feat: readeck

This commit is contained in:
auricom
2024-07-11 21:47:52 +02:00
parent d351409699
commit 0b5f3b23ad
5 changed files with 163 additions and 0 deletions

View File

@@ -45,6 +45,7 @@ resources:
- ./pushover-notifier/ks.yaml
- ./qbittorrent/ks.yaml
- ./radarr/ks.yaml
- ./readeck/ks.yaml
- ./recyclarr/ks.yaml
- ./redlib/ks.yaml
- ./sabnzbd/ks.yaml

View File

@@ -0,0 +1,28 @@
---
# yaml-language-server: $schema=https://kubernetes-schemas.devbu.io/external-secrets.io/externalsecret_v1beta1.json
apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret
metadata:
name: readeck
namespace: default
spec:
secretStoreRef:
kind: ClusterSecretStore
name: onepassword-connect
target:
name: readeck-secret
template:
data:
# App
READECK_DATABASE_SOURCE: postgres://{{ .READECK__POSTGRES_USER }}:{{ .READECK__POSTGRES_PASSWORD }}@postgres16-rw.database.svc.cluster.local:5432/readeck
# Postgres Init
INIT_POSTGRES_DBNAME: readeck
INIT_POSTGRES_HOST: postgres16-rw.database.svc.cluster.local
INIT_POSTGRES_USER: "{{ .READECK__POSTGRES_USER }}"
INIT_POSTGRES_PASS: "{{ .READECK__POSTGRES_PASSWORD }}"
INIT_POSTGRES_SUPER_PASS: "{{ .POSTGRES_SUPER_PASS }}"
dataFrom:
- extract:
key: cloudnative-pg
- extract:
key: readeck

View File

@@ -0,0 +1,96 @@
---
# yaml-language-server: $schema=https://raw.githubusercontent.com/bjw-s/helm-charts/main/charts/other/app-template/schemas/helmrelease-helm-v2beta2.schema.json
apiVersion: helm.toolkit.fluxcd.io/v2
kind: HelmRelease
metadata:
name: &app readeck
namespace: default
spec:
interval: 30m
chart:
spec:
chart: app-template
version: 3.2.1
sourceRef:
kind: HelmRepository
name: bjw-s
namespace: flux-system
maxHistory: 2
install:
createNamespace: true
remediation:
retries: 3
upgrade:
cleanupOnFail: true
remediation:
strategy: rollback
retries: 3
uninstall:
keepHistory: false
values:
controllers:
readeck:
annotations:
reloader.stakater.com/auto: "true"
initContainers:
init-db:
image:
repository: ghcr.io/onedr0p/postgres-init
tag: 16
envFrom: &envFrom
- secretRef:
name: readeck-secret
containers:
app:
image:
repository: codeberg.org/readeck/readeck
tag: 0.13.2@sha256:53902fb139dbf9c5443f7332901a1de18f408344a6a3c34907c015aa3441bb84
env:
TZ: "${TIMEZONE}"
READECK_LOG_LEVEL: info
READECK_DEV_MODE: "false"
READECK_SERVER_HOST: 0.0.0.0
READECK_SERVER_PORT: &port "8080"
READECK_SERVER_PREFIX: /
READECK_USE_X_FORWARDED: "true"
READECK_ALLOWED_HOSTS: &host "{{ .Release.Name }}.${SECRET_EXTERNAL_DOMAIN}"
envFrom: *envFrom
resources:
requests:
cpu: 10m
memory: 128Mi
limits:
memory: 2000Mi
service:
app:
controller: *app
ports:
http:
port: *port
ingress:
app:
enabled: true
className: nginx
annotations:
# nginx.ingress.kubernetes.io/auth-method: GET
# nginx.ingress.kubernetes.io/auth-url: http://authelia.default.svc.cluster.local.:8888/api/verify
# nginx.ingress.kubernetes.io/auth-signin: https://auth.${SECRET_EXTERNAL_DOMAIN}?rm=$request_method
# nginx.ingress.kubernetes.io/auth-response-headers: Remote-User,Remote-Name,Remote-Groups,Remote-Email
# nginx.ingress.kubernetes.io/auth-snippet: proxy_set_header X-Forwarded-Method $request_method;
hajimari.io/icon: mdi:fa-book
hosts:
- host: *host
paths:
- path: /
service:
identifier: app
port: http
tls:
- hosts:
- *host
persistence:
config:
enabled: true
existingClaim: *app
globalMounts:
- path: /config

View File

@@ -0,0 +1,10 @@
---
# yaml-language-server: $schema=https://raw.githubusercontent.com/SchemaStore/schemastore/master/src/schemas/json/kustomization.json
apiVersion: kustomize.config.k8s.io/v1beta1
kind: Kustomization
namespace: default
resources:
- ./externalsecret.yaml
- ./helmrelease.yaml
- ../../../../templates/gatus/guarded
- ../../../../templates/volsync

View File

@@ -0,0 +1,28 @@
---
# yaml-language-server: $schema=https://raw.githubusercontent.com/fluxcd-community/flux2-schemas/main/kustomization-kustomize-v1.json
apiVersion: kustomize.toolkit.fluxcd.io/v1
kind: Kustomization
metadata:
name: &app readeck
namespace: flux-system
spec:
targetNamespace: default
commonMetadata:
labels:
app.kubernetes.io/name: *app
dependsOn:
- name: rook-ceph-cluster
- name: volsync
path: ./kubernetes/apps/default/readeck/app
prune: true
sourceRef:
kind: GitRepository
name: home-ops-kubernetes
wait: false
interval: 30m
retryInterval: 1m
timeout: 5m
postBuild:
substitute:
APP: *app
VOLSYNC_CAPACITY: 2Gi