Viktor Barzin
b242b7586d
[ci skip] Add tier labels to all namespace resources for Kyverno resource governance
...
Added `tier = var.tier` to kubernetes_namespace labels in ~73 service
modules. This enables Kyverno to generate LimitRange defaults,
ResourceQuotas, and PriorityClass injection for all namespaces.
Previously only 11 namespaces had tier labels; now all 80 active
namespaces are labeled. All pods restarted in rolling waves to pick
up the new policies.
2026-02-21 23:38:05 +00:00
Viktor Barzin
8fabc3d49b
[ci skip] Enable HTTP/3 (QUIC) for all ingresses
...
- Add http3.enabled + advertisedPort=443 to Traefik websecure entrypoint
- Add cloudflare_zone_settings_override to enable HTTP/3 for proxied domains
2026-02-07 20:43:49 +00:00
Viktor Barzin
8abb8eddc0
add tier to all deployments [ci skip]
2026-01-10 16:28:14 +00:00
Viktor Barzin
e3387671a8
refactor cloudflared module to make changing between for_each and count easier [ci skip]
2025-12-29 12:22:55 +00:00
Viktor Barzin
a3624f80e0
replace hardcoded namespace with module reference [ci skip]
2025-12-29 10:23:42 +00:00
Viktor Barzin
539928140e
migrate to for_each when defining cloudflare dns records [ci skip]
2025-12-28 21:04:14 +00:00
Viktor Barzin
168f58eecf
increase ttl for keyserver record [ci skip]
2025-12-01 20:40:28 +00:00
Viktor Barzin
85fe5ddeb6
add oracle vps ip record in cf [ci skip]
2025-11-29 11:34:44 +00:00
Viktor Barzin
276217cef9
migrate to mailgun as smtp relay as sendgrid got enshitified [ci skip]
2025-05-31 21:29:36 +00:00
Viktor Barzin
7b9ff3e921
scale cloudflared to 3 replicate for resiliene [ci skip]
2025-04-20 16:20:25 +00:00
Viktor Barzin
0524798594
upgrade cloudflare terraform provider to 4.51 [ci skip]
2025-02-02 18:14:18 +00:00
Viktor Barzin
d0e68769e7
use ingress factory for all hosted ingresses [ci skip]
2025-01-14 22:53:04 +00:00
Viktor Barzin
fb6fe3b8cb
add MX record as we are self hosting mail [ci skip]
2024-12-24 10:55:44 +00:00
Viktor Barzin
36062d4aa5
add cloudflare configs for tunnels and dns [ci skip]
2024-12-23 18:20:16 +00:00
Viktor Barzin
1e9da0021a
add acls to tailnet and limit who can access what[ci skip]
2024-01-06 21:36:20 +00:00