renovate
6b901854da
Update litestream/litestream Docker tag to v0.5.15
CI / Terraform fmt + validate (pull_request) Successful in 26s
CI / Nomad job spec validate (pull_request) Successful in 21s
CI / Docker image pull validation (pull_request) Successful in 19s
2026-07-22 04:01:06 +00:00
othrayte
e695485353
improve health checks across all nomad job specs
...
CI / Terraform fmt + validate (pull_request) Successful in 27s
CI / Nomad job spec validate (pull_request) Successful in 22s
CI / Docker image pull validation (pull_request) Successful in 16s
CI / Nomad job spec validate (push) Successful in 22s
CI / Docker image pull validation (push) Has been skipped
CI / Terraform fmt + validate (push) Successful in 23s
- traefik: TCP → HTTP check on /ping (enable ping entrypoint)
- gitea: check path → /api/healthz
- jellyfin: TCP → HTTP check on /health
- glance: TCP → HTTP check on /
- sonarr/prowlarr: check path / → /ping (×2 checks each)
- ntfy/transfer/deluge/openreader/authelia/pgadmin: add name and port to existing checks
- postgres: remove invalid TCP check (Connect-enabled service)
- unifi: TCP → script check via curl (macvlan host isolation workaround)
2026-05-26 20:12:23 +10:00
othrayte
8e32d00d90
ci: add Docker image pull validation job (Phase 2)
...
CI / Docker image pull validation (pull_request) Successful in 14s
CI / Nomad job spec validate (push) Successful in 30s
CI / Docker image pull validation (push) Has been skipped
CI / Terraform fmt + validate (pull_request) Successful in 20s
CI / Nomad job spec validate (pull_request) Successful in 24s
CI / Terraform fmt + validate (push) Successful in 21s
- Add image-pull job to .gitea/workflows/ci.yml that detects image
changes in *.nomad.hcl files on PRs and pulls each changed image
- Remove act-runner labels config — default runner already uses
docker.gitea.com/runner-images:ubuntu-latest which has docker CLI
- Remove CONFIG_FILE env var from act-runner (no longer needed)
- Mark Phase 2 complete in cicd-plan.md
2026-04-19 18:06:17 +10:00
othrayte
1b73fda11f
ci: add nomad job validate step (Phase 1c)
CI / Nomad job spec validate (pull_request) Successful in 16s
CI / Terraform fmt + validate (pull_request) Successful in 20s
CI / Terraform fmt + validate (push) Successful in 23s
CI / Nomad job spec validate (push) Successful in 16s
2026-04-19 14:52:02 +10:00
othrayte
96ddfa6ec5
Add Gitea act-runner and test actions for the repo
CI / Terraform fmt + validate (push) Successful in 24s
2026-04-19 14:20:18 +10:00
othrayte
6c0b1c9281
Add CI/CD plan documentation outlining phases for validation and deployment
2026-04-18 17:34:11 +10:00
othrayte
4f2934411b
Add GitHub token to renovate configuration so it can pull release notes
2026-04-18 16:45:35 +10:00
othrayte
54dbe0c667
Cleanup diun references from ntfy, diun was never actually committed
2026-04-18 16:44:44 +10:00
othrayte
a30e60b557
Add custom managers to renovate.json for Docker image updates
2026-04-18 16:15:18 +10:00
renovate and othrayte
2536e855e5
Add renovate.json
2026-04-18 16:14:43 +10:00
othrayte
dbe11dc8fa
Add renovate and ntfy (unrelated)
2026-04-18 16:14:43 +10:00
othrayte
b27f3e58ca
Add openreader
2026-04-18 11:37:18 +10:00
othrayte
5b3f2cf8f4
Move frigate into the cluster and enable GPU detector
2026-03-28 17:13:09 +11:00
othrayte
68cf58ead5
Remove some state moved declarations
2025-11-20 23:45:56 +11:00
othrayte
d3ac8a252b
Make appdata and unraid smb modules to reduce duplication
2025-11-20 23:45:16 +11:00
othrayte
961ec128f1
Setup prowlarr
2025-11-19 20:49:05 +11:00
othrayte
d84eb73db0
Connect sonarr to deluge
2025-11-19 20:46:38 +11:00
othrayte
a3eaab5a07
Add deluge bittorrent client
2025-11-10 23:27:50 +11:00
othrayte
cf4daacab5
Add jellyfin
...
Customised the forward auth in authelia to ignore Authorization headers as authelia was failing to parse the Authorization: MediaBrowser headers that jellyfin uses.
