- Migrate all ingress hostnames from *.homelab.local to *.coreworlds.io - Remove broken Traefik certresolver config (cert-manager handles TLS) - Add internal-only IP allowlist middleware for platform services - Add IngressRoutes for ArgoCD, Grafana, Longhorn (LAN-only via middleware) - Seal and add Cloudflare API token for cert-manager DNS-01 challenges - Update cert-manager ClusterIssuers with real email - Update k3s TLS SAN to k3s.coreworlds.io - Rewrite Ubiquiti docs for single-node topology and split-horizon DNS - Fix seal-secret.sh controller name to match Helm release - Add UCG DNS setup script using API key auth
26 lines
528 B
YAML
26 lines
528 B
YAML
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
kind: Kustomization
|
|
resources:
|
|
- ../../base
|
|
patches:
|
|
- target:
|
|
kind: Deployment
|
|
name: api
|
|
patch: |
|
|
apiVersion: apps/v1
|
|
kind: Deployment
|
|
metadata:
|
|
name: api
|
|
spec:
|
|
replicas: 1
|
|
- target:
|
|
kind: Ingress
|
|
name: api
|
|
patch: |
|
|
- op: replace
|
|
path: /spec/rules/0/host
|
|
value: api-preview.coreworlds.io
|
|
- op: replace
|
|
path: /spec/tls/0/hosts/0
|
|
value: api-preview.coreworlds.io
|