Nikholas Pcenicni
|
3a6e5dff5b
|
Update Ansible configuration to integrate SOPS for managing secrets. Enhance README.md with SOPS usage instructions and prerequisites. Remove External Secrets Operator references and related configurations from the bootstrap process, streamlining the deployment. Adjust playbooks and roles to apply SOPS-encrypted secrets automatically, improving security and clarity in secret management.
|
2026-03-30 22:42:52 -04:00 |
|
Nikholas Pcenicni
|
76eb7df18c
|
Refactor noble cluster configurations to transition from the deprecated apps structure to a streamlined bootstrap approach. Update paths in various YAML files and README documentation to reflect the new organization under clusters/noble/bootstrap. This change enhances clarity and consistency across the deployment process, ensuring that all components are correctly referenced and documented for user guidance.
|
2026-03-28 17:03:15 -04:00 |
|
Nikholas Pcenicni
|
445a1ac211
|
Update Headlamp and Vault documentation; enhance RBAC configurations in Argo CD. Modify Headlamp README to clarify sessionTTL handling and ServiceAccount permissions. Add Cilium network policy instructions to Vault README. Update Argo CD values.yaml for default RBAC settings, ensuring local admin retains full access while new users start with read-only permissions. Reflect these changes in CLUSTER-BUILD.md.
|
2026-03-28 02:02:17 -04:00 |
|
Nikholas Pcenicni
|
a65b553252
|
Stop tracking talos kubeconfig; remove Authentik token from git; add Newt kubeseal example
Remove committed talos/kubeconfig (cluster admin credentials). Ignore talos/kubeconfig at repo root.
Replace hardcoded LDAP outpost token with AUTHENTIK_LDAP_OUTPOST_TOKEN from .env.
Document Sealed Secrets workflow for Newt (kubeseal script + README updates). Clarify Talos secrets use talsecret/SOPS, not Sealed Secrets.
Made-with: Cursor
|
2026-03-28 01:19:58 -04:00 |
|
Nikholas Pcenicni
|
d2c53fc553
|
Remove deprecated Argo CD application configurations and related files for noble cluster, including root-application.yaml, kustomization.yaml, and individual application manifests for argocd, cilium, longhorn, kube-vip, and monitoring components. Update kube-vip daemonset.yaml to enhance deployment strategy and environment variables for improved configuration.
|
2026-03-27 23:02:17 -04:00 |
|
Nikholas Pcenicni
|
4263da65d8
|
Update Cilium application.yaml to enhance ignoreDifferences for cilium-operator Deployment and improve Helm sync handling. Modify kube-vip daemonset.yaml to adjust VIP interface and add new environment variables for better configuration. Update README.md with troubleshooting tips for kube-vip and Helm upgrade conflicts.
|
2026-03-27 19:29:54 -04:00 |
|
Nikholas Pcenicni
|
ae5bfdf2f7
|
Update Cilium application configuration to ignore differences for hubble-server-certs Secret, add Helm value files for better management, and enhance Argo CD kustomization with resource ordering and sync options.
|
2026-03-27 19:16:31 -04:00 |
|
Nikholas Pcenicni
|
55833b2593
|
Enhance Longhorn application configuration by adding skipCrds option and retry settings to improve deployment resilience and error handling.
|
2026-03-27 17:47:54 -04:00 |
|
Nikholas Pcenicni
|
8cacf5f5de
|
Enhance monitoring configurations by enabling persistence for Loki and updating storage settings for Prometheus and Alertmanager to use Longhorn. Add Longhorn application to kustomization.yaml for improved storage management.
|
2026-03-27 16:27:58 -04:00 |
|
Nikholas Pcenicni
|
d39b253693
|
Update Argo CD configuration by enabling service in kube-vip daemonset, replacing argocd-ingress with argocd-server-lb, and updating documentation to reflect changes.
|
2026-03-27 04:06:52 -04:00 |
|
Nikholas Pcenicni
|
369ab99cd1
|
Update Cilium application configuration to enable ingress controller and remove deprecated argocd-server service patch; delete Proxmox VM template files.
|
2026-03-27 04:01:40 -04:00 |
|
Nikholas Pcenicni
|
51d55af86e
|
Update .gitignore and refactor Ubuntu template playbook to use role for Proxmox template management
|
2026-03-27 03:48:32 -04:00 |
|