sync-with-upsteam #1

Merged
thunerbl merged 1499 commits from sync-with-upsteam into main 2026-03-29 15:32:22 +00:00
Owner
No description provided.
This reverts commit 71c425bb5f.
fix: change name of cm ingress nginx

See merge request libre.sh/libre.sh!2
In the upstream helm chart, the default service type is LoadBalancer
This is used in proxy protocol environement, like on scaleway.
feat: Loki configuration

See merge request libre.sh/libre.sh!3
alertmanager

See merge request libre.sh/libre.sh!4
I'm the renovate bot \o/
feat: update to latest

See merge request libre.sh/libre.sh!5
| datasource | package                                    | from    | to      |
| ---------- | ------------------------------------------ | ------- | ------- |
| go         | github.com/fluxcd/kustomize-controller/api | v0.35.0 | v0.35.1 |
| datasource | package                      | from    | to      |
| ---------- | ---------------------------- | ------- | ------- |
| go         | github.com/minio/minio-go/v7 | v7.0.47 | v7.0.59 |
| datasource | package                         | from   | to     |
| ---------- | ------------------------------- | ------ | ------ |
| docker     | ghcr.io/tarampampam/error-pages | 2.16.0 | 2.24.0 |
fix(deps): update module github.com/minio/minio-go/v7 to v7.0.59

See merge request libre.sh/libre.sh!8
feat(container): update image ghcr.io/tarampampam/error-pages to v2.24.0

See merge request libre.sh/libre.sh!9
fix(deps): update module github.com/fluxcd/kustomize-controller/api to v0.35.1

See merge request libre.sh/libre.sh!7
| datasource      | package                                 | from    | to      |
| --------------- | --------------------------------------- | ------- | ------- |
| github-releases | prometheus-operator/prometheus-operator | v0.63.0 | v0.66.0 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 45.6.0 | 47.6.1 |
| datasource | package  | from  | to     |
| ---------- | -------- | ----- | ------ |
| helm       | promtail | 6.9.3 | 6.11.5 |
| datasource | package       | from  | to    |
| ---------- | ------------- | ----- | ----- |
| helm       | ingress-nginx | 4.5.2 | 4.7.1 |
| datasource | package               | from    | to      |
| ---------- | --------------------- | ------- | ------- |
| docker     | quay.io/thanos/thanos | v0.30.2 | v0.31.0 |
| helm       | thanos                | 12.1.2  | 12.8.3  |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | grafana | 6.57.1 | 6.58.2 |
| datasource | package  | from  | to    |
| ---------- | -------- | ----- | ----- |
| helm       | operator | 5.0.3 | 5.0.6 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | openebs | 3.4.1 | 3.7.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | loki    | 4.8.0 | 5.8.9 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | grafana | 6.58.2 | 6.58.4 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.11.5 | 6.11.7 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | thanos  | 12.8.3 | 12.8.6 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 47.6.1 | 48.1.2 |
fix(helm): update chart thanos to 12.8.6

See merge request indiehost/libre.sh/libre.sh!42
fix(helm): update chart promtail to 6.11.7

See merge request indiehost/libre.sh/libre.sh!41
fix(helm): update chart grafana to 6.58.4

See merge request indiehost/libre.sh/libre.sh!40
feat(helm)!: Update chart kube-prometheus-stack to 48.1.2

See merge request indiehost/libre.sh/libre.sh!38
Feat/backups

See merge request indiehost/libre.sh/libre.sh!39
| datasource | package                      | from   | to     |
| ---------- | ---------------------------- | ------ | ------ |
| docker     | velero/velero-plugin-for-aws | v1.7.0 | v1.7.1 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | grafana | 6.58.4 | 6.58.5 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.11.7 | 6.11.9 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 48.1.2 | 48.2.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | loki    | 5.8.9 | 5.9.0 |
feat(helm): update chart loki to 5.9.0

See merge request indiehost/libre.sh/libre.sh!47
feat(helm): update chart kube-prometheus-stack to 48.2.0

See merge request indiehost/libre.sh/libre.sh!46
fix(helm): update chart promtail to 6.11.9

See merge request indiehost/libre.sh/libre.sh!45
fix(helm): update chart grafana to 6.58.5

See merge request indiehost/libre.sh/libre.sh!44
fix(container): update image velero/velero-plugin-for-aws to v1.7.1

