Compare commits

...

58 Commits

Author SHA1 Message Date
d7c1ae053e Update .gitea/workflows/renovate.yml 2025-10-24 20:32:03 +00:00
9a1e7fae7d Merge pull request 'Update docker Docker tag to v28.5.1' (#375) from renovate/docker-28.x into main
Reviewed-on: #375
2025-10-15 15:28:20 +00:00
cd8f212e85 Merge pull request 'Update docker.io/ghostfolio/ghostfolio Docker tag to v2.208.0' (#376) from renovate/docker.io-ghostfolio-ghostfolio-2.x into main
Reviewed-on: #376
2025-10-15 15:28:07 +00:00
e3c7b9371e Merge pull request 'Update rcourtman/pulse Docker tag to v4.23.0' (#377) from renovate/rcourtman-pulse-4.x into main
Reviewed-on: #377
2025-10-15 15:27:55 +00:00
891052e9e8 Merge pull request 'Update quay.io/invidious/invidious-companion Docker digest to a96f7a1' (#378) from renovate/quay.io-invidious-invidious-companion into main
Reviewed-on: #378
2025-10-15 15:27:37 +00:00
daca0d07c6 Merge pull request 'Update Helm release prometheus to v27.40.1' (#379) from renovate/prometheus-27.x into main
Reviewed-on: #379
2025-10-15 15:27:25 +00:00
a8103fcdf0 Merge pull request 'Update Helm release csi-driver-smb to v1.19.1' (#380) from renovate/csi-driver-smb-1.x into main
Reviewed-on: #380
2025-10-15 15:27:13 +00:00
22eddfca4e Merge pull request 'Update searxng/searxng Docker digest to 0e0493d' (#374) from renovate/searxng-searxng into main
Reviewed-on: #374
2025-10-15 15:27:01 +00:00
Renovate Bot
f746fdf204 Update searxng/searxng Docker digest to 0e0493d 2025-10-15 08:59:34 +00:00
Renovate Bot
5d51888150 Update quay.io/invidious/invidious-companion Docker digest to a96f7a1 2025-10-15 08:59:28 +00:00
Renovate Bot
b6a0ad024b Update Helm release csi-driver-smb to v1.19.1 2025-10-14 13:37:23 +00:00
Renovate Bot
88798cb22a Update Helm release prometheus to v27.40.1 2025-10-14 00:03:32 +00:00
5cbe0a0c00 remove open-webui and drone
All checks were successful
renovate / renovate (push) Successful in 11m9s
2025-10-13 07:18:52 +05:30
Renovate Bot
9ea2e301ee Update rcourtman/pulse Docker tag to v4.23.0 2025-10-13 00:04:13 +00:00
391afc1fe6 add hostNetwork: true
All checks were successful
renovate / renovate (push) Successful in 9m11s
2025-10-12 07:21:55 +05:30
Renovate Bot
99bcef6583 Update docker.io/ghostfolio/ghostfolio Docker tag to v2.208.0 2025-10-12 01:15:45 +00:00
083ad61920 disable nvidia-gpu support from cluster
All checks were successful
renovate / renovate (push) Successful in 6m50s
2025-10-12 03:06:30 +05:30
a7002f6f50 update gitea-act deployment to use internal service for readiness check 2025-10-12 00:11:03 +05:30
Renovate Bot
bb061b7e1d Update docker Docker tag to v28.5.1 2025-10-11 18:31:32 +00:00
ba5f105e2d use act runner instead of drone 2025-10-11 23:58:28 +05:30
08825d9087 disable drone in favor of gitea-act 2025-10-11 23:49:24 +05:30
649ceacf7e Merge pull request 'Update Helm release prometheus to v27.40.0' (#373) from renovate/prometheus-27.x into main
All checks were successful
continuous-integration/drone Build is passing
Reviewed-on: #373
2025-10-11 19:46:29 +05:30
e0ebfe15aa change background image 2025-10-11 17:04:34 +05:30
ae9d872f92 Merge pull request 'Update Helm release csi-driver-smb to v1.19.0' (#368) from renovate/csi-driver-smb-1.x into main
Reviewed-on: #368
2025-10-11 13:41:32 +05:30
dcb6ead1b8 Merge pull request 'Update searxng/searxng Docker digest to 1458a9e' (#371) from renovate/searxng-searxng into main
Reviewed-on: #371
2025-10-11 13:41:15 +05:30
f7d8b335ae Merge pull request 'Update public.ecr.aws/semaphore/pro/server Docker tag to v2.16.34' (#372) from renovate/public.ecr.aws-semaphore-pro-server-2.x into main
Reviewed-on: #372
2025-10-11 13:41:00 +05:30
ce33154508 Merge pull request 'Update quay.io/invidious/invidious-companion Docker digest to 919112d' (#370) from renovate/quay.io-invidious-invidious-companion into main
