infra/stacks/platform/modules/kyverno
Viktor Barzin 171d03086e right-size 14 services and scale down GPU-heavy workloads [ci skip]
Memory right-sizing based on VPA upperBound analysis:
- Increases: stirling-pdf 1200→1536Mi, claude-memory 64→128Mi,
  dawarich 512→768Mi, kyverno-cleanup 128→192Mi, linkwarden 768→1Gi,
  navidrome 64→128Mi, listenarr 768→896Mi, privatebin 64→128Mi,
  ntfy 64→128Mi, health 128→256Mi, dbaas quota 16→20Gi,
  mysql-operator 384→512Mi
- Decreases: rybbit 768→384Mi, nvidia-exporter added explicit 192Mi,
  dcgm-exporter 2560→1536Mi
- Scale to 0: ebook2audiobook/audiblez-web, whisper (GPU node pressure)

Net effect: -496Mi cluster-wide, 13 ContainerNearOOM alerts resolved,
all ResourceQuota pressures cleared, GPU health green.
2026-03-18 08:04:03 +00:00
..
dependency-init-containers.tf add pod dependency management via Kyverno init container injection 2026-03-18 08:04:02 +00:00
main.tf right-size 14 services and scale down GPU-heavy workloads [ci skip] 2026-03-18 08:04:03 +00:00
resource-governance.tf fix gpu-workload Kyverno policy: use replace with explicit priority value 2026-03-18 08:04:02 +00:00
security-policies.tf [ci skip] Infrastructure hardening: security, monitoring, reliability, maintainability 2026-02-23 22:05:28 +00:00