See merge request indiehost/libre.sh/libre.sh!43
avoid cutting the traffic when the kublet is stressed
in some cloud provider.
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.34 | 2.1.38 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | openebs | 3.7.0 | 3.9.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 4.1.3 | 5.0.2 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.12.2 | v1.13.1 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 48.2.0 | 48.6.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | kyverno | 3.0.2 | 3.0.5 |
| datasource | package       | from  | to    |
| ---------- | ------------- | ----- | ----- |
| helm       | ingress-nginx | 4.7.1 | 4.8.0 |
| datasource | package                   | from  | to    |
| ---------- | ------------------------- | ----- | ----- |
| helm       | kubernetes-event-exporter | 2.7.0 | 2.7.2 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.11.9 | 6.15.2 |
| datasource | package                         | from   | to     |
| ---------- | ------------------------------- | ------ | ------ |
| docker     | ghcr.io/tarampampam/error-pages | 2.24.0 | 2.25.0 |
| datasource | package | from  | to     |
| ---------- | ------- | ----- | ------ |
| helm       | loki    | 5.9.0 | 5.23.1 |
| datasource | package                      | from   | to     |
| ---------- | ---------------------------- | ------ | ------ |
| docker     | velero/velero-plugin-for-aws | v1.7.1 | v1.8.0 |
| datasource | package  | from  | to    |
| ---------- | -------- | ----- | ----- |
| helm       | operator | 5.0.6 | 5.0.9 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 48.6.0 | 51.2.0 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | grafana | 6.58.5 | 6.60.1 |
| datasource      | package                                 | from    | to      |
| --------------- | --------------------------------------- | ------- | ------- |
| github-releases | prometheus-operator/prometheus-operator | v0.66.0 | v0.68.0 |
| datasource | package               | from    | to      |
| ---------- | --------------------- | ------- | ------- |
| docker     | quay.io/thanos/thanos | v0.31.0 | v0.32.4 |
| helm       | thanos                | 12.8.6  | 12.13.6 |
| datasource | package                                        | from   | to     |
| ---------- | ---------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/keydb-operator | v0.2.0 | v0.3.0 |
| docker     | registry.libre.sh/keydb-operator               | v0.2.0 | v0.3.0 |
| datasource | package                             | from        | to     |
| ---------- | ----------------------------------- | ----------- | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/api | v0.2.0-rc.3 | v0.2.3 |
| datasource | package           | from   | to     |
| ---------- | ----------------- | ------ | ------ |
| helm       | postgres-operator | 1.10.0 | 1.10.1 |
| datasource | package                                                 | from   | to     |
| ---------- | ------------------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/object-storage-operator | v0.2.1 | v0.3.0 |
| docker     | registry.libre.sh/object-storage-operator               | v0.2.1 | v0.3.0 |
| datasource | package                                        | from   | to     |
| ---------- | ---------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/keydb-operator | v0.3.1 | v0.3.2 |
| docker     | registry.libre.sh/keydb-operator               | v0.3.1 | v0.3.2 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 51.2.0 | 52.1.0 |
| datasource | package | from   | to    |
| ---------- | ------- | ------ | ----- |
| helm       | grafana | 6.60.1 | 7.0.1 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 5.23.1 | 5.36.0 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.15.2 | 6.15.3 |
| datasource | package               | from    | to       |
| ---------- | --------------------- | ------- | -------- |
| docker     | quay.io/thanos/thanos | v0.32.4 | v0.32.5  |
| helm       | thanos                | 12.13.6 | 12.13.13 |
| datasource | package                   | from  | to    |
| ---------- | ------------------------- | ----- | ----- |
| helm       | kubernetes-event-exporter | 2.7.2 | 2.7.6 |
| datasource | package       | from  | to    |
| ---------- | ------------- | ----- | ----- |
| helm       | ingress-nginx | 4.8.0 | 4.8.3 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.38 | 2.1.41 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 5.0.2 | 5.1.2 |
| datasource | package  | from  | to     |
| ---------- | -------- | ----- | ------ |
| helm       | operator | 5.0.9 | 5.0.10 |
| datasource | package                      | from   | to     |
| ---------- | ---------------------------- | ------ | ------ |
| docker     | velero/velero-plugin-for-aws | v1.8.0 | v1.8.1 |
except for node exporter
| datasource | package                                       | from    | to      |
| ---------- | --------------------------------------------- | ------- | ------- |
| docker     | quay.io/prometheuscommunity/postgres-exporter | v0.13.2 | v0.15.0 |
| datasource | package                                           | from   | to     |
| ---------- | ------------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/postgres-operator | v0.4.1 | v0.4.2 |
| docker     | registry.libre.sh/postgres-operator               | v0.4.1 | v0.4.2 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.13.1 | v1.13.2 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | grafana | 7.0.1 | 7.0.2 |
| datasource | package                   | from  | to    |
| ---------- | ------------------------- | ----- | ----- |
| helm       | kubernetes-event-exporter | 2.7.6 | 2.8.0 |
| datasource | package                                        | from   | to     |
| ---------- | ---------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/keydb-operator | v0.3.2 | v0.4.0 |
| docker     | registry.libre.sh/keydb-operator               | v0.3.2 | v0.4.0 |
| datasource | package                                        | from   | to     |
| ---------- | ---------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/keydb-operator | v0.4.0 | v0.4.1 |