Reviewed-on: #370
2025-10-11 13:40:35 +05:30
Renovate Bot
9e9c7f125c Update Helm release prometheus to v27.40.0 2025-10-11 00:19:08 +00:00
Renovate Bot
99c8378606 Update public.ecr.aws/semaphore/pro/server Docker tag to v2.16.34 2025-10-11 00:18:55 +00:00
Renovate Bot
bf4c536955 Update searxng/searxng Docker digest to 1458a9e 2025-10-11 00:18:51 +00:00
Renovate Bot
07019a163e Update quay.io/invidious/invidious-companion Docker digest to 919112d 2025-10-11 00:18:47 +00:00
c8feb53b1a enable prometheus 2025-10-10 08:07:48 +05:30
1c670469e6 Merge pull request 'Update quay.io/invidious/invidious-companion Docker digest to f88fd95' (#364) from renovate/quay.io-invidious-invidious-companion into main
Reviewed-on: #364
2025-10-10 06:05:41 +05:30
0a13bfb321 Merge pull request 'Update searxng/searxng Docker digest to 7c0fd2e' (#365) from renovate/searxng-searxng into main
Reviewed-on: #365
2025-10-10 06:05:31 +05:30
537f52e08b Merge pull request 'Update jasongdove/ersatztv Docker tag to v25.7.1' (#366) from renovate/jasongdove-ersatztv-25.x into main
Reviewed-on: #366
2025-10-10 06:05:20 +05:30
235d9abec9 Merge pull request 'Update gotenberg/gotenberg Docker tag to v8.24' (#367) from renovate/gotenberg-gotenberg-8.x into main
Reviewed-on: #367
2025-10-10 06:05:10 +05:30
5ee22a1643 Merge pull request 'Update rcourtman/pulse Docker tag to v4.22.0' (#369) from renovate/rcourtman-pulse-4.x into main
Reviewed-on: #369
2025-10-10 06:04:56 +05:30
Renovate Bot
92b7abc10e Update rcourtman/pulse Docker tag to v4.22.0 2025-10-10 00:18:29 +00:00
Renovate Bot
f4a585f339 Update Helm release csi-driver-smb to v1.19.0 2025-10-10 00:18:27 +00:00
Renovate Bot
f48d79a57e Update gotenberg/gotenberg Docker tag to v8.24 2025-10-10 00:18:18 +00:00
Renovate Bot
b8ddab8d17 Update jasongdove/ersatztv Docker tag to v25.7.1 2025-10-10 00:18:13 +00:00
Renovate Bot
9c398d2b90 Update searxng/searxng Docker digest to 7c0fd2e 2025-10-10 00:18:11 +00:00
Renovate Bot
8ac3fa4d11 Update quay.io/invidious/invidious-companion Docker digest to f88fd95 2025-10-10 00:18:09 +00:00
c8fa78f63d delete ceph PVC 2025-10-10 02:59:49 +05:30
de936489c3 delete ceph PVCs 2025-10-10 02:58:36 +05:30
58d28ac7ee delete ceph ns 2025-10-10 02:52:41 +05:30
11bf469c5b disable ceph 2025-10-10 02:50:38 +05:30
0f88e7b08d change svc type to ClusterIP 2025-10-09 21:28:32 +05:30
750674a0fc Merge pull request 'Update Helm release cert-manager to v1.19.0' (#359) from renovate/cert-manager-1.x into main
Reviewed-on: #359
2025-10-09 21:07:02 +05:30
ff3ec84ec7 Merge pull request 'Update ghcr.io/open-webui/open-webui Docker tag to v0.6.33' (#357) from renovate/ghcr.io-open-webui-open-webui-0.x into main
Reviewed-on: #357
2025-10-09 21:06:53 +05:30
8c8a19bd89 Merge pull request 'Update lscr.io/linuxserver/code-server Docker tag to v4.104.3' (#358) from renovate/lscr.io-linuxserver-code-server-4.x into main
Reviewed-on: #358
2025-10-09 21:06:44 +05:30
07dfa9dfe8 Merge pull request 'Update searxng/searxng Docker digest to 106c4d4' (#360) from renovate/searxng-searxng into main
Reviewed-on: #360
2025-10-09 21:06:32 +05:30
7c039497a3 Merge pull request 'Update dependency fluxcd/flux2 to v2.7.2' (#362) from renovate/fluxcd-flux2-2.x into main
Reviewed-on: #362
2025-10-09 21:06:23 +05:30
Renovate Bot
5a473dd27d Update dependency fluxcd/flux2 to v2.7.2 2025-10-09 00:17:30 +00:00
Renovate Bot
8ccb6b873a Update searxng/searxng Docker digest to 106c4d4 2025-10-08 16:17:26 +00:00
Renovate Bot
b65be5a659 Update Helm release cert-manager to v1.19.0 2025-10-08 00:04:57 +00:00
Renovate Bot
fa2f0d49f6 Update lscr.io/linuxserver/code-server Docker tag to v4.104.3 2025-10-08 00:04:45 +00:00
Renovate Bot
082cd291a0 Update ghcr.io/open-webui/open-webui Docker tag to v0.6.33 2025-10-08 00:04:32 +00:00
65 changed files with 92 additions and 512 deletions

