Commit Graph

206 Commits

Author SHA1 Message Date
Ryan Heywood 1b7602564e
milksad-website: change docker image 2023-11-15 19:43:14 -05:00
Ryan Heywood 2c08cfb854
k/forgejo: increase upload size limit to 1GB 2023-11-03 19:44:33 -05:00
Ryan Heywood 6db173d79b
kustomizations/forgejo: bump to 1.20.5-0 2023-11-01 21:55:13 -05:00
Ryan Heywood b6dda94912
secrets: bump to include anton key 2023-10-17 14:11:47 -05:00
Anton Livaja 346d8b02c9
add Anton's gpg key id 2023-10-16 20:16:14 -04:00
Lance Vick dcd2a721b5
terraform -> tofu 2023-09-21 23:16:15 -07:00
Lance Vick 8ee902a211
shell with all required tools built deterministically in-tree 2023-09-03 03:45:27 -07:00
Lance Vick e04bec7cc8
Merge branch 'main' of git.distrust.co:public/stack 2023-08-31 20:41:07 -07:00
Lance Vick 30869639fc
bump toolchain 2023-08-31 20:40:19 -07:00
Ryan Heywood e1e0e4669b
k/milksad-website: initial commit 2023-08-20 02:03:06 -05:00
Ryan Heywood a508ec0172
k/website: use self hosted container repository 2023-08-16 18:20:07 -05:00
Shane Engelman 8071c60c4f
Merge branch 'ryansquared/k8s-cluster' 2023-07-28 00:05:37 -04:00
Ryan Heywood c6c722a6c1
k/website: add matrix wellknown 2023-07-26 10:09:31 -05:00
Lance Vick 2b3d8da0a5
add matrix well-known files 2023-07-26 00:15:02 -07:00
Ryan Heywood 276bfdcd7a
k/website: fix ingress and use direct wkd format 2023-07-24 23:45:37 -05:00
Ryan Heywood e1c227176d
k/website: initial commit 2023-07-24 23:37:57 -05:00
ryan-distrust.co 2b4463b6ef
k/digitalocean: rename CSI drivers (breaking) 2023-06-08 21:55:26 -04:00
Anton Livaja 724bbf058b
Makefile: add antonleviathan's key 2023-05-25 22:36:41 -04:00
ryan-distrust.co d7bda0d703
k/forgejo: switch domain to git.distrust.co 2023-05-17 15:30:32 -04:00
ryan-distrust.co 5e9c8ad4e0
recreate cluster 2023-05-17 01:02:04 -04:00
ryan-distrust.co 710af7dbc7
docs: add steps to rebuild kustomization secrets 2023-05-16 22:06:13 -04:00
ryan-distrust.co e76452e192
infra/main: teardown k8s cluster and digitalocean database cluster 2023-05-16 21:46:40 -04:00
ryan-distrust.co 26cd225a98
modules/digitalocean_talos_cluster: enable backups for control plane 2023-05-16 21:46:24 -04:00
ryan-distrust.co 92fc448f8c
docs/kustomization-ordering: Initial commit 2023-05-16 21:46:08 -04:00
ryan-distrust.co 45c6c90ae8
k/cilium: gitignore charts 2023-05-16 20:47:49 -04:00
ryan-distrust.co 8d864924de
k/{forgejo,keycloak}: add securityContexts 2023-05-16 20:46:41 -04:00
ryan-distrust.co 214da23282
k/{forgejo,keycloak}: hash lock images 2023-05-16 17:45:03 -04:00
ryan-distrust.co 724c4b92a8
docs/onboarding: add realm account login link 2023-05-16 14:51:51 -04:00
ryan-distrust.co 7da583b26a
docs/onboarding: initial commit 2023-05-16 14:29:24 -04:00
ryan-distrust.co 1c16a03900
k/forgejo: add pvc snapshots 2023-05-16 04:04:06 -04:00
ryan-distrust.co 811bfc4aa3
k/digitalocean: add a Certificate for snapshot validation webhook 2023-05-16 03:44:24 -04:00
ryan-distrust.co 26c0d26c0c
k/ingress-nginx: redirect port 22 to forgejo 2023-05-16 01:10:03 -04:00
ryan-distrust.co b6f32b61a4
k/forgejo: add SSH support 2023-05-16 00:03:01 -04:00
ryan-distrust.co baeb4480ca
k/forgejo: initial WIP commit 2023-05-15 21:51:42 -04:00
ryan-distrust.co 2e5a3e0802
docs: add guide for using sops 2023-05-15 21:51:31 -04:00
ryan-distrust.co c3bc04a6ee
k/keycloak: add docs and client secret generator 2023-05-15 21:51:16 -04:00
ryan-distrust.co ad5b94929e
k/keycloak: initial commit 2023-05-15 00:06:43 -04:00
ryan-distrust.co f5008b3294
infra/main: properly format database object as kubernetes Secret 2023-05-15 00:06:32 -04:00
ryan-distrust.co c06e656e62
terraform_modules/digitalocean_database_cluster: pass necessary flags to psql 2023-05-15 00:03:44 -04:00
ryan-distrust.co 624a23d729
k/external-dns: initial commit with DigitalOcean config 2023-05-14 15:07:05 -04:00
ryan-distrust.co e83610ce47
k/cert-manager: add DigitalOcean ClusterIssuer 2023-05-14 15:06:43 -04:00
ryan-distrust.co 6fa454652a
k/ingress-nginx: disable proxy protocol
this is done because otherwise cluster internal traffic will not work
due to kube-proxy short circuiting and nginx requiring either every
request, or no request, use proxy protocol
2023-05-14 15:05:55 -04:00
ryan-distrust.co fdcba6f75b
k/ingress-nginx: initial commit 2023-05-13 01:31:19 -04:00
ryan-distrust.co cf10ecc371
k/digitalocean: place resources in vpc-id 2023-05-13 01:31:07 -04:00
ryan-distrust.co 837587782b
terraform_modules: misc improvements, rebuild cluster 2023-05-13 01:04:48 -04:00
ryan-distrust.co 833d68c3a6
k/cilium: add Cilium CNI / operator 2023-05-13 01:04:09 -04:00
ryan-distrust.co ea3e0a26f1
k/cert-manager: bases is deprecated 2023-05-13 01:03:53 -04:00
ryan-distrust.co ffef126f03
Makefile: allow binary override 2023-05-13 01:03:35 -04:00
ryan-distrust.co b371447ce0
modules/digitalocean_talos_cluster: fix rebuilding talosctl 2023-05-12 20:11:41 -04:00
ryan-distrust.co a7eb610d38
modules/digitalocean_talos_cluster: add worker nodes to talosconfig 2023-05-12 19:49:56 -04:00