| docker     | registry.libre.sh/keydb-operator               | v0.4.0 | v0.4.1 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 5.1.2 | 5.1.3 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 5.36.0 | 5.36.1 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | kyverno | 3.0.5 | 3.0.6 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.41 | 2.1.42 |
closes #25
| datasource | package                                           | from   | to     |
| ---------- | ------------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/postgres-operator | v0.4.2 | v0.4.3 |
| docker     | registry.libre.sh/postgres-operator               | v0.4.2 | v0.4.3 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 5.1.3 | 5.1.4 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 5.36.1 | 5.36.3 |
| datasource | package                   | from  | to    |
| ---------- | ------------------------- | ----- | ----- |
| helm       | kubernetes-event-exporter | 2.8.0 | 2.8.2 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | grafana | 7.0.2 | 7.0.3 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.42 | 2.1.44 |
| datasource | package                                           | from   | to     |
| ---------- | ------------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/postgres-operator | v0.4.3 | v0.4.4 |
| docker     | registry.libre.sh/postgres-operator               | v0.4.3 | v0.4.4 |
| datasource | package                                           | from   | to     |
| ---------- | ------------------------------------------------- | ------ | ------ |
| git-tags   | https://forge.liiib.re/libre.sh/postgres-operator | v0.4.4 | v0.4.5 |
| docker     | registry.libre.sh/postgres-operator               | v0.4.4 | v0.4.5 |
closes https://forge.liiib.re/indiehost/libre.sh/clusters-osp/-/issues/59
| datasource | package | from     | to      |
| ---------- | ------- | -------- | ------- |
| helm       | thanos  | 12.13.13 | 12.17.0 |
| datasource      | package                                 | from    | to      |
| --------------- | --------------------------------------- | ------- | ------- |
| github-releases | prometheus-operator/prometheus-operator | v0.68.0 | v0.70.0 |
| datasource | package | from  | to     |
| ---------- | ------- | ----- | ------ |
| helm       | grafana | 7.0.3 | 7.0.14 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.13.2 | v1.13.3 |
| datasource | package       | from  | to    |
| ---------- | ------------- | ----- | ----- |
| helm       | ingress-nginx | 4.8.3 | 4.8.4 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.44 | 2.1.46 |
| datasource | package                      | from   | to     |
| ---------- | ---------------------------- | ------ | ------ |
| docker     | velero/velero-plugin-for-aws | v1.8.1 | v1.8.2 |
| datasource | package                         | from   | to     |
| ---------- | ------------------------------- | ------ | ------ |
| docker     | ghcr.io/tarampampam/error-pages | 2.25.0 | 2.26.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 5.1.4 | 5.1.7 |
| datasource | package                   | from  | to     |
| ---------- | ------------------------- | ----- | ------ |
| helm       | kubernetes-event-exporter | 2.8.2 | 2.10.0 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 5.36.3 | 5.41.0 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 52.1.0 | 55.3.1 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | kyverno | 3.0.6 | 3.1.1 |
| datasource | package               | from   | to      |
| ---------- | --------------------- | ------ | ------- |
| helm       | kube-prometheus-stack | 55.3.1 | 55.11.0 |
fix: use svc as host for kc provider & some refactoring
| datasource | package               | from    | to      |
| ---------- | --------------------- | ------- | ------- |
| docker     | quay.io/thanos/thanos | v0.32.5 | v0.34.1 |
| helm       | thanos                | 12.17.0 | 12.23.2 |
usful in case of error
| datasource | package | from | to   |
| ---------- | ------- | ---- | ---- |
| docker     | golang  | 1.21 | 1.22 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | operator | 5.0.11 | 5.0.12 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.13.3 | v1.14.2 |
| datasource | package                      | from   | to     |
| ---------- | ---------------------------- | ------ | ------ |
| docker     | velero/velero-plugin-for-aws | v1.8.2 | v1.9.0 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.15.3 | 6.15.5 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 55.3.1 | 56.8.2 |
| datasource | package | from | to   |
| ---------- | ------- | ---- | ---- |
| docker     | alpine  | 3.17 | 3.19 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | kyverno | 3.1.1 | 3.1.4 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.46 | 2.1.50 |
| datasource | package       | from  | to    |
| ---------- | ------------- | ----- | ----- |
| helm       | ingress-nginx | 4.8.4 | 4.9.1 |
| datasource | package | from  | to     |
| ---------- | ------- | ----- | ------ |
| helm       | openebs | 3.9.0 | 3.10.0 |
| datasource | package                   | from   | to     |
| ---------- | ------------------------- | ------ | ------ |
| helm       | kubernetes-event-exporter | 2.10.0 | 2.14.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 5.1.7 | 5.3.0 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 5.41.0 | 5.43.2 |
| datasource | package | from   | to    |
| ---------- | ------- | ------ | ----- |
| helm       | grafana | 7.0.14 | 7.3.0 |
# Conflicts:
#   cluster/components/observability/prometheus-stack/hr.yaml
| datasource | package | from    | to     |
| ---------- | ------- | ------- | ------ |
| helm       | thanos  | 12.17.0 | 13.1.0 |
# Conflicts:
#   cluster/components/observability/thanos/hr.yaml
enabled to set a maintenance while dependencies are not reconciled yet
We use it on all clusters for minio.
This reverts commit 6a4651cf97.
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.14.2 | v1.14.5 |
it allows to force room recreation to create it federable.
feat: add synapse patch