View File

@@ -1,17 +0,0 @@
---
kind: pipeline
type: kubernetes
name: renovate
steps:
- name: renovate
image: renovate/renovate:41.97.7
commands:
- unset GIT_COMMITTER_NAME GIT_COMMITTER_EMAIL GIT_AUTHOR_NAME GIT_AUTHOR_EMAIL
- renovate
environment:
RENOVATE_TOKEN:
from_secret: RENOVATE_TOKEN
GITHUB_COM_TOKEN:
from_secret: GITHUB_COM_TOKEN

View File

@@ -0,0 +1,25 @@
name: renovate
on:
schedule:
- cron: "@daily"
workflow_dispatch:
jobs:
renovate:
runs-on: ubuntu-latest
container:
image: renovate/renovate:41.97.7
options: |-
--network=bridge
steps:
- name: Checkout repository
uses: actions/checkout@v4
- name: Run Renovate
env:
RENOVATE_TOKEN: ${{ secrets.RENOVATE_TOKEN }}
GITHUB_COM_TOKEN: ${{ secrets.PAT_TOKEN }}
run: |
renovate

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: bazarr-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 5Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: code-server-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -18,7 +18,7 @@ spec:
spec:
containers:
- name: code-server
image: lscr.io/linuxserver/code-server:4.104.2
image: lscr.io/linuxserver/code-server:4.104.3
ports:
- containerPort: 8443
env:

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: ersatztv-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -18,7 +18,7 @@ spec:
spec:
containers:
- name: ersatztv
image: jasongdove/ersatztv:v25.7.0
image: jasongdove/ersatztv:v25.7.1
ports:
- containerPort: 8409
volumeMounts:

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: ghostfolio-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -78,7 +78,7 @@ spec:
key: postgres-password
containers:
- name: ghostfolio
image: docker.io/ghostfolio/ghostfolio:2.207.0
image: docker.io/ghostfolio/ghostfolio:2.208.0
securityContext:
capabilities:
drop:

View File

@@ -2,7 +2,7 @@
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: gitea-act-runner-ceph
name: gitea-act-runner-longhorn
namespace: default
spec:
accessModes:
@@ -11,4 +11,4 @@ spec:
resources:
requests:
storage: 100Mi
storageClassName: csi-rbd-sc
storageClassName: longhorn

View File

@@ -18,14 +18,14 @@ spec:
labels:
app: gitea-act-runner
spec:
hostNetwork: true
restartPolicy: Always
hostNetwork: true
volumes:
- name: docker-certs
emptyDir: {}
- name: runner-data
persistentVolumeClaim:
claimName: gitea-act-runner-ceph
claimName: gitea-act-runner-longhorn
initContainers:
- name: wait-for-gitea
image: busybox
@@ -52,7 +52,7 @@ spec:
- name: GITEA_INSTANCE_URL
value: "https://gitea.akshun-lab.cc"
- name: GITEA_RUNNER_REGISTRATION_TOKEN
value: "NvAHP4f1in4Fpe6VFaiwiN98IR0poOQoDv4dDKcN"
value: "uxvKmGvtraocJMCcfJ101XC9kUoY8OlCEN18CvgZ"
- name: CONFIG_FILE
value: "/data/config.yaml"
volumeMounts:
@@ -61,7 +61,7 @@ spec:
- name: runner-data
mountPath: /data
- name: daemon
image: docker:28.4.0-dind
image: docker:28.5.1-dind
env:
- name: DOCKER_TLS_CERTDIR
value: /certs
@@ -70,4 +70,3 @@ spec:
volumeMounts:
- name: docker-certs
mountPath: /certs

