(Justin)

Tech nerd from Sweden

Matrix: @jlh:jlh.name

  • 0 Posts
  • 16 Comments
Joined 2 years ago
cake
Cake day: June 10th, 2023

help-circle


  • Yeah, what you’re talking about is called GitOps. Using git as the single source of truth for your infrastructure. I have this set up for my home servers.

    https://codeberg.org/jlh/h5b

    nodes has NixOS configuration for my 5 kubernetes servers and a script that builds a flash drive for each of them to use as a boot drive (same setup for porygonz, but that’s my dedicated DHCP/DNS/NTP mini server)

    mikrotik has a dump of my Mikrotik router config and a script that deploys the config from the git repo.

    applications has all my kubernetes config: containers, proxies, load balancers, config files, certificate renewal, databases, clustered raid, etc. It’s all super automated. A pretty typical “operator” container to run in Kubernetes is ArgoCD, which watches a git repo and automatically deploys any changes or desyncs back to the Kubernetes API so it’s always in sync with git. I don’t use any GUI or console commands to deploy or update a container, I just edit git and commit.

    The kubernetes cluster runs about 400 containers, most of them just automatic replicas of services for high-availability. Of course there’s always some manual setup steps outside of git, like partitioning drives, joining the nodes to the cluster, writing hardware-specific config, and bootstrapping Argocd to watch git. But overall, my house could burn down tomorrow and I would have everything I need to redeploy using this git repo, the secrets git repo, and my backups of my databases and container /data dirs.

    I think Portainer supports doing GitOps on Docker compose? Never used it.

    https://docs.portainer.io/user/docker/stacks/add

    Argocd is really the gold standard for GitOps though. I highly recommend trying out k3s on a server and running ArgoCD on it, it’s super easy to use.

    https://argo-cd.readthedocs.io/en/stable/getting_started/

    Kubernetes is definitely different than Docker Compose, and tutorials are usually written for Docker compose.yml, not Kubernetes Deployments, but It’s super powerful and automated. Very hard to crash once you have it running. I don’t think it’s as scary as a lot of people think, and you definitely don’t need more than one server to run it.









  • I mean that the EU wants 0 for 0.

    The EU averages 2% tariffs and Trump just imposed 10-35% tariffs on the entire EU, and the European Commission just cancelled the one tariff package it managed to pass in the European Council, the one that was directly in response to the US’s25% tariff that is currently in force. Trump did not cancel this tariff, but we canceled the counter-tariff to it. It’s one thing to be open for negotiations, but we’re turning the other cheek here.





  • Arresting people for criticizing authority is horrible, but the Trump administration doesn’t really have the moral high ground here considering how they have been disappearing people for their free speech recently.

    “We continue to urge Trumpist authorities to respect freedom of expression and to ensure that laws are not used to stifle permitted expression. As a treaty ally of USA, we will closely monitor this issue and advocate for the fair treatment of Fabian Schmidt,” - Europe probably