See merge request indiehost/libre.sh/images!1
| datasource | package                      | from   | to      |
| ---------- | ---------------------------- | ------ | ------- |
| docker     | velero/velero-plugin-for-aws | v1.9.0 | v1.10.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | velero  | 5.3.0 | 5.4.1 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.14.5 | v1.15.1 |
It's now integrated in the operator.
iso with updstream + fixes download of a folder
fixed by multipart upload feature
This reverts commit 656e975806.
This reverts commit d864a77cf9
fixes #112
| datasource | package                         | from   | to    |
| ---------- | ------------------------------- | ------ | ----- |
| docker     | ghcr.io/tarampampam/error-pages | 2.26.0 | 3.2.0 |
| datasource | package               | from | to   |
| ---------- | --------------------- | ---- | ---- |
| docker     | registry.k8s.io/pause | 3.9  | 3.10 |
| datasource | package                   | from   | to    |
| ---------- | ------------------------- | ------ | ----- |
| helm       | kubernetes-event-exporter | 2.14.0 | 3.2.7 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.50 | 2.1.62 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 5.43.2 | 5.48.0 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.15.5 | 6.16.3 |
| datasource | package | from  | to     |
| ---------- | ------- | ----- | ------ |
| helm       | grafana | 7.3.0 | 7.3.12 |
| datasource | package               | from   | to      |
| ---------- | --------------------- | ------ | ------- |
| helm       | kube-prometheus-stack | 56.8.2 | 56.21.4 |
| datasource | package               | from    | to      |
| ---------- | --------------------- | ------- | ------- |
| docker     | quay.io/thanos/thanos | v0.34.1 | v0.35.1 |
| helm       | thanos                | 13.1.0  | 13.4.1  |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.62 | 2.1.63 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 61.3.0 | 61.3.1 |
as documented here: https://grafana.com/docs/loki/v2.9.x/setup/migrate/migrate-to-tsdb/