View File

@@ -1,33 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: gitea-app-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 5Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: gitea-db-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 5Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -16,7 +16,7 @@ spec:
runAsUser: 1001
containers:
- name: gotenberg
image: gotenberg/gotenberg:8.23
image: gotenberg/gotenberg:8.24
command:
- sh
- -c

View File

@@ -52,7 +52,7 @@ data:
useEqualHeights: true
hideErrors: true
statusStyle: "dot"
background: /images/background.png
background: /images/sur.png
services.yaml: |
- Apps:
- Sonarr:
@@ -259,13 +259,6 @@ data:
namespace: default
podSelector: app=paperless-ngx
app: paperless-ngx
- Open-WebUI:
icon: ollama.png
description: ollama Frontend
href: https://ollama.akshun-lab.cc
namespace: default
podSelector: app=open-webui
app: open-webui
- Ghostfolio:
icon: ghostfolio.png
description: portfolio analyzer
@@ -273,12 +266,6 @@ data:
namespace: default
podSelector: app=ghostfolio
app: ghostfolio
- Drone:
icon: drone.png
description: CI/CD
namespace: default
app: drone
href: https://drone.akshun-lab.cc
- Searxng:
icon: searxng.png
description: search engine

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: homepage-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 100Mi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -16,10 +16,9 @@ spec:
labels:
app: immich-ml
spec:
runtimeClassName: nvidia
containers:
- name: immich-machine-learning
image: ghcr.io/immich-app/immich-machine-learning:v2.0.1-cuda
image: ghcr.io/immich-app/immich-machine-learning:v2.0.1-openvino
ports:
- containerPort: 3003
env:
@@ -34,9 +33,9 @@ spec:
mountPath: /cache
resources:
requests:
nvidia.com/gpu: "1"
gpu.intel.com/i915: "1"
limits:
nvidia.com/gpu: "1"
gpu.intel.com/i915: "1"
volumes:
- name: model-cache
persistentVolumeClaim:

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: immich-cache-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 10Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: invidious-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -66,7 +66,7 @@ spec:
- name: postgres-data
mountPath: /var/lib/postgresql/data
- name: inv-companion
image: quay.io/invidious/invidious-companion@sha256:62e5ec92802bc6da3e7ca6f39879d869e20d065c5c6d9cfa8ec2296057c48a3d
image: quay.io/invidious/invidious-companion@sha256:a96f7a1eb88bf0d5882d519c9410f8c7b2d391cafc378b72f3bfd37dd5f0e587
restartPolicy: Always
env:
- name: SERVER_SECRET_KEY

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: jellyfin-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 20Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: jellyseerr-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,33 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: jellystat-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: jellystat-backups
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: paperless-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: pihole-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: prowlarr-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: pulse-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 100Mi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -17,7 +17,7 @@ spec:
spec:
containers:
- name: pulse
image: rcourtman/pulse:4.21.0
image: rcourtman/pulse:4.23.0
volumeMounts:
- name: pulse-data
mountPath: /data

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: qbittorrent-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: radarr-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 2Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: searxng-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 100Mi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -18,7 +18,7 @@ spec:
spec:
containers:
- name: searxng
image: searxng/searxng@sha256:9438a9be3df82652ebc804a2ace2ab335704d92a6dc0e5b29d771acd404e9f6c
image: searxng/searxng@sha256:0e0493d1bff9ed55f774709c9113185aa3da0db3aea84bf86b356e97a21d54c6
ports:
- containerPort: 8080
env:

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: semaphore-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 2Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -40,7 +40,7 @@ spec:
subPath: db
containers:
- name: semaphore
image: public.ecr.aws/semaphore/pro/server:v2.16.31
image: public.ecr.aws/semaphore/pro/server:v2.16.34
ports:
- containerPort: 3000
envFrom:

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: sonarr-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 5Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: speedtest-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 100Mi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: vaultwarden-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -22,14 +22,6 @@ metadata:
labels:
name: monitoring
---
kind: Namespace
apiVersion: v1
metadata:
name: ceph
labels:
name: ceph
---
kind: Namespace
apiVersion: v1

