Configuration for my self-hosted software deployed to Kubernetes.
Go to file
Rob Watson f31590408f chore: update ingress-nginx 2023-07-16 08:40:38 +02:00
cert-manager Add Kustomize-managed ClusterIssuer 2022-11-14 06:55:46 +01:00
deploy chore: update ingress-nginx 2023-07-16 08:40:38 +02:00
kind Add solar-toolkit-gateway configuration 2022-07-13 22:33:45 +02:00
.gitignore Add basic Kustomize build flow 2022-05-05 22:52:43 +02:00
LICENSE Add LICENSE 2022-06-06 21:46:41 +02:00
README.md Config updates 2023-03-21 02:37:42 +01:00
picture.jpg Update README 2022-05-05 23:00:30 +02:00

README.md

Netflux on Kubernetes

This is a learning project to migrate the self-hosted services that I host at netflux.io to Kubernetes.

Me deploying my blog on Kubernetes

This repository contains the Kubernetes manifests, which are built using Kustomize. Helm chart dependencies are inflated and managed in this repository to improve observability. The cluster is deployed to DigitalOcean managed K8S in production, but can be easily applied to a local cluster for testing.

Building

The manifests can be built with:

make dev

and applied with:

make dev | kubectl apply -f -

Helm charts

When required, helm charts can be inflated with:

# install or update the prometheus helm chart:
make inflate name=prometheus chart=prometheus-community/prometheus

An optional values file can be provided in deploy/base/values/prometheus.yaml (update the helm chart name accordingly).

Cluster setup

cert-manager

cert-manager should only be installed in production. It is not managed inside this repository.

See: https://cert-manager.io/docs/installation/helm/

helm repo add jetstack https://charts.jetstack.io
helm repo up
helm install cert-manager jetstack/cert-manager --namespace cert-manager --create-namespace --version v1.8.0 --set installCRDs=true

# create issuers
kubectl apply -f cert-manager/issuer-staging.yml
kubectl apply -f cert-manager/issuer-production.yml

This should be sufficient for cert-manager to issue certificates automatically when the tls.enabled value is set to true.

Manual installations

The following installations are not defined in this repo.