theshire/kubernetes/bootstrap
2024-07-08 12:38:39 -05:00
..
flux Update Flux group to v2.3.0 2024-05-15 19:02:03 +00:00
kps-crds bootstrap kps crds 2024-02-16 09:52:29 -06:00
talos roll secret 2024-07-08 12:38:39 -05:00
helmfile.yaml Update Helm release kubelet-csr-approver to v1.2.2 2024-06-19 09:32:13 +00:00
readme.md Replaced omni with talhelper. 2024-05-08 01:39:32 -05:00

Bootstrap

Prerequisites

brew install helmfile
helm plugin install https://github.com/databus23/helm-diff

Talos

Bootstrap talos cluster

talosctl apply-config --nodes=10.1.1.61 --file=./kubernetes/bootstrap/talos/clusterconfig/homelab-shadowfax.yaml --insecure
talosctl bootstrap --nodes=10.1.1.61

CNI & Container Proxy

Install Cilium & Spegel

helmfile apply -f kubernetes/bootstrap/talos/apps/helmfile.yaml

Flux Prep

Install Flux

kubectl apply --server-side --kustomize ./kubernetes/bootstrap/flux

Apply secrets, settings, and crds.

These cannot be applied with kubectl in the regular fashion due to be encrypted with sops

sops --decrypt kubernetes/bootstrap/flux/age-key.sops.yaml | kubectl apply -f -
sops --decrypt kubernetes/bootstrap/flux/git-deploy-key.sops.yaml | kubectl apply -f -
sops --decrypt kubernetes/flux/vars/cluster-secrets.sops.yaml | kubectl apply -f -
kubectl apply -f kubernetes/flux/vars/cluster-settings.yaml

Wipe Rook Ceph

kubectl apply -f kubernetes/tools/wiperook.yaml

Kick off Flux applying this repository

kubectl apply --server-side --kustomize ./kubernetes/flux/config