View File

@@ -1,6 +1,6 @@
---
# This manifest was generated by flux. DO NOT EDIT.
# Flux Version: v2.7.1
# Flux Version: v2.7.2
# Components: source-controller,kustomize-controller,helm-controller,notification-controller
apiVersion: v1
kind: Namespace
@@ -8,7 +8,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
pod-security.kubernetes.io/warn: restricted
pod-security.kubernetes.io/warn-version: latest
name: flux-system
@@ -19,7 +19,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: allow-egress
namespace: flux-system
spec:
@@ -39,7 +39,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: allow-scraping
namespace: flux-system
spec:
@@ -59,7 +59,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: allow-webhooks
namespace: flux-system
spec:
@@ -78,7 +78,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: critical-pods-flux-system
namespace: flux-system
spec:
@@ -98,7 +98,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: crd-controller-flux-system
rules:
- apiGroups:
@@ -204,7 +204,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
rbac.authorization.k8s.io/aggregate-to-admin: "true"
rbac.authorization.k8s.io/aggregate-to-edit: "true"
name: flux-edit-flux-system
@@ -230,7 +230,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
rbac.authorization.k8s.io/aggregate-to-admin: "true"
rbac.authorization.k8s.io/aggregate-to-edit: "true"
rbac.authorization.k8s.io/aggregate-to-view: "true"
@@ -255,7 +255,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: cluster-reconciler-flux-system
roleRef:
apiGroup: rbac.authorization.k8s.io
@@ -275,7 +275,7 @@ metadata:
labels:
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: crd-controller-flux-system
roleRef:
apiGroup: rbac.authorization.k8s.io
@@ -313,7 +313,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: buckets.source.toolkit.fluxcd.io
spec:
group: source.toolkit.fluxcd.io
@@ -1084,7 +1084,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: externalartifacts.source.toolkit.fluxcd.io
spec:
group: source.toolkit.fluxcd.io
@@ -1280,7 +1280,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: gitrepositories.source.toolkit.fluxcd.io
spec:
group: source.toolkit.fluxcd.io
@@ -2234,7 +2234,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: helmcharts.source.toolkit.fluxcd.io
spec:
group: source.toolkit.fluxcd.io
@@ -2960,7 +2960,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: helmrepositories.source.toolkit.fluxcd.io
spec:
group: source.toolkit.fluxcd.io
@@ -3591,7 +3591,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: ocirepositories.source.toolkit.fluxcd.io
spec:
group: source.toolkit.fluxcd.io
@@ -4417,7 +4417,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: source-controller
namespace: flux-system
---
@@ -4428,7 +4428,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: source-controller
namespace: flux-system
@@ -4449,7 +4449,7 @@ metadata:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: source-controller
namespace: flux-system
@@ -4470,11 +4470,11 @@ spec:
app.kubernetes.io/component: source-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
spec:
containers:
- args:
- --events-addr=http://notification-controller.flux-system.svc.cluster.local./
- --events-addr=http://notification-controller.$(RUNTIME_NAMESPACE).svc.cluster.local./
- --watch-all-namespaces=true
- --log-level=info
- --log-encoding=json
@@ -4493,7 +4493,7 @@ spec:
resourceFieldRef:
containerName: manager
resource: limits.memory
image: ghcr.io/fluxcd/source-controller:v1.7.1
image: ghcr.io/fluxcd/source-controller:v1.7.2
imagePullPolicy: IfNotPresent
livenessProbe:
httpGet:
@@ -4557,7 +4557,7 @@ metadata:
app.kubernetes.io/component: kustomize-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: kustomizations.kustomize.toolkit.fluxcd.io
spec:
group: kustomize.toolkit.fluxcd.io
@@ -5927,7 +5927,7 @@ metadata:
app.kubernetes.io/component: kustomize-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: kustomize-controller
namespace: flux-system
---
@@ -5938,7 +5938,7 @@ metadata:
app.kubernetes.io/component: kustomize-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: kustomize-controller
namespace: flux-system
@@ -5957,11 +5957,11 @@ spec:
app.kubernetes.io/component: kustomize-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
spec:
containers:
- args:
