- Replace all forgejo.riotpiao.com repo URLs with [email protected] SSH URLs - Enables immediate GitOps sync without waiting for Forgejo mirror setup - Includes ingress-nginx now fully ArgoCD-managed (wave 0) - SOPS secrets can now sync and decrypt TLS certificates
43 lines
1.1 KiB
YAML
43 lines
1.1 KiB
YAML
# Wave 0 — Nginx Ingress Controller
|
|
# Foundational infrastructure required for all ingress resources and ArgoCD UI access.
|
|
# Must be wave 0 to ensure LoadBalancer IP is available before other apps deploy.
|
|
---
|
|
apiVersion: argoproj.io/v1alpha1
|
|
kind: Application
|
|
metadata:
|
|
name: ingress-nginx
|
|
namespace: argocd
|
|
annotations:
|
|
argocd.argoproj.io/sync-wave: "0"
|
|
finalizers:
|
|
- resources-finalizer.argocd.argoproj.io
|
|
spec:
|
|
project: homelab
|
|
revisionHistoryLimit: 3
|
|
sources:
|
|
- repoURL: https://kubernetes.github.io/ingress-nginx
|
|
chart: ingress-nginx
|
|
targetRevision: "4.15.1"
|
|
helm:
|
|
valueFiles:
|
|
- $values/k8s/bootstrap/ingress/nginx-values.yaml
|
|
- repoURL: [email protected]:Riotpiaole/riotpiao.homelab.com.git
|
|
targetRevision: main
|
|
ref: values
|
|
destination:
|
|
server: https://kubernetes.default.svc
|
|
namespace: ingress-nginx
|
|
syncPolicy:
|
|
automated:
|
|
prune: true
|
|
selfHeal: true
|
|
syncOptions:
|
|
- CreateNamespace=true
|
|
- ServerSideApply=true
|
|
retry:
|
|
limit: 3
|
|
backoff:
|
|
duration: 10s
|
|
factor: 2
|
|
maxDuration: 3m
|