commit 9f2f51eacbc2f7b552b44ed2e59c9fcf9bf6c1c7
parent b9899fd218999b22da2f3111c318d8333898e288
Author: MTRNord <mtrnord1@gmail.com>
Date: Sat, 18 Jan 2025 17:04:34 +0100
Fix mas?
Diffstat:
4 files changed, 115 insertions(+), 115 deletions(-)
diff --git a/apps/base/envoy-gateway/release.yaml b/apps/base/envoy-gateway/release.yaml
@@ -63,115 +63,115 @@ spec:
hostname: "mas.midnightthoughts.space"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: midnightthoughts.space-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: midnightthoughts.space-tls
- name: https-matrix-midnightthoughts
protocol: HTTPS
hostname: "matrix.midnightthoughts.space"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: matrix.midnightthoughts.space-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: matrix.midnightthoughts.space-tls
- name: https-docuseal-midnightthoughts
protocol: HTTPS
hostname: "docuseal.midnightthoughts.space"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: docuseal.midnightthoughts.space-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: docuseal.midnightthoughts.space-tls
- name: https-midnightthoughts-neoboard
protocol: HTTPS
hostname: "miro-export.neoboard.midnightthoughts.space"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: miro-export.neoboard.midnightthoughts.space-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: miro-export.neoboard.midnightthoughts.space-tls
- name: https-midnightthoughts-root
protocol: HTTPS
hostname: "midnightthoughts.space"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: midnightthoughts.space-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: midnightthoughts.space-tls
- name: https-nordgedanken-root
protocol: HTTPS
hostname: "nordgedanken.dev"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: nordgedanken.dev-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: nordgedanken.dev-tls
- name: https-nordgedanken
protocol: HTTPS
hostname: "*.nordgedanken.dev"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: nordgedanken.dev-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: nordgedanken.dev-tls
- name: https-mtrnord-blog-root
protocol: HTTPS
hostname: "mtrnord.blog"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: mtrnord.blog-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: mtrnord.blog-tls
- name: https-mtrnord-blog
protocol: HTTPS
hostname: "*.mtrnord.blog"
port: 443
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
tls:
- mode: Terminate
- certificateRefs:
- - kind: Secret
- name: mtrnord.blog-tls
+ mode: Terminate
+ certificateRefs:
+ - kind: Secret
+ name: mtrnord.blog-tls
- name: http
protocol: HTTP
port: 80
allowedRoutes:
- namespaces:
- from: "All"
+ namespaces:
+ from: "All"
---
apiVersion: gateway.envoyproxy.io/v1alpha1
kind: ClientTrafficPolicy
diff --git a/apps/base/matrix/draupnir-fluffy/deployment.yaml b/apps/base/matrix/draupnir-fluffy/deployment.yaml
@@ -34,43 +34,43 @@ spec:
- image: gnuxie/draupnir:v2.0.1
imagePullPolicy: Always
livenessProbe:
- failureThreshold: 3
- httpGet:
- path: /healthz
- port: 8080
- initialDelaySeconds: 60
- periodSeconds: 30
- successThreshold: 1
- timeoutSeconds: 1
+ failureThreshold: 3
+ httpGet:
+ path: /healthz
+ port: 8080
+ initialDelaySeconds: 60
+ periodSeconds: 30
+ successThreshold: 1
+ timeoutSeconds: 1
name: mjolnir-fluffy-container
readinessProbe:
- httpGet:
- path: /health
- port: 8080
- initialDelaySeconds: 60
- periodSeconds: 30
+ httpGet:
+ path: /health
+ port: 8080
+ initialDelaySeconds: 60
+ periodSeconds: 30
securityContext:
- allowPrivilegeEscalation: false
- capabilities:
- drop:
- - ALL
- readOnlyRootFilesystem: true
- #runAsNonRoot: true
+ allowPrivilegeEscalation: false
+ capabilities:
+ drop:
+ - ALL
+ readOnlyRootFilesystem: true
+ #runAsNonRoot: true
volumeMounts:
- - mountPath: /data/config/production.yaml
- name: config-volume
- subPath: production.yaml
- - mountPath: /data/storage
- name: storage
- - mountPath: /tmp
- name: tmp
+ - mountPath: /data/config/production.yaml
+ name: config-volume
+ subPath: production.yaml
+ - mountPath: /data/storage
+ name: storage
+ - mountPath: /tmp
+ name: tmp
volumes:
- configMap:
- name: mjolnir-fluffy-config
+ name: mjolnir-fluffy-config
name: config-volume
- name: storage
persistentVolumeClaim:
- claimName: mjolnir-fluffy-persistent-storage
+ claimName: mjolnir-fluffy-persistent-storage
- name: tmp
emptyDir:
- sizeLimit: 2048Mi
+ sizeLimit: 2048Mi
diff --git a/apps/base/matrix/draupnir-freifunk/deployment.yaml b/apps/base/matrix/draupnir-freifunk/deployment.yaml
@@ -34,43 +34,43 @@ spec:
- image: gnuxie/draupnir:v2.0.1
imagePullPolicy: Always
livenessProbe:
- failureThreshold: 3
- httpGet:
- path: /healthz
- port: 8080
- initialDelaySeconds: 60
- periodSeconds: 30
- successThreshold: 1
- timeoutSeconds: 1
+ failureThreshold: 3
+ httpGet:
+ path: /healthz
+ port: 8080
+ initialDelaySeconds: 60
+ periodSeconds: 30
+ successThreshold: 1
+ timeoutSeconds: 1
name: mjolnir-freifunk-container
readinessProbe:
- httpGet:
- path: /health
- port: 8080
- initialDelaySeconds: 60
- periodSeconds: 30
+ httpGet:
+ path: /health
+ port: 8080
+ initialDelaySeconds: 60
+ periodSeconds: 30
securityContext:
- allowPrivilegeEscalation: false
- capabilities:
- drop:
- - ALL
- readOnlyRootFilesystem: true
- #runAsNonRoot: true
+ allowPrivilegeEscalation: false
+ capabilities:
+ drop:
+ - ALL
+ readOnlyRootFilesystem: true
+ #runAsNonRoot: true
volumeMounts:
- - mountPath: /data/config/production.yaml
- name: config-volume
- subPath: production.yaml
- - mountPath: /data/storage
- name: storage
- - mountPath: /tmp
- name: tmp
+ - mountPath: /data/config/production.yaml
+ name: config-volume
+ subPath: production.yaml
+ - mountPath: /data/storage
+ name: storage
+ - mountPath: /tmp
+ name: tmp
volumes:
- configMap:
- name: mjolnir-freifunk-config
+ name: mjolnir-freifunk-config
name: config-volume
- name: storage
persistentVolumeClaim:
- claimName: mjolnir-freifunk-persistent-storage
+ claimName: mjolnir-freifunk-persistent-storage
- name: tmp
emptyDir:
- sizeLimit: 2048Mi
+ sizeLimit: 2048Mi
diff --git a/apps/base/matrix/synapse/release.yaml b/apps/base/matrix/synapse/release.yaml
@@ -355,7 +355,7 @@ spec:
matches:
- path:
type: RegularExpression
- value: /_matrix/client/.*/(login|logout|refresh)/
+ value: /_matrix/client/(r0|v3|unstable)/(login|logout|refresh)
ingress:
enabled: false
sops: