17 Commits

Author SHA1 Message Date
81563e5313 chore(deps): update helm release gitea to v12.4.0 2025-10-07 12:02:35 +00:00
10261025a5 Merge pull request 'chore(deps): update helm release argo-cd to v8.5.7' (#18) from renovate/argo-cd-8.x into master
All checks were successful
renovate / renovate (push) Successful in 1m52s
Reviewed-on: #18
2025-09-30 02:22:24 +00:00
bf56417c57 chore(deps): update helm release argo-cd to v8.5.7 2025-09-29 12:21:30 +00:00
cb9c274542 Rebase Gitea Valkey container image
All checks were successful
renovate / renovate (push) Successful in 2m31s
2025-09-25 20:50:18 +10:00
a66f41b7c8 Merge pull request 'chore(deps): update helm release argo-cd to v8.5.6' (#17) from renovate/argo-cd-8.x into master
All checks were successful
renovate / renovate (push) Successful in 3m29s
Reviewed-on: #17
2025-09-23 14:43:52 +00:00
d2e96761bc Merge pull request 'chore(deps): update ghcr.io/fallenbagel/jellyseerr/jellyseerr-chart docker tag to v2.7.0' (#16) from renovate/ghcr.io-fallenbagel-jellyseerr-jellyseerr-chart-2.x into master
Some checks failed
renovate / renovate (push) Has been cancelled
Reviewed-on: #16
2025-09-23 14:43:38 +00:00
fd533a53e2 chore(deps): update ghcr.io/fallenbagel/jellyseerr/jellyseerr-chart docker tag to v2.7.0 2025-09-23 12:01:17 +00:00
d4865ead6c chore(deps): update helm release argo-cd to v8.5.6 2025-09-23 12:00:59 +00:00
c01c151654 Merge pull request 'chore(deps): update helm release sealed-secrets to v2.17.7' (#12) from renovate/sealed-secrets-2.x into master
All checks were successful
renovate / renovate (push) Successful in 53s
Reviewed-on: #12
2025-09-22 02:50:46 +00:00
b90ef3a1d2 chore(deps): update helm release sealed-secrets to v2.17.7 2025-09-22 02:47:16 +00:00
58026303b4 Upgrade ArgoCD
All checks were successful
renovate / renovate (push) Successful in 3m34s
2025-09-22 12:43:40 +10:00
3d2d202ca6 Merge pull request 'chore(deps): update helm release gitea to v12.3.0' (#15) from renovate/gitea-12.x into master
All checks were successful
renovate / renovate (push) Successful in 2m35s
Reviewed-on: #15
Reviewed-by: Danny Bessems <djpbessems@[...]>
2025-09-21 04:40:55 +00:00
3a5f68c308 chore(deps): update helm release gitea to v12.3.0 2025-09-20 12:00:58 +00:00
d919abc6e7 Upgrade Gitea
All checks were successful
renovate / renovate (push) Successful in 1m3s
2025-09-17 10:59:51 +10:00
2181a3ca92 Rebase Gitea act-runner #2
All checks were successful
renovate / renovate (push) Successful in 1m31s
2025-09-17 10:53:19 +10:00
f3390656b2 Mount docker socket in action containers
All checks were successful
renovate / renovate (push) Successful in 4m50s
2025-09-04 12:32:28 +10:00
7263270012 Remove Webtop
Some checks failed
renovate / renovate (push) Has been cancelled
2025-09-04 12:29:50 +10:00
17 changed files with 27 additions and 198 deletions

View File

@@ -22,7 +22,7 @@ spec:
- repoURL: https://dl.gitea.com/charts/
chart: gitea
# targetRevision: 11.0.0
targetRevision: 12.1.1
targetRevision: 12.4.0
helm:
valueFiles:
- $values/services/Gitea/values.yaml

View File

@@ -22,8 +22,10 @@ data:
options: >
--add-host=docker:host-gateway
-v /dev/kvm:/dev/kvm
-v /var/run/docker.sock:/var/run/docker.sock
privileged: true
valid_volumes:
- /dev/kvm
- /var/run/docker.sock
runner:
capacity: 2