2025-11-10 19:24:21 +11:00
othrayte
2a038e59e8
Add sonarr
2025-11-09 15:51:25 +11:00
othrayte
443d614a66
Use the hostname for the unraid server rather than the IP
2025-11-07 19:42:38 +11:00
othrayte
2803f694e8
Add Unifi Network
2025-11-06 19:30:42 +11:00
othrayte
bbff0f6692
Remove no longer used teams status job
2025-10-22 22:05:25 +11:00
othrayte
bd815e96c6
Complete migration now that the changes are applied.
2025-10-22 22:04:37 +11:00
othrayte
92f60a7572
Sort parts of the nomad intra into folders
...
This should make finding things easier
2025-10-22 22:02:25 +11:00
othrayte
8869bd1cb2
Stop terraform thinking some settings are inconsistent
2025-10-21 21:47:39 +11:00
othrayte
c473ef68fd
Move secrets to subfolder
2025-10-21 21:47:05 +11:00
othrayte
fd7fdd00f3
Add more nodes and update them all to the latest config
2025-10-21 21:41:15 +11:00
othrayte
8a375c0133
Remove noauth setting that is probably wrong as it doesn't work
2025-10-21 21:35:35 +11:00
othrayte
7302842add
Refine install instructions
2025-10-20 20:52:15 +11:00
othrayte
50cddcd033
Add new servers to consul retry join list
2025-10-20 20:51:22 +11:00
othrayte
307f27a10b
Use ipv4 for nomad and consul to reduce connectivity issues on my network
2025-10-20 20:25:58 +11:00
othrayte
700046cfd1
Remove unused strip-magic-token middleware from Traefik configuration
2025-10-20 20:25:19 +11:00
othrayte
c3f25d1bc5
Prepare for adding LattePanda IOTA based cluster hosts.
...
This required the option to configure the available CPU as nomad assumes that we should only allocate based on the base CPU frequency but the N150 reports 800Mhz base but has a boost frequency more than 4x higher at 3.6GHz which would leave the CPU under utilised, instead we allocate at 1.8GHz (x4 cores).
2025-10-15 23:38:11 +11:00
othrayte
cdf2a6b72e
Fixup: traefik requires the certificate secrets to be protected. Made the same change on the actual storage host.
2025-10-14 22:07:48 +11:00
othrayte
f7c2752192
Explicitly enable info level logging in traefik to make it easier to find where to set it to debug level
2025-10-14 20:11:56 +11:00
othrayte
bf98fb84be
Make sure there is always one traefik instance up when changing the configuration so we can still access nomad via it
2025-10-14 20:11:22 +11:00
othrayte
2d931f9cfa
Add kopia access to traefik
2025-10-14 20:10:32 +11:00
othrayte
3cc6f4827d
Route to traefik directly via localhost due to in ability to route via the external port
2025-10-13 21:23:42 +11:00
othrayte
4a5ad8d36b
Setup storage of immich resouces and add tailscale access to allow uploading files too large to go over cloudflare (<100mb) See https://github.com/immich-app/immich/issues/17729 and https://github.com/immich-app/immich/pull/22385
2025-10-13 20:48:35 +11:00
othrayte
e6c6bb0c91
Resolve authelia via consul service mesh
2025-10-12 20:58:58 +11:00
othrayte
e2562ce4b0
Add an immich server
2025-10-11 14:54:07 +11:00
othrayte
b53bfe4075
Improve resilience by changing routing to traefik and setting up more servers.
...
Some changes were required to set 3 VMs as the cluster since the NUC failed and we are waiting for new hardware to arrive.
The ingest routing from the internet was changed to use cloudflared tunnel to traefik instead of via a specific host.
2025-10-11 14:46:06 +11:00
othrayte
7f3161b2bb
Add magic token domain for hass to allow app access
2025-10-04 14:36:58 +10:00
othrayte
facc3c64b2
Route frigate.othrayte.one to internal frigate instance
2025-10-04 14:18:16 +10:00
othrayte
d64fec4bc0
Disable Nomad job configuration for Teams Status
2025-10-04 13:58:44 +10:00
othrayte
8b234b8322
Fix bug in teams status (was fixed long ago)
2025-10-04 13:51:26 +10:00
othrayte
612d322c4f
Update session management settings for Authelia: extend inactivity duration, adjust expiration time, and set remember_me period.
2025-10-04 13:46:56 +10:00
othrayte
bc2bd41018
Add camera locations and IP addresses to documentation
2025-10-04 13:46:29 +10:00
othrayte
786b2c6670
Switch from tailscale authkeys to an oauth client to fix issues with key expirey
2025-09-06 22:17:24 +10:00