alpha
Login
or
Join now
tibor.sh
/
infrastructure
Star
0
Fork
0
Atom
Configure Feed
Issues
Pull Requests
Commits
Tags
Feed URL
Select the types of activity you want to include in your feed.
[READ-ONLY] Mirror of https://github.com/tiborpilz/infrastructure. Personal Infrastructure managed via terraform & k8s
Star
0
Fork
0
Atom
Configure Feed
Issues
Pull Requests
Commits
Tags
Feed URL
Select the types of activity you want to include in your feed.
Overview
Issues
Pulls
Pipelines
infrastructure
/
applications
/
identity
/
at
test/provision-cluster-for-testing
1 folder
2 files
Tibor Pilz
feat: add harbor registry with authentik oidc
3mo ago
bcb18d74
authentik
feat: add harbor registry with authentik oidc Harbor 2.15 (chart 1.19.1) as a services-group app: CNPG-backed external postgres, internal redis, hcloud-volumes persistence, exposed through the public gateway at harbor.tibor.sh. All chart-generated component secrets are pinned via existingSecret references (sops-encrypted, age-only recipients) so ArgoCD renders stay deterministic. OIDC is wired both ways: an authentik blueprint creates the provider/application (client secret via authentik-oidc-clients env secret), and a post-deploy job PUTs the matching oidc_auth config into Harbor's API. tibor joins the new harbor-admins group for oidc admin.
3 months ago
application.yaml
refactor: group kustomize apps
3 months ago
kustomization.yaml
chore: deslop comments to load-bearing one-liners
3 months ago