269 Commits

Author SHA1 Message Date
f25de5e71a Try clean harbor 2026-03-22 05:43:11 +02:00
07797d7618 Phase 1: Configure Harbor with Cloudflare Origin Certificate
- Remove cert-manager annotation (manual TLS secret)
- Reference harbor-ingress secret (Cloudflare Origin CA)
- Keep stable resource names for clean March 23 switchover
- Cloudflare-trusted certificate enables proxy mode

Phase 2 (March 23): Add cert-manager annotation back for Let's Encrypt
2026-03-22 01:01:10 +02:00
a76c330d32 fix: Switch Harbor to Let's Encrypt staging to bypass rate limit
Rate limit error: 429 too many certificates (5) issued for harbor.dvirlabs.com
Must wait until March 23, 2026 07:00:21 UTC before using production again.

Changes:
- Created letsencrypt-staging ClusterIssuer
- Updated Harbor to use staging issuer temporarily
- Deleted failed certificate resources

After March 23, change cert-manager.io/cluster-issuer back to 'letsencrypt'
2026-03-22 00:00:59 +02:00
798d50ebb0 fix: Configure Harbor to use cert-manager instead of auto-generated certs
- Change Harbor certSource from 'auto' to 'secret'
- Reference stable secret name: harbor-ingress
- Keep cert-manager.io/cluster-issuer annotation for auto certificate management
- Remove harbor-ingress-v2 workaround name
- Add cleanup script and documentation

This fixes IncorrectIssuer error where Harbor's self-signed CA
conflicted with cert-manager's Let's Encrypt certificate management.

Resolves:
- 502 errors due to TLS configuration conflict
- Failed ACME order finalization (orderNotReady)
- Certificate stuck in non-Ready state
- Duplicate certificate issuance attempts
2026-03-21 23:56:21 +02:00
af484d51c8 Update harbor tls 2026-03-21 23:18:09 +02:00
fb930fbfdf Update harbor tls 2026-03-21 23:09:23 +02:00
e046b76cf2 Update harbor tls 2026-03-21 22:59:41 +02:00
d9eb8466f7 fix: change Harbor ingress from HTTP to HTTPS entrypoint 2026-03-21 22:19:08 +02:00
0324a73cb8 Update harbor ingress to use internal http and external keeps https 2026-03-21 22:00:28 +02:00
78da4b36e5 fix: remove empty group field from ignoreDifferences for core resources 2026-03-20 01:20:51 +02:00
835aedd928 Ignore pvc on gitea 2026-03-20 01:16:37 +02:00
7d57d12af1 Ignore pvc on gitea 2026-03-20 01:13:44 +02:00
e6fa4ce2a3 Ignore shared storage pvc on gitea 2026-03-19 22:18:30 +02:00
c1aca945b3 Update git to what currrrently run on the clustter 2026-03-19 22:14:27 +02:00
21cdf48d3a Fix gitea out of sync 2026-03-18 12:55:47 +02:00
8307211351 Fix gitea out of sync 2026-03-18 12:53:49 +02:00
9841d6c5dc Fix gitea out of sync 2026-03-18 12:50:31 +02:00
d01e8fe9bf Fix gitea out of sync 2026-03-18 12:01:50 +02:00
31b1d2347c Add label dev-tools 2026-03-18 12:00:00 +02:00
072a4b671f Comment apps 2026-03-18 11:57:22 +02:00
4220e189a9 Comment apps 2026-03-18 11:56:57 +02:00
613d15c095 Update postgres image of planka 2026-03-18 11:35:06 +02:00
a2a20f1683 Update postgres image of planka 2026-03-18 11:33:44 +02:00
6c51e80fc8 Fix DB conn on wiki 2026-03-18 11:25:01 +02:00
5a36e86084 Add nodeselector to wp 2026-03-18 11:20:08 +02:00
52577858a8 Update wp id andsecret 2026-03-18 09:25:18 +02:00
d0f74b039f Fix Harbor storage class and nodeSelector 2026-03-18 09:03:08 +02:00
41dc8891ae Update affinity for wp 2026-03-18 08:52:51 +02:00
37227c168c Update sc for wp 2026-03-18 08:49:20 +02:00
c4ddd1912f Update repo url 2026-03-18 08:47:40 +02:00
8da688ebfd Fix pvc sync 2026-03-18 07:23:21 +02:00
75b7d50f9c Fix pvc sync 2026-03-18 07:21:30 +02:00
bbdc7c4b1e Update repo url for gitea 2026-03-18 07:15:57 +02:00
e1f365912d Update gitea values to use nfs-client sc 2026-03-18 07:13:16 +02:00
ddd4bf1b20 Update valuees 2026-03-18 02:37:51 +02:00
adca82507e Update repo urls 2026-03-16 11:59:48 +02:00
972780ba0f Update repo urls 2026-03-16 11:58:28 +02:00
d578b58246 Disable auto sync on couple apps 2026-03-16 11:55:54 +02:00
b85669a956 Set gitea to nfs instead local path 2026-03-11 06:45:07 +02:00
922f3b5df2 Update wikijs postgres tag 2026-02-11 13:23:24 +02:00
97084e060f update wiki postgres image tag 2026-02-05 17:07:22 +02:00
73cf4d1423 update wiki postgres image tag 2026-02-05 17:04:58 +02:00
c8c78ca0a9 update wiki postgres image tag 2026-02-05 16:57:38 +02:00
cce05b445b Update image for wiki postgres 2026-02-05 16:48:27 +02:00
3ffa602d73 Update woodpecker 2025-12-03 02:12:10 +02:00
3677d54a08 Fix oidc css 2025-10-08 06:14:21 +03:00
861788dac3 Set the correct secret for vault-bootstrap-job 2025-10-06 04:35:40 +03:00
f2051ed79c Fix vault oidc-job 2025-10-06 04:29:02 +03:00
bca20ad827 Fix nintend in oidc-job 2025-10-06 04:24:56 +03:00
51ede03d17 Fix secret path in the job 2025-10-03 17:59:14 +03:00