19 Commits

Author SHA1 Message Date
Renovate Bot
088565cdc6 Update ghcr.io/paperless-ngx/paperless-ngx Docker tag to v2.20.6
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 12s
2026-01-31 19:40:48 +00:00
7fdd641e8a Merge pull request 'Update immich monorepo to v2.5.2' (#312) from renovate/immich-monorepo into main
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 8s
renovate / renovate (push) Successful in 3m2s
Reviewed-on: #312
2026-01-30 06:06:39 +05:30
Renovate Bot
4afba19841 Update immich monorepo to v2.5.2
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 9s
2026-01-30 00:36:06 +00:00
c5672f2f5e enable ipv6 for docker daemon in gitea-act-runner
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 9s
2026-01-30 06:04:49 +05:30
70b4bf40c2 add lb for gitea
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 35s
renovate / renovate (push) Successful in 2m20s
2026-01-30 05:14:14 +05:30
efd8e24db5 proxy *.akshun-lab.cc and add seperate container for gitea.akshun-lab.cc without cf proxy in cf-ddns deployment
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 7s
2026-01-30 05:10:26 +05:30
0dcdb4a51e Add longhorn ingress
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 50s
2026-01-30 04:30:15 +05:30
6906e8bde1 Merge pull request 'Update docker Docker tag to v29.2.0' (#306) from renovate/docker-29.x into main
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 14s
Reviewed-on: #306
2026-01-29 17:15:14 +05:30
401cfba749 Merge pull request 'Update searxng/searxng Docker digest to 7dfe4ab' (#305) from renovate/searxng-searxng into main
Some checks failed
Validate Kubernetes Manifests / kubeconform (push) Has been cancelled
Reviewed-on: #305
2026-01-29 17:15:07 +05:30
7c1dc9260e Merge pull request 'Update gotenberg/gotenberg Docker tag to v8.26' (#307) from renovate/gotenberg-gotenberg-8.x into main
Some checks failed
Validate Kubernetes Manifests / kubeconform (push) Has been cancelled
Reviewed-on: #307
2026-01-29 17:15:00 +05:30
d8f0295baa Merge pull request 'Update collabora/code Docker tag to v25.04.8.2.1' (#309) from renovate/collabora-code-25.x into main
Some checks failed
Validate Kubernetes Manifests / kubeconform (push) Has been cancelled
Reviewed-on: #309
2026-01-29 17:14:51 +05:30
19bd87a10c Merge pull request 'Update Helm release prometheus to v28.6.1' (#311) from renovate/prometheus-28.x into main
Some checks failed
Validate Kubernetes Manifests / kubeconform (push) Has been cancelled
Reviewed-on: #311
2026-01-29 17:14:43 +05:30
ead1738b9d Merge pull request 'Update Helm release longhorn to v1.11.0' (#310) from renovate/longhorn-1.x into main
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 15s
Reviewed-on: #310
2026-01-29 16:47:18 +05:30
Renovate Bot
d997da53b0 Update Helm release longhorn to v1.11.0
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 17s
2026-01-29 11:16:39 +00:00
Renovate Bot
fa1195f01c Update searxng/searxng Docker digest to 7dfe4ab
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 21s
2026-01-29 11:15:31 +00:00
Renovate Bot
ec354081ad Update Helm release prometheus to v28.6.1
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 24s
2026-01-29 00:02:56 +00:00
Renovate Bot
0bb6cac2e1 Update collabora/code Docker tag to v25.04.8.2.1
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 25s
2026-01-29 00:02:37 +00:00
Renovate Bot
d1c0303080 Update gotenberg/gotenberg Docker tag to v8.26
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 15s
2026-01-28 00:02:43 +00:00
Renovate Bot
c3f7f6a32d Update docker Docker tag to v29.2.0
All checks were successful
Validate Kubernetes Manifests / kubeconform (push) Successful in 13s
2026-01-28 00:02:38 +00:00
13 changed files with 91 additions and 10 deletions

View File

@@ -25,6 +25,9 @@ spec:
- name: runner-data
persistentVolumeClaim:
claimName: gitea-act-runner-longhorn
- name: docker-ipv6
configMap:
name: docker-daemon-ipv6
containers:
- name: runner
image: gitea/act_runner@sha256:8477d5b61b655caad4449888bae39f1f34bebd27db56cb15a62dccb3dcf3a944
@@ -64,7 +67,7 @@ spec:
- name: runner-data
mountPath: /data
- name: daemon
image: docker:29.1.5-dind
image: docker:29.2.0-dind
env:
- name: DOCKER_TLS_CERTDIR
value: /certs
@@ -73,3 +76,6 @@ spec:
volumeMounts:
- name: docker-certs
mountPath: /certs
- name: docker-ipv6
mountPath: /etc/docker/daemon.json
subPath: daemon.json

