Compare commits
48 Commits
80b977c4b4
...
2db48a9dfb
| Author | SHA1 | Date | |
|---|---|---|---|
| 2db48a9dfb | |||
| 6194e7ee6a | |||
| 88cf0a69c6 | |||
| 424796c3f4 | |||
| a06e6d3e80 | |||
| 0b49d82b0c | |||
|
|
b61c8f9e43 | ||
| 7f83e0918b | |||
|
|
a560d129b7 | ||
|
|
2ebedaf2ff | ||
| 7a5ee5a76a | |||
|
|
ed07260999 | ||
|
|
e523402a04 | ||
|
|
623f64531a | ||
| 64a4d412b4 | |||
| 7faf4862b2 | |||
| 4a69b291ac | |||
| 0421376817 | |||
| 720a9765ef | |||
| 01b171d711 | |||
| facf3fb416 | |||
| 22447958aa | |||
| d51db1c9b9 | |||
| 2b2455ec54 | |||
| 5bad4d966f | |||
| d9956d3de0 | |||
|
|
ff12c75d88 | ||
| 6e7a0e6de8 | |||
| 3b39a31cb7 | |||
|
|
c163a6097f | ||
|
|
8f171d3dd2 | ||
|
|
fe82b53ca2 | ||
| 4ad6116189 | |||
|
|
12a12ffad6 | ||
|
|
8b0d79710d | ||
|
|
a115589109 | ||
|
|
1eb715d1d6 | ||
|
|
41ace3062f | ||
| 3e7ba6318d | |||
|
|
a58f05fdda | ||
|
|
9dfdedeeec | ||
|
|
4793c298ee | ||
|
|
04f465c369 | ||
|
|
e62c538328 | ||
|
|
be5711935c | ||
|
|
155f950ff8 | ||
| f8de5fc2d3 | |||
| f4a3bf6499 |
@@ -16,7 +16,7 @@ spec:
|
|||||||
spec:
|
spec:
|
||||||
containers:
|
containers:
|
||||||
- name: adguard-home
|
- name: adguard-home
|
||||||
image: adguard/adguardhome:v0.107.51
|
image: adguard/adguardhome:v0.107.52
|
||||||
ports:
|
ports:
|
||||||
- protocol: TCP
|
- protocol: TCP
|
||||||
containerPort: 53
|
containerPort: 53
|
||||||
|
|||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: coder
|
- name: coder
|
||||||
repo: https://helm.coder.com/v2
|
repo: https://helm.coder.com/v2
|
||||||
version: 2.13.1
|
version: 2.14.1
|
||||||
releaseName: coder
|
releaseName: coder
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: gitea
|
- name: gitea
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 2.3.14
|
version: 2.3.18
|
||||||
releaseName: gitea
|
releaseName: gitea
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -20,7 +20,7 @@ spec:
|
|||||||
app.kubernetes.io/instance: kavita
|
app.kubernetes.io/instance: kavita
|
||||||
spec:
|
spec:
|
||||||
containers:
|
containers:
|
||||||
- image: jvmilazz0/kavita:0.8.1
|
- image: jvmilazz0/kavita:0.8.2
|
||||||
imagePullPolicy: IfNotPresent
|
imagePullPolicy: IfNotPresent
|
||||||
name: kavita
|
name: kavita
|
||||||
ports:
|
ports:
|
||||||
|
|||||||
@@ -15,7 +15,7 @@ spec:
|
|||||||
app.name: plane-redis
|
app.name: plane-redis
|
||||||
spec:
|
spec:
|
||||||
containers:
|
containers:
|
||||||
- image: valkey/valkey:7.2.5-alpine
|
- image: valkey/valkey:7.2.6-alpine
|
||||||
imagePullPolicy: Always
|
imagePullPolicy: Always
|
||||||
name: plane-redis
|
name: plane-redis
|
||||||
stdin: true
|
stdin: true
|
||||||
|
|||||||
@@ -19,7 +19,7 @@ spec:
|
|||||||
runAsGroup: 1000
|
runAsGroup: 1000
|
||||||
containers:
|
containers:
|
||||||
- name: rlpa-server
|
- name: rlpa-server
|
||||||
image: damonto/estkme-cloud:1.0.11
|
image: damonto/estkme-cloud:v1.0.13
|
||||||
securityContext:
|
securityContext:
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
ports:
|
ports:
|
||||||
|
|||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: sonarqube
|
- name: sonarqube
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 5.2.10
|
version: 5.2.12
|
||||||
releaseName: sonarqube
|
releaseName: sonarqube
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -16,7 +16,7 @@ spec:
|
|||||||
spec:
|
spec:
|
||||||
containers:
|
containers:
|
||||||
- name: stirling-pdf
|
- name: stirling-pdf
|
||||||
image: frooodle/s-pdf:0.26.1
|
image: frooodle/s-pdf:0.27.0
|
||||||
securityContext:
|
securityContext:
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
env:
|
env:
|
||||||
|
|||||||
@@ -23,7 +23,7 @@ spec:
|
|||||||
runAsNonRoot: true
|
runAsNonRoot: true
|
||||||
runAsGroup: 1000
|
runAsGroup: 1000
|
||||||
name: vaultwarden
|
name: vaultwarden
|
||||||
image: vaultwarden/server:1.31.0
|
image: vaultwarden/server:1.32.0
|
||||||
env:
|
env:
|
||||||
- name: DOMAIN
|
- name: DOMAIN
|
||||||
value: https://vaultwarden.cluster.edward.sydney
|