using `/var/loki/` as a writable folder.
It changes the image hash that we need to retain.
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 61.3.1 | 62.3.1 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | grafana | 8.3.2 | 8.5.0 |
| datasource | package                  | from   | to     |
| ---------- | ------------------------ | ------ | ------ |
| helm       | ingressmonitorcontroller | 2.1.63 | 2.1.64 |
| datasource | package                      | from    | to      |
| ---------- | ---------------------------- | ------- | ------- |
| docker     | velero/velero-plugin-for-aws | v1.10.0 | v1.10.1 |
| datasource | package                         | from  | to    |
| ---------- | ------------------------------- | ----- | ----- |
| docker     | ghcr.io/tarampampam/error-pages | 3.2.0 | 3.3.0 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.15.1 | v1.15.3 |
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.16.3 | 6.16.5 |
| datasource | package                   | from  | to     |
| ---------- | ------------------------- | ----- | ------ |
| helm       | kubernetes-event-exporter | 3.2.7 | 3.2.11 |
| datasource | package               | from    | to      |
| ---------- | --------------------- | ------- | ------- |
| docker     | quay.io/thanos/thanos | v0.35.1 | v0.36.1 |
| helm       | thanos                | 15.7.12 | 15.7.23 |
It is now deprecated.
Should prevent most nil pointer exceptions.
From oidc-keycloak to oidc-sso.
| datasource | package  | from   | to     |
| ---------- | -------- | ------ | ------ |
| helm       | promtail | 6.16.5 | 6.16.6 |
| datasource | package                   | from   | to     |
| ---------- | ------------------------- | ------ | ------ |
| helm       | kubernetes-event-exporter | 3.2.11 | 3.2.12 |
| datasource | package | from    | to      |
| ---------- | ------- | ------- | ------- |
| helm       | thanos  | 15.7.23 | 15.7.25 |
| datasource | package               | from   | to     |
| ---------- | --------------------- | ------ | ------ |
| helm       | kube-prometheus-stack | 62.3.1 | 62.7.0 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | grafana | 8.5.0 | 8.5.1 |
| datasource | package | from  | to    |
| ---------- | ------- | ----- | ----- |
| helm       | kyverno | 3.1.4 | 3.2.6 |
| datasource | package | from  | to     |
| ---------- | ------- | ----- | ------ |
| helm       | loki    | 6.7.3 | 6.12.0 |
Avoid surges with more than 1 container and conflict running upgrade.
It should avoid unnecessary rollouts of deployments.
This reverts commit f8ed9dd60c4f067b62fd1b6412079c3b97e8e9be.
| datasource | package | from    | to     |
| ---------- | ------- | ------- | ------ |
| helm       | thanos  | 15.7.25 | 15.8.0 |
The all-in-one is not working.
instead of 20%
It is no longer in use
and delete post build as it is not used
Fix the icons issue.
We saw a bug in an update from 118 to 120:

```
A temporary workaround to fix this error is to shut down Synapse (including
any and all workers) and run the following SQL:

    DELETE FROM stream_positions WHERE stream_name = 'to_device';
```

