-
779ed3d563
remove trivy-operator
main
Davide Piu
2026-02-20 00:36:50 +00:00
-
b95a574d73
remove velero
Davide Piu
2026-02-20 00:18:38 +00:00
-
5e55c0e277
encrypt crowdsec bouncer key with SOPS + variable substitution
Davide Piu
2026-02-20 00:17:40 +00:00
-
75f8c6d5d8
fix: correct CrowdSec LAPI service name for bouncer
Davide Piu
2026-02-19 23:54:16 +00:00
-
d19ede0559
feat: enable CrowdSec Traefik bouncer on all ingresses
Davide Piu
2026-02-19 23:53:00 +00:00
-
d628dd2c67
fix: allow CrowdSec intra-namespace traffic (agent -> LAPI)
Davide Piu
2026-02-19 23:49:57 +00:00
-
129efb39ad
fix: revert to one_factor - 2FA needs SMTP notifier to work
Davide Piu
2026-02-19 23:45:13 +00:00
-
133312a284
feat: replace Uptime Kuma with Gatus
Davide Piu
2026-02-19 23:43:53 +00:00
-
dd74cc05fd
fix: Velero kubectl image and AWS plugin version
Davide Piu
2026-02-19 23:31:48 +00:00
-
08eb8255a8
sec: new Authelia password + enforce 2FA for all services
Davide Piu
2026-02-19 23:24:26 +00:00
-
51bcdebca8
feat: add SOPS encrypted secrets and enable Flux decryption
Davide Piu
2026-02-19 23:20:58 +00:00
-
914890b339
feat: protect Uptime Kuma and Weave GitOps with Authelia ForwardAuth
Davide Piu
2026-02-19 23:18:38 +00:00
-
bc89216548
fix: allow ACME solver port 8089 in Authelia NetworkPolicy
Davide Piu
2026-02-19 23:13:32 +00:00
-
a5c1772e4e
fix: mount users_database.yml in Authelia pod
Davide Piu
2026-02-19 23:10:57 +00:00
-
0d0fd95991
feat: deploy Wave 2 - CrowdSec + Velero
Davide Piu
2026-02-19 23:06:26 +00:00
-
d59ac2a933
sec: disable Vaultwarden open signups, add admin token
Davide Piu
2026-02-19 22:58:29 +00:00
-
b69cc16002
fix: remove Authelia default_redirection_url conflicting with authelia_url
Davide Piu
2026-02-19 22:56:50 +00:00
-
98e073ad82
fix: correct Authelia and Trivy Operator chart values
Davide Piu
2026-02-19 22:49:35 +00:00
-
c2a803d28b
feat: deploy Wave 1 - Vaultwarden, Uptime Kuma, Trivy Operator, Authelia
Davide Piu
2026-02-19 22:44:34 +00:00
-
232957ac4a
Fix podinfo manifest - correct resource names
davide
2026-02-19 22:05:11 +00:00
-
5f396f9b4f
Fix podinfo service name in Ingress
davide
2026-02-19 22:02:33 +00:00
-
e37a076f12
Fix podinfo: create namespace before Ingress
davide
2026-02-19 22:01:19 +00:00
-
06999bc9c9
Replace Online Boutique with podinfo
davide
2026-02-19 21:56:55 +00:00
-
ecad6a561f
Add HTTP to HTTPS redirect for all ingresses
davide
2026-02-19 21:51:24 +00:00
-
4d08d945a4
Add NetworkPolicy to allow Traefik ingress into flux-system namespace
Davide Piu
2026-02-19 21:47:16 +00:00
-
b2f825fcd6
Add password hash for Weave GitOps
davide
2026-02-19 21:11:05 +00:00
-
af2cd6d00d
Add Weave GitOps dashboard + Online Boutique Ingress via GitOps
davide
2026-02-19 21:08:20 +00:00
-
3795c1a3f2
Fix camelCase keys for Online Boutique values
davide
2026-02-19 20:57:36 +00:00
-
74d6898af7
Reduce resource requests for 2-core VPS
davide
2026-02-19 20:52:45 +00:00
-
a0aa4ea137
Fix Online Boutique: use GitRepository source
davide
2026-02-19 20:49:26 +00:00
-
842b63b45a
Add Online Boutique HelmRelease
davide
2026-02-19 20:47:07 +00:00
-
b38b383ca6
Add Flux sync manifests
Flux
2026-02-19 20:46:12 +00:00
-
05f0b1f436
Add Flux v2.7.5 component manifests
Flux
2026-02-19 20:46:08 +00:00
-
538f714e5c
Initial commit
davide
2026-02-19 20:45:46 +00:00