value: https://vaultwarden.cluster.edward.sydney
|
||||||
|
|||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: cert-manager
|
- name: cert-manager
|
||||||
repo: https://charts.jetstack.io
|
repo: https://charts.jetstack.io
|
||||||
version: v1.15.1
|
version: v1.15.2
|
||||||
releaseName: cert-manager
|
releaseName: cert-manager
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: ingress-nginx
|
- name: ingress-nginx
|
||||||
repo: https://kubernetes.github.io/ingress-nginx
|
repo: https://kubernetes.github.io/ingress-nginx
|
||||||
version: 4.10.1
|
version: 4.11.1
|
||||||
releaseName: ingress-nginx
|
releaseName: ingress-nginx
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: ingress-nginx
|
- name: ingress-nginx
|
||||||
repo: https://kubernetes.github.io/ingress-nginx
|
repo: https://kubernetes.github.io/ingress-nginx
|
||||||
version: 4.10.1
|
version: 4.11.1
|
||||||
releaseName: ingress-nginx
|
releaseName: ingress-nginx
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -64,7 +64,7 @@ defaultBackend:
|
|||||||
enabled: true
|
enabled: true
|
||||||
image:
|
image:
|
||||||
repository: ghcr.io/tarampampam/error-pages
|
repository: ghcr.io/tarampampam/error-pages
|
||||||
tag: 2.27.0@sha256:40e2631173b1a407c18fe7d1ba8104d995cf9e4780d123eeadfa1d57c68eaf4f
|
tag: 3.3.0@sha256:43c9917e99ac1bb4df3c4e037327637e502e2ab4c3d84803b223d5b7db6d4cd7
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
extraEnvs:
|
extraEnvs:
|
||||||
- name: TEMPLATE_NAME
|
- name: TEMPLATE_NAME
|
||||||
|
|||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: logstash
|
- name: logstash
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 6.2.14
|
version: 6.3.2
|
||||||
releaseName: logstash
|
releaseName: logstash
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: minio
|
- name: minio
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 14.6.24
|
version: 14.6.33
|
||||||
releaseName: minio
|
releaseName: minio
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: mongodb
|
- name: mongodb
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 15.6.14
|
version: 15.6.18
|
||||||
releaseName: mongodb
|
releaseName: mongodb
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: netdata
|
- name: netdata
|
||||||
repo: https://netdata.github.io/helmchart/
|
repo: https://netdata.github.io/helmchart/
|
||||||
version: 3.7.96
|
version: 3.7.97
|
||||||
releaseName: netdata
|
releaseName: netdata
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: postgresql
|
- name: postgresql
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 15.5.17
|
version: 15.5.21
|
||||||
releaseName: postgresql
|
releaseName: postgresql
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -22,7 +22,7 @@ spec:
|
|||||||
runAsGroup: 0
|
runAsGroup: 0
|
||||||
containers:
|
containers:
|
||||||
- name: prometheus
|
- name: prometheus
|
||||||
image: prom/prometheus:v2.53.0
|
image: prom/prometheus:v2.54.0
|
||||||
args:
|
args:
|
||||||
- "--storage.tsdb.retention.time=14d"
|
- "--storage.tsdb.retention.time=14d"
|
||||||
- "--config.file=/etc/prometheus/prometheus.yaml"
|
- "--config.file=/etc/prometheus/prometheus.yaml"
|
||||||
@@ -42,7 +42,7 @@ spec:
|
|||||||
- name: prometheus-storage-volume
|
- name: prometheus-storage-volume
|
||||||
mountPath: /prometheus/
|
mountPath: /prometheus/
|
||||||
- name: grafana
|
- name: grafana
|
||||||
image: grafana/grafana:11.0.1
|
image: grafana/grafana:11.1.3
|
||||||
ports:
|
ports:
|
||||||
- containerPort: 3000
|
- containerPort: 3000
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
|
|||||||
@@ -19,7 +19,7 @@ spec:
|
|||||||
runAsGroup: 1000
|
runAsGroup: 1000
|
||||||
containers:
|
containers:
|
||||||
- name: redis-insight
|
- name: redis-insight
|
||||||
image: redis/redisinsight:2.52
|
image: redis/redisinsight:2.54
|
||||||
securityContext:
|
securityContext:
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
ports:
|
ports:
|
||||||
|
|||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: redis