- --events-addr=http://notification-controller.flux-system.svc.cluster.local./
- --events-addr=http://notification-controller.$(RUNTIME_NAMESPACE).svc.cluster.local./
- --watch-all-namespaces=true
- --log-level=info
- --log-encoding=json
@@ -5976,7 +5976,7 @@ spec:
resourceFieldRef:
containerName: manager
resource: limits.memory
image: ghcr.io/fluxcd/kustomize-controller:v1.7.0
image: ghcr.io/fluxcd/kustomize-controller:v1.7.1
imagePullPolicy: IfNotPresent
livenessProbe:
httpGet:
@@ -6033,7 +6033,7 @@ metadata:
app.kubernetes.io/component: helm-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: helmreleases.helm.toolkit.fluxcd.io
spec:
group: helm.toolkit.fluxcd.io
@@ -8664,7 +8664,7 @@ metadata:
app.kubernetes.io/component: helm-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: helm-controller
namespace: flux-system
---
@@ -8675,7 +8675,7 @@ metadata:
app.kubernetes.io/component: helm-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: helm-controller
namespace: flux-system
@@ -8694,11 +8694,11 @@ spec:
app.kubernetes.io/component: helm-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
spec:
containers:
- args:
- --events-addr=http://notification-controller.flux-system.svc.cluster.local./
- --events-addr=http://notification-controller.$(RUNTIME_NAMESPACE).svc.cluster.local./
- --watch-all-namespaces=true
- --log-level=info
- --log-encoding=json
@@ -8713,7 +8713,7 @@ spec:
resourceFieldRef:
containerName: manager
resource: limits.memory
image: ghcr.io/fluxcd/helm-controller:v1.4.1
image: ghcr.io/fluxcd/helm-controller:v1.4.2
imagePullPolicy: IfNotPresent
livenessProbe:
httpGet:
@@ -8770,7 +8770,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: alerts.notification.toolkit.fluxcd.io
spec:
group: notification.toolkit.fluxcd.io
@@ -9160,7 +9160,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: providers.notification.toolkit.fluxcd.io
spec:
group: notification.toolkit.fluxcd.io
@@ -9572,7 +9572,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: receivers.notification.toolkit.fluxcd.io
spec:
group: notification.toolkit.fluxcd.io
@@ -10049,7 +10049,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
name: notification-controller
namespace: flux-system
---
@@ -10060,7 +10060,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: notification-controller
namespace: flux-system
@@ -10081,7 +10081,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: webhook-receiver
namespace: flux-system
@@ -10102,7 +10102,7 @@ metadata:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
control-plane: controller
name: notification-controller
namespace: flux-system
@@ -10121,7 +10121,7 @@ spec:
app.kubernetes.io/component: notification-controller
app.kubernetes.io/instance: flux-system
app.kubernetes.io/part-of: flux
app.kubernetes.io/version: v2.7.1
app.kubernetes.io/version: v2.7.2
spec:
containers:
- args:
@@ -10139,7 +10139,7 @@ spec:
resourceFieldRef:
containerName: manager
resource: limits.memory
image: ghcr.io/fluxcd/notification-controller:v1.7.2
image: ghcr.io/fluxcd/notification-controller:v1.7.3
imagePullPolicy: IfNotPresent
livenessProbe:
httpGet:

View File

@@ -9,7 +9,7 @@ spec:
chart:
spec:
chart: cert-manager
version: "v1.18.2"
version: "v1.19.0"
sourceRef:
kind: HelmRepository
name: jetstack

View File

@@ -9,7 +9,7 @@ spec:
chart:
spec:
chart: csi-driver-smb
version: "1.18.0"
version: "1.19.1"
sourceRef:
kind: HelmRepository
name: csi-driver-smb

View File

@@ -28,4 +28,4 @@ spec:
enabled: false
service:
ui:
type: LoadBalancer
type: ClusterIP

View File

@@ -9,7 +9,7 @@ spec:
chart:
spec:
chart: prometheus
version: "27.35.0"
version: "27.40.1"
sourceRef:
kind: HelmRepository
name: prometheus-community

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: drone-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: open-webui-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 5Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim

View File

@@ -17,7 +17,7 @@ spec:
spec:
containers:
- name: open-webui
image: ghcr.io/open-webui/open-webui:0.6.32
image: ghcr.io/open-webui/open-webui:0.6.33
ports:
- containerPort: 8080
env:

View File

@@ -1,18 +1,3 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: ollama-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 20Gi
storageClassName: csi-rbd-sc
---
apiVersion: v1
kind: PersistentVolumeClaim