Compare commits

..

23 Commits

Author SHA1 Message Date
Renovate Bot
8639ca0c1e Update renovate/renovate Docker tag to v41.74.2 2025-08-16 00:04:02 +00:00
2038bd6e0f remove all ports except web
All checks were successful
Renovate / renovate (push) Successful in 7m34s
2025-08-15 18:12:40 +05:30
1a0f9f5417 update secret 2025-08-15 18:09:31 +05:30
6229abb681 name correction 2025-08-15 18:05:38 +05:30
e192aea488 Merge pull request 'Add Kubernetes configurations for Pi-hole deployment, services, and secrets' (#199) from pihole into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/199
2025-08-15 12:33:17 +00:00
8216bc7311 Add Kubernetes configurations for Pi-hole deployment, services, and secrets 2025-08-15 18:02:32 +05:30
f4a915702d Merge pull request 'Update ghcr.io/flaresolverr/flaresolverr Docker tag to v3.3.25' (#133) from renovate/ghcr.io-flaresolverr-flaresolverr-3.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/133
2025-08-15 10:30:06 +00:00
68095c89e5 Merge pull request 'Update postgres Docker tag to v15.14' (#197) from renovate/postgres-15.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/197
2025-08-15 00:22:46 +00:00
76878fd2ab Merge pull request 'Update docker.io/valkey/valkey:8-bookworm Docker digest to d067a06' (#191) from renovate/docker.io-valkey-valkey-8-bookworm into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/191
2025-08-15 00:22:34 +00:00
f63dba6d4c Merge pull request 'Update fallenbagel/jellyseerr Docker tag to v2.7.3' (#192) from renovate/fallenbagel-jellyseerr-2.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/192
2025-08-15 00:22:24 +00:00
4f616ddcae Merge pull request 'Update lscr.io/linuxserver/nextcloud Docker tag to v31.0.8' (#193) from renovate/lscr.io-linuxserver-nextcloud-31.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/193
2025-08-15 00:22:14 +00:00
cc5afa2c8e Merge pull request 'Update docker.io/ghostfolio/ghostfolio Docker tag to v2.191.1' (#194) from renovate/docker.io-ghostfolio-ghostfolio-2.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/194
2025-08-15 00:22:04 +00:00
3a3a138fe8 Merge pull request 'Update ghcr.io/immich-app/immich-machine-learning Docker tag to v1.138.0' (#195) from renovate/ghcr.io-immich-app-immich-machine-learning-1.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/195
2025-08-15 00:21:54 +00:00
84f6eb27cc Merge pull request 'Update ghcr.io/immich-app/immich-server Docker tag to v1.138.0' (#196) from renovate/ghcr.io-immich-app-immich-server-1.x into main
Reviewed-on: https://gitea.akshun-lab.uk/akshun/public-k3s/pulls/196
2025-08-15 00:21:45 +00:00
Renovate Bot
aaf92a34bf Update postgres Docker tag to v15.14 2025-08-15 00:15:22 +00:00
Renovate Bot
de8dfbd82d Update ghcr.io/immich-app/immich-server Docker tag to v1.138.0 2025-08-15 00:15:21 +00:00
Renovate Bot
781b57ed0c Update ghcr.io/immich-app/immich-machine-learning Docker tag to v1.138.0 2025-08-15 00:15:12 +00:00
Renovate Bot
c29af6863d Update docker.io/ghostfolio/ghostfolio Docker tag to v2.191.1 2025-08-15 00:14:59 +00:00
Renovate Bot
e543443763 Update lscr.io/linuxserver/nextcloud Docker tag to v31.0.8 2025-08-15 00:14:43 +00:00
df821cba37 Set PR hourly limit to 0 in renovate configuration 2025-08-15 05:43:11 +05:30
Renovate Bot
e4961ac85d Update fallenbagel/jellyseerr Docker tag to v2.7.3 2025-08-15 00:03:11 +00:00
Renovate Bot
f2116e7d38 Update docker.io/valkey/valkey:8-bookworm Docker digest to d067a06 2025-08-15 00:03:10 +00:00
Renovate Bot
15ace3a06e Update ghcr.io/flaresolverr/flaresolverr Docker tag to v3.3.25 2025-08-13 09:02:57 +00:00
14 changed files with 97 additions and 10 deletions

View File

@@ -13,7 +13,7 @@ jobs:
uses: actions/checkout@v4
- name: Run Renovate
uses: docker://renovate/renovate:41.73.0
uses: docker://renovate/renovate:41.74.2
env:
LOG_LEVEL: info
RENOVATE_TOKEN: ${{ secrets.RENOVATE_TOKEN }}

