||||
# app.kubernetes.io/instance: {{ .Release.Name }}
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
# app.kubernetes.io/part-of: {{ .Release.Name }}
|
app.kubernetes.io/part-of: {{ .Release.Name }}
|
||||||
# spec:
|
spec:
|
||||||
# nodeSelector:
|
nodeSelector:
|
||||||
# matchLabels:
|
matchLabels:
|
||||||
# kubernetes.io/hostname: talos-ix7-xku
|
kubernetes.io/hostname: talos-ix7-xku
|
||||||
# interfaces:
|
interfaces:
|
||||||
# - end0
|
- end0
|
||||||
# - enp6s0
|
- enp6s0
|
||||||
# externalIPs: true
|
externalIPs: true
|
||||||
# loadBalancerIPs: true
|
loadBalancerIPs: true
|
||||||
|
|||||||
@@ -1,46 +1,46 @@
|
|||||||
# apiVersion: gateway.networking.k8s.io/v1
|
apiVersion: gateway.networking.k8s.io/v1
|
||||||
# kind: Gateway
|
kind: Gateway
|
||||||
# metadata:
|
metadata:
|
||||||
# name: cilium-tls-gateway
|
name: cilium-tls-gateway
|
||||||
# namespace: {{ .Release.Namespace }}
|
namespace: {{ .Release.Namespace }}
|
||||||
# labels:
|
labels:
|
||||||
# app.kubernetes.io/name: cilium-tls-gateway
|
app.kubernetes.io/name: cilium-tls-gateway
|
||||||
# app.kubernetes.io/instance: {{ .Release.Name }}
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
# app.kubernetes.io/part-of: {{ .Release.Name }}
|
app.kubernetes.io/part-of: {{ .Release.Name }}
|
||||||
# annotations:
|
annotations:
|
||||||
# cert-manager.io/cluster-issuer: letsencrypt-issuer
|
cert-manager.io/cluster-issuer: letsencrypt-issuer
|
||||||
# io.cilium/lb-ipam-ips: "10.232.1.23"
|
io.cilium/lb-ipam-ips: "10.232.1.23"
|
||||||
# spec:
|
spec:
|
||||||
# addresses:
|
addresses:
|
||||||
# - type: IPAddress
|
- type: IPAddress
|
||||||
# value: 10.232.1.23
|
value: 10.232.1.23
|
||||||
# gatewayClassName: cilium
|
gatewayClassName: cilium
|
||||||
# listeners:
|
listeners:
|
||||||
# - allowedRoutes:
|
- allowedRoutes:
|
||||||
# namespaces:
|
namespaces:
|
||||||
# from: All
|
from: All
|
||||||
# hostname: '*.alexlebens.net'
|
hostname: '*.alexlebens.net'
|
||||||
# name: https
|
name: https
|
||||||
# port: 443
|
port: 443
|
||||||
# protocol: HTTPS
|
protocol: HTTPS
|
||||||
# tls:
|
tls:
|
||||||
# certificateRefs:
|
certificateRefs:
|
||||||
# - group: ''
|
- group: ''
|
||||||
# kind: Secret
|
kind: Secret
|
||||||
# name: https-gateway-cert
|
name: https-gateway-cert
|
||||||
# namespace: kube-system
|
namespace: kube-system
|
||||||
# mode: Terminate
|
mode: Terminate
|
||||||
# - allowedRoutes:
|
- allowedRoutes:
|
||||||
# namespaces:
|
namespaces:
|
||||||
# from: All
|
from: All
|
||||||
# hostname: 'alexlebens.net'
|
hostname: 'alexlebens.net'
|
||||||
# name: https-domain
|
name: https-domain
|
||||||
# port: 443
|
port: 443
|
||||||
# protocol: HTTPS
|
protocol: HTTPS
|
||||||
# tls:
|
tls:
|
||||||
# certificateRefs:
|
certificateRefs:
|
||||||
# - group: ''
|
- group: ''
|
||||||
# kind: Secret
|
kind: Secret
|
||||||
# name: https-gateway-cert
|
name: https-gateway-cert
|
||||||
# namespace: kube-system
|
namespace: kube-system
|
||||||
# mode: Terminate
|
mode: Terminate
|
||||||
|
|||||||
@@ -11,8 +11,8 @@ spec:
|
|||||||
parentRefs:
|
parentRefs:
|
||||||
- group: gateway.networking.k8s.io
|
- group: gateway.networking.k8s.io
|
||||||
kind: Gateway
|
kind: Gateway
|
||||||
name: traefik-gateway
|
name: cilium-tls-gateway
|
||||||
namespace: traefik
|
namespace: kube-system
|
||||||
hostnames:
|
hostnames:
|
||||||
- hubble.alexlebens.net
|
- hubble.alexlebens.net
|
||||||
rules:
|
rules:
|
||||||
|
|||||||
@@ -26,7 +26,7 @@ cilium:
|
|||||||
- SYS_ADMIN
|
- SYS_ADMIN
|
||||||
- SYS_RESOURCE
|
- SYS_RESOURCE
|
||||||
l2announcements:
|
l2announcements:
|
||||||
enabled: false
|
enabled: true
|
||||||
bgpControlPlane:
|
bgpControlPlane:
|
||||||
enabled: false
|
enabled: false
|
||||||
secretsNamespace:
|
secretsNamespace:
|
||||||
|
|||||||
@@ -99,7 +99,7 @@ customDNS:
|
|||||||
home IN CNAME traefik-cl01tl
|
home IN CNAME traefik-cl01tl
|
||||||
home-assistant IN CNAME traefik-cl01tl
|
home-assistant IN CNAME traefik-cl01tl
|
||||||
home-assistant-code-server IN CNAME traefik-cl01tl
|
home-assistant-code-server IN CNAME traefik-cl01tl
|
||||||
hubble IN CNAME traefik-cl01tl
|
hubble IN CNAME cilium-cl01tl
|
||||||
huntarr IN CNAME traefik-cl01tl
|
huntarr IN CNAME traefik-cl01tl
|
||||||
immich IN CNAME traefik-cl01tl
|
immich IN CNAME traefik-cl01tl
|
||||||
jellyfin IN CNAME traefik-cl01tl
|
jellyfin IN CNAME traefik-cl01tl
|
||||||
|
|||||||
@@ -120,7 +120,7 @@ customDNS:
|
|||||||
home IN CNAME traefik-cl01tl
|
home IN CNAME traefik-cl01tl
|
||||||
home-assistant IN CNAME traefik-cl01tl
|
home-assistant IN CNAME traefik-cl01tl
|
||||||
home-assistant-code-server IN CNAME traefik-cl01tl
|
home-assistant-code-server IN CNAME traefik-cl01tl
|
||||||
hubble IN CNAME traefik-cl01tl
|
hubble IN CNAME cilium-cl01tl
|
||||||
huntarr IN CNAME traefik-cl01tl
|
huntarr IN CNAME traefik-cl01tl
|
||||||
immich IN CNAME traefik-cl01tl
|
immich IN CNAME traefik-cl01tl
|
||||||
jellyfin IN CNAME traefik-cl01tl
|
jellyfin IN CNAME traefik-cl01tl
|
||||||
|
|||||||
Reference in New Issue
Block a user