View File

@@ -0,0 +1,15 @@
apiVersion: bitnami.com/v1alpha1
kind: SealedSecret
metadata:
creationTimestamp: null
name: gitea-actions-registration-token
namespace: gitea
spec:
encryptedData:
token: AgCfSO12i+bhMyaQo8esgDhnxc61L5VUGnT+L6q3rdfAco/pgKk6ZKS/p5+oTCu24VIGWnKq91IsvMxPTECfHmy6Z2ah8C8HNUCeOIupzz7QMSkGJuF3Gj0dB92bGQC34nGSmtl+Z0EXxfjZobaYmO2gZGHA2Y6FEf45bgb6wE3uxkv48RsWLDN0gW/FbQw837hcHxjx7Ivf5dpZu5Th3bTalKmEyoIlh7RCzsF8IV/I0V9ztJPeBpTRjUAYryVs8JgqrCW5DQQqAeSTRxccdb4Ldj22XsSOzKMXxsWbIOCqJ1arFZF+fhw3ITEnlDAn2N7Hl5keb/D9lleFcQe293f5+g/sfttVeR0G3a6lGrG0OzY2c5+1pH/Dlt+BfVWcdadV1HGqig+ZrAGQmz4XgUlcFhSuTBw+8pjyECsV+ueysi6DuPDiKh03ienc1dZY53yBo+e6QfV9Z0aIEsHheqasbIn1uh9StwqygTO/i7En3aJSBySuuHT3AMmBwKELsHyNQEgtIFocMjDJxOsxIj/3HYDdBzkEFoyx491hZSnV1ceJxN5BcgYMENJ6D/B5i+Srfyzk7AUD4fcuiyrV5ZWnnuHjOG57UlLXIUWBdeXdy2CS9+POltHuq5kGkku71UEJ/MLuZOHM+Iy/AASErsds9roZ1cBf2n4FpUXe+LwGb+RbvrLl1HETW2XnbsFMleiOx2wicvDsQ8CDSv9RVmxVE6TepHSrrDd2Aq+6PjCfkTpcUVhZYQ8s
template:
metadata:
creationTimestamp: null
name: gitea-actions-registration-token
namespace: gitea
type: Opaque

View File

@@ -1,41 +0,0 @@
enabled: true
statefulset:
actRunner:
repository: gitea/act_runner
tag: 0.2.12
dind:
repository: docker
# tag: 25.0.2-dind
tag: 28.3.2-dind
persistence:
size: 1Gi
init:
image:
repository: busybox
tag: "1.37.0"
provisioning:
enabled: false
publish:
repository: bitnami/kubectl
# tag: 1.29.0
tag: 1.33.3
existingSecret: "gitea-actions-registration-token"
existingSecretKey: "token"
giteaRootURL: "https://code.spamasaurus.com"
persistence:
create: false
claimName: csismb-gitea-act
storageClass: csismb-gitea-act
image:
registry: "docker.gitea.com"
repository: gitea
tag: "1.24.2-rootless"

View File

@@ -44,6 +44,11 @@ postgresql-ha:
enabled: false
valkey:
enabled: true
image:
repository: bitnamilegacy/valkey
global:
security:
allowInsecureImages: true
primary:
persistence:
existingClaim: csismb-gitea-cache

View File

@@ -18,7 +18,7 @@ spec:
targetRevision: HEAD
- repoURL: ghcr.io/fallenbagel/jellyseerr
chart: jellyseerr-chart
targetRevision: 2.4.0
targetRevision: 2.7.0
helm:
valueFiles:
- $values/services/PVR/Jellyseerr/values.yaml

