Commit Graph

  • 779ed3d563 remove trivy-operator main Davide Piu 2026-02-20 00:36:50 +00:00
  • b95a574d73 remove velero Davide Piu 2026-02-20 00:18:38 +00:00
  • 5e55c0e277 encrypt crowdsec bouncer key with SOPS + variable substitution Davide Piu 2026-02-20 00:17:40 +00:00
  • 75f8c6d5d8 fix: correct CrowdSec LAPI service name for bouncer Davide Piu 2026-02-19 23:54:16 +00:00
  • d19ede0559 feat: enable CrowdSec Traefik bouncer on all ingresses Davide Piu 2026-02-19 23:53:00 +00:00
  • d628dd2c67 fix: allow CrowdSec intra-namespace traffic (agent -> LAPI) Davide Piu 2026-02-19 23:49:57 +00:00
  • 129efb39ad fix: revert to one_factor - 2FA needs SMTP notifier to work Davide Piu 2026-02-19 23:45:13 +00:00
  • 133312a284 feat: replace Uptime Kuma with Gatus Davide Piu 2026-02-19 23:43:53 +00:00
  • dd74cc05fd fix: Velero kubectl image and AWS plugin version Davide Piu 2026-02-19 23:31:48 +00:00
  • 08eb8255a8 sec: new Authelia password + enforce 2FA for all services Davide Piu 2026-02-19 23:24:26 +00:00
  • 51bcdebca8 feat: add SOPS encrypted secrets and enable Flux decryption Davide Piu 2026-02-19 23:20:58 +00:00
  • 914890b339 feat: protect Uptime Kuma and Weave GitOps with Authelia ForwardAuth Davide Piu 2026-02-19 23:18:38 +00:00
  • bc89216548 fix: allow ACME solver port 8089 in Authelia NetworkPolicy Davide Piu 2026-02-19 23:13:32 +00:00
  • a5c1772e4e fix: mount users_database.yml in Authelia pod Davide Piu 2026-02-19 23:10:57 +00:00
  • 0d0fd95991 feat: deploy Wave 2 - CrowdSec + Velero Davide Piu 2026-02-19 23:06:26 +00:00
  • d59ac2a933 sec: disable Vaultwarden open signups, add admin token Davide Piu 2026-02-19 22:58:29 +00:00
  • b69cc16002 fix: remove Authelia default_redirection_url conflicting with authelia_url Davide Piu 2026-02-19 22:56:50 +00:00
  • 98e073ad82 fix: correct Authelia and Trivy Operator chart values Davide Piu 2026-02-19 22:49:35 +00:00
  • c2a803d28b feat: deploy Wave 1 - Vaultwarden, Uptime Kuma, Trivy Operator, Authelia Davide Piu 2026-02-19 22:44:34 +00:00
  • 232957ac4a Fix podinfo manifest - correct resource names davide 2026-02-19 22:05:11 +00:00
  • 5f396f9b4f Fix podinfo service name in Ingress davide 2026-02-19 22:02:33 +00:00
  • e37a076f12 Fix podinfo: create namespace before Ingress davide 2026-02-19 22:01:19 +00:00
  • 06999bc9c9 Replace Online Boutique with podinfo davide 2026-02-19 21:56:55 +00:00
  • ecad6a561f Add HTTP to HTTPS redirect for all ingresses davide 2026-02-19 21:51:24 +00:00
  • 4d08d945a4 Add NetworkPolicy to allow Traefik ingress into flux-system namespace Davide Piu 2026-02-19 21:47:16 +00:00
  • b2f825fcd6 Add password hash for Weave GitOps davide 2026-02-19 21:11:05 +00:00
  • af2cd6d00d Add Weave GitOps dashboard + Online Boutique Ingress via GitOps davide 2026-02-19 21:08:20 +00:00
  • 3795c1a3f2 Fix camelCase keys for Online Boutique values davide 2026-02-19 20:57:36 +00:00
  • 74d6898af7 Reduce resource requests for 2-core VPS davide 2026-02-19 20:52:45 +00:00
  • a0aa4ea137 Fix Online Boutique: use GitRepository source davide 2026-02-19 20:49:26 +00:00
  • 842b63b45a Add Online Boutique HelmRelease davide 2026-02-19 20:47:07 +00:00
  • b38b383ca6 Add Flux sync manifests Flux 2026-02-19 20:46:12 +00:00
  • 05f0b1f436 Add Flux v2.7.5 component manifests Flux 2026-02-19 20:46:08 +00:00
  • 538f714e5c Initial commit davide 2026-02-19 20:45:46 +00:00