View File

@@ -0,0 +1,11 @@
apiVersion: v1
kind: ConfigMap
metadata:
name: docker-daemon-ipv6
namespace: git-ops
data:
daemon.json: |
{
"ipv6": true,
"fixed-cidr-v6": "2001:db8:1::/64"
}

View File

@@ -30,3 +30,21 @@ spec:
selector:
app: gitea-db
clusterIP: None
---
apiVersion: v1
kind: Service
metadata:
name: gitea-lb-service
namespace: git-ops
spec:
selector:
app: gitea-app
ports:
- port: 3000
targetPort: 3000
name: http
- port: 22
targetPort: 22
name: ssh
type: LoadBalancer

View File

@@ -0,0 +1,27 @@
---
apiVersion: networking.k8s.io/v1
kind: Ingress
metadata:
name: longhorn-ingress
namespace: longhorn-system
annotations:
cert-manager.io/cluster-issuer: letsencrypt-cloudflare
traefik.ingress.kubernetes.io/router.middlewares: tools-authelia@kubernetescrd
traefik.ingress.kubernetes.io/router.entrypoints: websecure
spec:
ingressClassName: traefik
tls:
- hosts:
- longhorn.akshun-lab.cc
secretName: longhorn-tls
rules:
- host: longhorn.akshun-lab.cc
http:
paths:
- path: /
pathType: Prefix
backend:
service:
name: longhorn-frontend
port:
number: 80

View File

@@ -9,7 +9,7 @@ spec:
chart:
spec:
chart: longhorn
version: "1.10.1"
version: "1.11.0"
sourceRef:
kind: HelmRepository
name: longhorn

View File

@@ -19,7 +19,7 @@ spec:
runtimeClassName: nvidia
containers:
- name: immich-machine-learning
image: ghcr.io/immich-app/immich-machine-learning:v2.5.0-cuda
image: ghcr.io/immich-app/immich-machine-learning:v2.5.2-cuda
ports:
- containerPort: 3003
env:

View File

@@ -18,7 +18,7 @@ spec:
spec:
containers:
- name: immich-server
image: ghcr.io/immich-app/immich-server:v2.5.0
image: ghcr.io/immich-app/immich-server:v2.5.2
readinessProbe:
exec:
command:

View File

@@ -9,7 +9,7 @@ spec:
chart:
spec:
chart: prometheus
version: "28.6.0"
version: "28.6.1"
sourceRef:
kind: HelmRepository
name: prometheus-community

View File

@@ -15,7 +15,7 @@ spec:
spec:
hostNetwork: true
containers:
- name: cf-ddns
- name: cf-ddns-1
image: favonia/cloudflare-ddns:1.15.1
securityContext:
capabilities:
@@ -24,6 +24,25 @@ spec:
env:
- name: DOMAINS
value: "*.akshun-lab.cc"
- name: PROXIED
value: "true"
- name: IP4_PROVIDER
value: "none"
- name: CLOUDFLARE_API_TOKEN
valueFrom:
secretKeyRef:
name: cf-ddns-secret
key: api-token
- name: cf-ddns-2
image: favonia/cloudflare-ddns:1.15.1
securityContext:
capabilities:
drop:
- ALL
env:
- name: DOMAINS
value: "gitea.akshun-lab.cc"
- name: PROXIED
value: "false"
- name: IP4_PROVIDER

View File

@@ -16,7 +16,7 @@ spec:
runAsUser: 1001
containers:
- name: gotenberg
image: gotenberg/gotenberg:8.25
image: gotenberg/gotenberg:8.26
command:
- sh
- -c

View File

@@ -17,7 +17,7 @@ spec:
spec:
containers:
- name: collabora
image: collabora/code:25.04.8.1.1
image: collabora/code:25.04.8.2.1
ports:
- containerPort: 9980
env:

View File

@@ -17,7 +17,7 @@ spec:
spec:
containers:
- name: paperless-ngx
image: ghcr.io/paperless-ngx/paperless-ngx:2.20.5
image: ghcr.io/paperless-ngx/paperless-ngx:2.20.6
readinessProbe:
exec:
command:

View File

@@ -18,7 +18,7 @@ spec:
spec:
containers:
- name: searxng
image: searxng/searxng@sha256:4a60859bc9c3b47ad5ceed998f847c5192f16ce26fbc01a1975628e19b6040df
image: searxng/searxng@sha256:7dfe4abf855ee9ef946c057211179dbc97e05d49a15db11d937c84b1e412098a
ports:
- containerPort: 8080
env: