This website requires JavaScript.
Explore
Help
Register
Sign In
rock
/
homelab
Watch
1
Star
0
Fork
0
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
052f235d7bcf4fd96071a0a0c10ba78bbf6ac251
homelab
/
k8s
/
infra
T
History
Story Crater Bot
afb9b35292
fix(agent-pod): remote tui session for multi-agent
2026-08-18 15:08:04 -07:00
..
databases
refactor(k8s): consolidate to infra/+apps/ single-source tree, dedicated per-app CNPG (authentik-db/temporal-db), wire monitoring-config, forgejo→cicd ns, drop orphan/stale (data-schemas, ollama, story-crater, sqs/argocd, key-rotation)
2026-08-18 15:08:03 -07:00
forgejo-runner
fix(forgejo-runner): cicd ns PSS privileged (dind needs it) + mount homelab-ca as ConfigMap not Secret — runner RS created 0 pods under baseline PSS, then FailedMount because homelab-ca is a ConfigMap trust bundle, not a Secret
2026-08-18 15:08:04 -07:00
iam
fix(authentik): label argocd oidc-secret part-of=argocd — argocd's $secret substitution only reads labelled Secrets; without it OIDC login failed with oauth2 invalid_client (empty client_secret to IdP)
2026-08-18 15:08:04 -07:00
logging
fix(grafana): add email/login/name_attribute_path for Authentik OIDC — Grafana was falling back to GitHub-style <api_url>/emails (404 'Error getting email address'), breaking OAuth login; read identity from userinfo claims instead
2026-08-18 15:08:04 -07:00
longhorn
fix(agent-pod): remote tui session for multi-agent
2026-08-18 15:08:04 -07:00
minio
refactor(argocd): replace SOPS CMP with ksops kustomize generator, rotate age key — CMP discover glob silently shadowed kustomize rendering of any app whose path held a .enc.yaml (MinIO Tenant/cloudflared/authentik jobs never applied); centralize 8 Secret manifests under k8s/argocd/secrets, defer 4 helm-values fragments
2026-08-18 15:08:04 -07:00
monitoring
fix(agent-pod): remote tui session for multi-agent
2026-08-18 15:08:04 -07:00