View File

@@ -1,4 +0,0 @@
apiVersion: v1
kind: Namespace
metadata:
name: webtop

View File

@@ -1,18 +0,0 @@
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: webtop
namespace: argo-cd
spec:
destination:
namespace: webtop
server: https://kubernetes.default.svc
project: default
syncPolicy:
automated: {}
syncOptions:
- CreateNamespace=true
sources:
- repoURL: https://code.spamasaurus.com/djpbessems/Kubernetes.K3s.installLog
path: services/Webtop
targetRevision: HEAD

View File

@@ -1,18 +0,0 @@
apiVersion: v1
kind: ConfigMap
metadata:
name: init.d-zsh
namespace: webtop
data:
00-zsh.sh: |
#!/bin/bash
# Make sure zsh is installed and available
ZSH_BIN=$(command -v zsh)
if [[ -x "$ZSH_BIN" ]]; then
echo "[webtop] Setting abc's default shell to $ZSH_BIN"
usermod -s "$ZSH_BIN" abc
else
echo "[webtop] zsh not found, skipping chsh"
fi

View File

@@ -1,48 +0,0 @@
apiVersion: apps/v1
kind: Deployment
metadata:
name: webtop
namespace: webtop
labels:
app: webtop
spec:
replicas: 1
selector:
matchLabels:
app: webtop
strategy:
type: Recreate
template:
metadata:
labels:
app: webtop
spec:
containers:
- name: webtop
image: lscr.io/linuxserver/webtop:latest
env:
- name: START_DOCKER
value: "false"
- name: DOCKER_MODS
value: linuxserver/mods:universal-package-install
- name: INSTALL_PACKAGES
value: nano|zsh
- name: TZ
value: Australia/Melbourne
ports:
- name: web
containerPort: 3001
volumeMounts:
- mountPath: /config
name: webtop-config
- mountPath: /custom-cont-init.d/00-zsh.sh
name: webtop-initd
subPath: 00-zsh.sh
volumes:
- name: webtop-config
persistentVolumeClaim:
claimName: webtop-config
- name: webtop-initd
configMap:
name: init.d-zsh
defaultMode: 0700

View File

@@ -1,19 +0,0 @@
apiVersion: traefik.io/v1alpha1
kind: IngressRoute
metadata:
name: webtop
namespace: webtop
spec:
entryPoints:
- websecure
routes:
- match: Host(`remote.spamasaurus.com`)
kind: Rule
services:
- name: webtop
port: 3001
scheme: https
serversTransport: insecure-skip-verify
middlewares:
- name: 2fa-authentication@file
- name: security-headers@file

View File

@@ -1,11 +0,0 @@
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: webtop-config
namespace: webtop
spec:
accessModes:
- ReadWriteOnce
resources:
requests:
storage: 20Gi

View File

@@ -1,16 +0,0 @@
apiVersion: bitnami.com/v1alpha1
kind: SealedSecret
metadata:
creationTimestamp: null
name: smb-credentials
namespace: webtop
spec:
encryptedData:
password: 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
username: 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
template:
metadata:
creationTimestamp: null
name: smb-credentials
namespace: webtop
type: Opaque

View File

@@ -1,7 +0,0 @@
apiVersion: traefik.io/v1alpha1
kind: ServersTransport
metadata:
name: insecure-skip-verify
namespace: webtop
spec:
insecureSkipVerify: true

View File

@@ -1,12 +0,0 @@
apiVersion: v1
kind: Service
metadata:
name: webtop
namespace: webtop
spec:
ports:
- protocol: TCP
name: web
port: 3001
selector:
app: webtop

View File

@@ -11,7 +11,8 @@ spec:
sources:
- repoURL: https://argoproj.github.io/argo-helm
chart: argo-cd
targetRevision: 8.3.3
# targetRevision: 8.1.2
targetRevision: 8.5.7
helm:
valueFiles:
- $values/system/ArgoCD/values.yaml

View File

@@ -13,7 +13,7 @@ spec:
sources:
- repoURL: https://bitnami-labs.github.io/sealed-secrets
chart: sealed-secrets
targetRevision: 2.17.4
targetRevision: 2.17.7
helm:
valueFiles:
- $values/system/SealedSecrets/values.yaml