|
- name: redis
|
||||||
repo: oci://registry-1.docker.io/bitnamicharts
|
repo: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 19.6.2
|
version: 20.0.1
|
||||||
releaseName: redis
|
releaseName: redis
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
@@ -3,6 +3,6 @@ kind: Kustomization
|
|||||||
helmCharts:
|
helmCharts:
|
||||||
- name: mend-renovate-ce
|
- name: mend-renovate-ce
|
||||||
repo: https://mend.github.io/renovate-ce-ee
|
repo: https://mend.github.io/renovate-ce-ee
|
||||||
version: 7.6.0
|
version: 7.6.4
|
||||||
releaseName: mend-renovate-ce
|
releaseName: mend-renovate-ce
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
15
renovate.json
Normal file
15
renovate.json
Normal file
@@ -0,0 +1,15 @@
|
|||||||
|
{
|
||||||
|
"$schema": "https://docs.renovatebot.com/renovate-schema.json",
|
||||||
|
"extends": [
|
||||||
|
"local>3dwardch3ng/renovate-config"
|
||||||
|
],
|
||||||
|
"kubernetes": {
|
||||||
|
"fileMatch": ["\\.yaml$"]
|
||||||
|
},
|
||||||
|
"helm-values": {
|
||||||
|
"fileMatch": ["\\.yaml$"]
|
||||||
|
},
|
||||||
|
"ignorePaths": [
|
||||||
|
|
||||||
|
]
|
||||||
|
}
|
||||||
7
scripts/101.upgrade-cilium.sh
Normal file
7
scripts/101.upgrade-cilium.sh
Normal file
@@ -0,0 +1,7 @@
|
|||||||
|
#!/bin/bash
|
||||||
|
set -e
|
||||||
|
|
||||||
|
helm upgrade --install cilium cilium/cilium --version 1.15.6 \
|
||||||
|
--namespace kube-system \
|
||||||
|
--set operator.replicas=1
|
||||||
|
|
||||||
4
scripts/102.upgrade-argocd.sh
Normal file
4
scripts/102.upgrade-argocd.sh
Normal file
@@ -0,0 +1,4 @@
|
|||||||
|
#!/bin/bash
|
||||||
|
set -e
|
||||||
|
|
||||||
|
helm upgrade --install argocd -n argocd -f argocd-values.yaml argo/argo-cd --version 7.3.6
|
||||||
4
scripts/103.upgrade-sealed-secrets.sh
Normal file
4
scripts/103.upgrade-sealed-secrets.sh
Normal file
@@ -0,0 +1,4 @@
|
|||||||
|
#!/bin/bash
|
||||||
|
set -e
|
||||||
|
|
||||||
|
helm upgrade --install sealed-secrets -n kube-system --set-string fullnameOverride=sealed-secrets-controller sealed-secrets/sealed-secrets -f sealed-secrets-values.yaml
|
||||||
@@ -5,10 +5,4 @@ kubectl apply -k "https://github.com/argoproj/argo-cd/manifests/crds?ref=v2.11.4
|
|||||||
kubectl create namespace argocd || echo "Namespace argocd already exists"
|
kubectl create namespace argocd || echo "Namespace argocd already exists"
|
||||||
helm repo add argo https://argoproj.github.io/argo-helm || echo "Argo repo already exists"
|
helm repo add argo https://argoproj.github.io/argo-helm || echo "Argo repo already exists"
|
||||||
helm repo update || echo "Failed to update helm repos"
|
helm repo update || echo "Failed to update helm repos"
|
||||||
helm upgrade --install argocd -n argocd -f argocd-values.yaml argo/argo-cd --version 7.3.6
|
helm upgrade --install argocd -n argocd -f argocd-values.yaml argo/argo-cd --version 7.3.6
|
||||||
#kubectl apply -n argocd -f https://raw.githubusercontent.com/argoproj/argo-cd/v2.9.18/manifests/ha/install.yaml
|
|
||||||
helm plugin install https://github.com/jkroepke/helm-secrets
|
|
||||||
|
|
||||||
#Check repo server secret accessibility
|
|
||||||
echo "Checking repo server secret accessibility:"
|
|
||||||
kubectl auth can-i get secrets --namespace "argocd" --as "system:serviceaccount:argocd:argocd-repo-server"
|
|
||||||
@@ -3,4 +3,4 @@ set -e
|
|||||||
|
|
||||||
helm repo add sealed-secrets https://bitnami-labs.github.io/sealed-secrets
|
helm repo add sealed-secrets https://bitnami-labs.github.io/sealed-secrets
|
||||||
helm repo update
|
helm repo update
|
||||||
helm install sealed-secrets -n kube-system --set-string fullnameOverride=sealed-secrets-controller sealed-secrets/sealed-secrets -f sealed-secrets-values.yaml
|
helm upgrade --install sealed-secrets -n kube-system --set-string fullnameOverride=sealed-secrets-controller sealed-secrets/sealed-secrets -f sealed-secrets-values.yaml
|
||||||
File diff suppressed because it is too large
Load Diff
Reference in New Issue
Block a user