We hope this will fix it.
loadbalancer does not work with udp so it won't work on port 443
Upgrade the helm chart, and the zalando postgres operator to 1.12.2

https://github.com/zalando/postgres-operator/releases/tag/v1.12.2
| datasource | package               | from    | to      |
| ---------- | --------------------- | ------- | ------- |
| docker     | quay.io/thanos/thanos | v0.36.1 | v0.37.2 |
| helm       | thanos                | 15.8.1  | 15.13.2 |
| datasource | package                                       | from    | to      |
| ---------- | --------------------------------------------- | ------- | ------- |
| docker     | quay.io/prometheuscommunity/postgres-exporter | v0.15.0 | v0.17.1 |
| datasource | package      | from    | to      |
| ---------- | ------------ | ------- | ------- |
| helm       | cert-manager | v1.15.3 | v1.15.5 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | grafana | 8.5.12 | 8.10.4 |
| datasource | package                  | from   | to    |
| ---------- | ------------------------ | ------ | ----- |
| helm       | ingressmonitorcontroller | 2.1.64 | 2.2.2 |
| datasource | package                   | from   | to    |
| ---------- | ------------------------- | ------ | ----- |
| helm       | kubernetes-event-exporter | 3.2.12 | 3.4.4 |
| datasource | package | from   | to     |
| ---------- | ------- | ------ | ------ |
| helm       | loki    | 6.21.0 | 6.28.0 |
| datasource | package                                             | from   | to     |
| ---------- | --------------------------------------------------- | ------ | ------ |
| docker     | registry.k8s.io/cpa/cluster-proportional-autoscaler | v1.8.9 | v1.9.0 |
This is in the context of:
https://forge.liiib.re/indiehost/libre.sh/libre.sh/-/issues/120
We need this to deliver step 2 of our update
Issue is fixed, we don't need this workaround anymore
For some helm release, they take time to rollout.
For instance nginx, takes some dozen minutes to settle.
This script fetches the lastet original values.
It is usefule to explore them locally, with an IDE
with this option enabled client can change host which could lead to security issues
Should help with IA crawlers.
#419
based on observation
#412
#413
this will enable users to change this value in keycloak interface without it being overrided by the controller
Reviewed-on: https://forge.libre.sh/indiehosters/images/pulls/31
We use a wildcard ingress instead.
design system stores assets that can be reused between different apps
Resolves non-constant format string errors with go 1.24
remove:
- upstream_addr
- args (in request_uri already)
- http_referer
- server_protocol
- gzip_ratio

adds: namespace
First I had to reimport the defaul.
Then, I add the app label to the beginning of the pipeline.
I drop the labels:
- filename
I changed these labels into metadata:
- node_name
- pod
I rewrite namespace label from the nginx log into the general namspace label
deploys keycloak in dev environment with tilt and set libresh-config with credentials
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/442
fixes #88
This is to have a an idea of upload
This reverts commit 3493911f3f.
In preparation to move this repo in libre.sh monrepo
move images repo into libre.sh monorepo
merge flake in one flake
merge ci actions
merge cli into lshctl
move nix libs in nix

Signed-off-by: unteem <timothee@indie.host>
it seems that there is an heurstic that first checks if Dockerfile
is in the root context and use it first if its there

Signed-off-by: unteem <timothee@indiehosters.net>
It's been automated outside the cluster.
Prevent infinite recursion
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/362
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/448
gitlab ci
remove all previous work on cli with bubble to provision cluster
from libreho.st to this forge
from upstream
f0a7a8c934/30/fpm/entrypoint.sh (L115-L148)
The config isn't loaded yet.
In some case we might derive the value from other another field.
This reverts commit 32e5b423d3.
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/464
Reviewed-by: Hugo Renard <hugo.renard@proton.me>
Co-authored-by: Aurore Roma <aroma@courrier.dev>
Co-committed-by: Aurore Roma <aroma@courrier.dev>
reverts commit acf97344d0
which introduces another error, debug not built anymore as target
to avoid endless reconcile loop
feat(element): v1.11.109 : add hash from prefetch
avoid some crashes
nginx-ingress don't like the dot
Signed-off-by: Pierre Ozoux Krebber <pierre@ozoux.net>
server submodule is now prefetched with the right rev, hash and buildNumber

Co-authored-by: acazenave <arnaud@indiehosters.net>
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/488
Reviewed-by: Hugo Renard <hugo.renard@proton.me>
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/497
Reviewed-by: acazenave <arnaud@indiehosters.net>
in some cases we need to be able to point to container file (la suite apps)

Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/506
Reviewed-by: Hugo Renard <hugo.renard@proton.me>
Preparing the infra for the next deploy system.
using a fork github.com/hrenard/nix-update
For now upgrade need to be manual

Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/505
Reviewed-by: Hugo Renard <hugo.renard@proton.me>
workaround for https://github.com/suitenumerique/docs/issues/1386
remove homepage patch (merged upstream)
update env variables for OIDC
This reverts commit 48d8fb9bd8.
and loki to 3.5.3
This image had several CVE.
The idea is to import it, and build it ourself to fix it.
use the uptream docker image built by thanos.
As documented here:
https://github.com/thanos-io/thanos/issues/8381#issuecomment-3165102688
and update
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/521
Reviewed-by: unteem <timothee@indiehosters.net>
Co-authored-by: Hugo Renard <hugo.renard@protonmail.com>
Co-committed-by: Hugo Renard <hugo.renard@protonmail.com>
lasuitecoop-interne was broken
https://github.com/minio/minio/issues/21647#issuecomment-3429409031
It was flappy, and probably missing
Avoid injecting newline on empty snippet.
todo later:
investigate debug env variable for the operator
fix #537
pastille is not opened when loaded in an iframe.
fixes issues with onlyoffice in nextcloud
fixes bind mount error

Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/545
Reviewed-by: unteem <timothee@indiehosters.net>
Co-authored-by: Pierre Ozoux Krebber <pierre@ozoux.net>
Co-committed-by: Pierre Ozoux Krebber <pierre@ozoux.net>
b04fe78eed (diff-cd8d67e9c6)
update to v0.1.42
simplify patch to conform with upstream and customization possibilities
add favicons
adapt css for themes, now its imported at runtime
fix sliders images
beta are deprecated.
beta are deprecated.
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/556
Reviewed-by: unteem <timothee@indiehosters.net>
Co-authored-by: acazenave <arnaud@indiehosters.net>
Co-committed-by: acazenave <arnaud@indiehosters.net>
when function is called twice, output is overriden by last call
update version and remove old version
fix patch
Upstream PR is here:
https://github.com/thedatabaseme/wal-g-exporter/pull/16
I had to do this to update the failing (cyberwatch) packages.
I tried the following:
- rebuild from trigger branch: https://github.com/zalando/spilo/issues/1164
- rebuild from the same tag doesn't work
- upgrade all the ubuntu doens't work either
Use our own spilo image.
Usa sha256 instead of tags.
pprof endpoint is not exposed anymore
This avoids to expose pprof endpoints
Only expose wanted endpoints
Docs/Notes is used in favor of pad
add_header breaks ingress template generation
Bumps version
Theming is now using cunningham at build time
Lasuitecoop theme still needs some custom tweaking
This reverts commit f92d3ec7a6.
adds operator image, theme and domain
This reverts commit dc7c0ed0a2.
use default turn port 5349
use nodePort service
a loadbalancer need to be configured for turn service
to map port 443 to node port

Limitation: we can only configure one turn svc on the cluster
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/586
Reviewed-by: acazenave <arnaud@indiehosters.net>
since last update nextcloud was expecting custom_apps folder
apps.config.php was not overrident by z.config.php
Sets default resources if container does not exist
This allows users to override resources by editing the container directly
fixes issues with alignements
adds italic and bolditalic
In commit b935d70 cluster/libresh-repositories.yaml has been moved to
cluster/repositories/flux-ks.yml but the README still references the old
path.
Reviewed-on: https://forge.libre.sh/indiehosters/libre.sh/pulls/604
Reviewed-by: unteem <timothee@indiehosters.net>
limit number of workers, by default equals to number of CPUs
limit memory per worker and number of tasks
avoids memory leak
Also, pin ingress-nginx controller to control-plane node, because
ingress-nginx 1.14 removed the ingress-ready nodeSelector from its
Kind manifest, which can schedule the controller on worker nodes
that don't expose ports 80/443.
enable pastille and add domain and notificationsMail
Replace local_resource kubectl apply with k8s_yaml for the Keycloak CR,
add pod selector to surface Keycloak pod logs, and group related
resources under the 'keycloak' label.
Replace local_resource kubectl apply with k8s_yaml(blob()) for proper
Tilt object tracking and automatic cleanup.
Use Tilt's pod readiness tracking and resource_deps instead of curl
loops to wait for Minio and Keycloak. Remove mc alias setup convenience.
Inject the host's mkcert root CA into cert-manager instead of
generating a new CA inside the cluster. The CA now persists across
cluster recreations, removing the need to reinstall it each time.
*.localhost resolves to loopback natively on Linux
removing the need for /etc/hosts entries. CoreDNS rewrite rule
updated to match the new domain.
https://github.com/ONLYOFFICE/onlyoffice-nextcloud/pull/1122

Co-authored-by: Loan Robert <loan@yaal.coop>
This allow to override images and use a local registry for local development.
upstream issue:
https://github.com/zalando/spilo/issues/1164
ensures that different resources gets distributed
throughout the day while the same resource always
gets the same schedule across reconciliations
implement in drive controller
Merge upstream from Libre fork
Some checks failed
/ publish (push) Has been cancelled
157d99c2f5
Sign in to join this conversation.
No reviewers
No labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
thunerbl/libre.sh!1
No description provided.