View File

@@ -18,7 +18,7 @@ spec:
spec:
containers:
- name: flaresolverr
image: ghcr.io/flaresolverr/flaresolverr:v3.3.24
image: ghcr.io/flaresolverr/flaresolverr:v3.3.25
ports:
- containerPort: 8191
env:

View File

@@ -78,7 +78,7 @@ spec:
key: postgres-password
containers:
- name: ghostfolio
image: docker.io/ghostfolio/ghostfolio:2.190.0
image: docker.io/ghostfolio/ghostfolio:2.191.1
securityContext:
capabilities:
drop:

View File

@@ -24,7 +24,7 @@ spec:
mountPath: /var/lib/postgresql/data
containers:
- name: gitea-db
image: postgres:15.13
image: postgres:15.14
ports:
- containerPort: 5432
env:

View File

@@ -15,7 +15,7 @@ spec:
spec:
containers:
- name: redis
image: docker.io/valkey/valkey:8-bookworm@sha256:5b8f8c333bef895c925f56629d6ba90aea95a4f7391f62411e625267c600b19c
image: docker.io/valkey/valkey:8-bookworm@sha256:d067a06d5448c2038de8eb0b9b30749b703d8bec39712b6a11d6a5591770318b
env:
- name: REDIS_HOSTNAME
value: "immich-redis"

View File

@@ -40,7 +40,7 @@ spec:
done
containers:
- name: immich-server
image: ghcr.io/immich-app/immich-server:v1.137.3
image: ghcr.io/immich-app/immich-server:v1.138.0
ports:
- containerPort: 2283
env:
@@ -63,7 +63,7 @@ spec:
- mountPath: /usr/src/app/upload
name: pictures
- name: immich-machine-learning
image: ghcr.io/immich-app/immich-machine-learning:v1.137.3-cuda
image: ghcr.io/immich-app/immich-machine-learning:v1.138.0-cuda
ports:
- containerPort: 3003
env:

View File

@@ -44,7 +44,7 @@ spec:
- name: postgres-data
mountPath: /var/lib/postgresql/data
- name: postgres
image: postgres:15.13
image: postgres:15.14
restartPolicy: Always
env:
- name: POSTGRES_DB

View File

@@ -40,7 +40,7 @@ spec:
key: OPENVPN_USER
containers:
- name: jellyseerr
image: fallenbagel/jellyseerr:2.7.2
image: fallenbagel/jellyseerr:2.7.3
ports:
- containerPort: 5055
env:

View File

@@ -28,7 +28,7 @@ spec:
done
containers:
- name: nextcloud
image: lscr.io/linuxserver/nextcloud:31.0.7
image: lscr.io/linuxserver/nextcloud:31.0.8
ports:
- containerPort: 443
env:

View File

@@ -0,0 +1,14 @@
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: pihole-ceph
namespace: default
spec:
accessModes:
- ReadWriteOnce
volumeMode: Filesystem
resources:
requests:
storage: 1Gi
storageClassName: csi-rbd-sc

View File

@@ -0,0 +1,15 @@
---
apiVersion: v1
kind: Service
metadata:
name: pihole-tcp-service
namespace: default
spec:
type: LoadBalancer
selector:
app: pihole
ports:
- port: 8585
targetPort: 80
protocol: TCP
name: web

View File

@@ -0,0 +1,42 @@
---
apiVersion: apps/v1
kind: Deployment
metadata:
name: pihole
namespace: default
spec:
strategy:
type: Recreate
selector:
matchLabels:
app: pihole
template:
metadata:
labels:
app: pihole
spec:
hostNetwork: true
containers:
- name: pihole
image: pihole/pihole@sha256:2a0985b8a039e6a3496c9076e238e48044d74ca12b18b061f8e4be48d35debf8
securityContext:
capabilities:
add:
- NET_ADMIN
env:
- name: TZ
value: "Asia/Kolkata"
- name: FTLCONF_dns_listeningMode
value: "all"
- name: FTLCONF_webserver_api_password
valueFrom:
secretKeyRef:
name: pihole-secrets
key: api_password
volumeMounts:
- name: pihole-data
mountPath: /etc/pihole
volumes:
- name: pihole-data
persistentVolumeClaim:
claimName: pihole-ceph

View File

@@ -0,0 +1,15 @@
---
apiVersion: bitnami.com/v1alpha1
kind: SealedSecret
metadata:
creationTimestamp: null
name: pihole-secrets
namespace: default
spec:
encryptedData:
api_password: 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
template:
metadata:
name: pihole-secrets
namespace: default
type: Opaque

View File

@@ -3,6 +3,7 @@
"extends": [
"config:recommended"
],
"prHourlyLimit": 0,
"ignorePaths": [
"**/disabled/**"
],