infra/stacks/platform/modules/authentik
Viktor Barzin c034adab5f mitigate cluster instability during terraform applies
- Recreate strategy for heavy single-replica deployments (onlyoffice, stirling-pdf)
- Reduce maxSurge on multi-replica deployments (traefik, authentik, grafana, kyverno)
  to prevent memory request surge overwhelming scheduler
- Weekly etcd defrag CronJob (Sunday 3 AM) to prevent fragmentation buildup
- Disable Kyverno policy reports (ephemeral report cleanup)
- Cloud-init: journald persistence + 4Gi swap for worker nodes
- Kubelet: LimitedSwap behavior for memory pressure relief
2026-03-15 17:23:39 +00:00
..
main.tf Remove all CPU limits cluster-wide to eliminate CFS throttling 2026-03-14 08:51:45 +00:00
pgbouncer.ini [ci skip] Move Terraform modules into stack directories 2026-02-22 14:38:14 +00:00
pgbouncer.tf [ci skip] platform: add ndots=2 dns_config to all deployment pod specs 2026-02-23 22:43:05 +00:00
userlist.txt [ci skip] Move Terraform modules into stack directories 2026-02-22 14:38:14 +00:00
values.yaml mitigate cluster instability during terraform applies 2026-03-15 17:23:39 +00:00