home.social

#externaldns — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #externaldns, aggregated by home.social.

fetched live
  1. fyi external-dns v0.22.0 changes the annotation (and will fuck up all yo shit automatically if you are already specifying --policy)

    #kubernetes #externaldns #devops

  2. fyi external-dns v0.22.0 changes the annotation (and will fuck up all yo shit automatically if you are already specifying --policy)

    #kubernetes #externaldns #devops

  3. fyi external-dns v0.22.0 changes the annotation (and will fuck up all yo shit automatically if you are already specifying --policy)

    #kubernetes #externaldns #devops

  4. fyi external-dns v0.22.0 changes the annotation (and will fuck up all yo shit automatically if you are already specifying --policy)

    #kubernetes #externaldns #devops

  5. Sync Kubernetes Ingress & Service endpoints directly with AWS Route53 hosted zones. Configure ExternalDNS on EKS with IAM Roles for Service Accounts (IRSA) for secure IAM authentication.

    #aws #route53 #externaldns

    valtersit.com/vault/aws-route5

  6. Sync Kubernetes Ingress & Service endpoints directly with AWS Route53 hosted zones. Configure ExternalDNS on EKS with IAM Roles for Service Accounts (IRSA) for secure IAM authentication.

    #aws #route53 #externaldns

    valtersit.com/vault/aws-route5

  7. Numerous technical and security improvements on the infrastructure that supports mstdn.dk

    Bottom line: sikkerpånettet.dk/ now gives the site a 100% #security score. There are still improvements to be made (weirdly enough) - specifically I'm looking into supporting DANE for #TLS certificate signatures in #DNS.

    Now that's off the TODO-list :-)

    #mstdndk

  8. Numerous technical and security improvements on the infrastructure that supports mstdn.dk

    Bottom line: sikkerpånettet.dk/ now gives the site a 100% #security score. There are still improvements to be made (weirdly enough) - specifically I'm looking into supporting DANE for #TLS certificate signatures in #DNS.

    Now that's off the TODO-list :-)

    #mstdndk

  9. Numerous technical and security improvements on the infrastructure that supports mstdn.dk

    Bottom line: sikkerpånettet.dk/ now gives the site a 100% #security score. There are still improvements to be made (weirdly enough) - specifically I'm looking into supporting DANE for #TLS certificate signatures in #DNS.

    Now that's off the TODO-list :-)

    #mstdndk

  10. Numerous technical and security improvements on the infrastructure that supports mstdn.dk

    Bottom line: sikkerpånettet.dk/ now gives the site a 100% #security score. There are still improvements to be made (weirdly enough) - specifically I'm looking into supporting DANE for #TLS certificate signatures in #DNS.

    Now that's off the TODO-list :-)

    #mstdndk

  11. Numerous technical and security improvements on the infrastructure that supports mstdn.dk

    Bottom line: sikkerpånettet.dk/ now gives the site a 100% #security score. There are still improvements to be made (weirdly enough) - specifically I'm looking into supporting DANE for #TLS certificate signatures in #DNS.

    Now that's off the TODO-list :-)

    #mstdndk

  12. Figured out some more of the homelab Kubernetes fun tonight: I probably need an etcd operator on the cluster, responding on some-hostname:2379 so that the external-dns service can find what it needs. I don't have this setup yet so nothing is running on :2379.

    I didn't see this mentioned in the docs so tomorrow I'll design something and see if I can get it working.

    I also really should take some better notes, if only for my own documentation. Then I should probably redeploy my original infrastructure.

    #homelab #kubernetes #etcd #dns #externaldns

  13. Figured out some more of the homelab Kubernetes fun tonight: I probably need an etcd operator on the cluster, responding on some-hostname:2379 so that the external-dns service can find what it needs. I don't have this setup yet so nothing is running on :2379.

    I didn't see this mentioned in the docs so tomorrow I'll design something and see if I can get it working.

    I also really should take some better notes, if only for my own documentation. Then I should probably redeploy my original infrastructure.

    #homelab #kubernetes #etcd #dns #externaldns

  14. Figured out some more of the homelab Kubernetes fun tonight: I probably need an etcd operator on the cluster, responding on some-hostname:2379 so that the external-dns service can find what it needs. I don't have this setup yet so nothing is running on :2379.

    I didn't see this mentioned in the docs so tomorrow I'll design something and see if I can get it working.

    I also really should take some better notes, if only for my own documentation. Then I should probably redeploy my original infrastructure.

    #homelab #kubernetes #etcd #dns #externaldns

  15. Figured out some more of the homelab Kubernetes fun tonight: I probably need an etcd operator on the cluster, responding on some-hostname:2379 so that the external-dns service can find what it needs. I don't have this setup yet so nothing is running on :2379.

    I didn't see this mentioned in the docs so tomorrow I'll design something and see if I can get it working.

    I also really should take some better notes, if only for my own documentation. Then I should probably redeploy my original infrastructure.

    #homelab #kubernetes #etcd #dns #externaldns

  16. Figured out some more of the homelab Kubernetes fun tonight: I probably need an etcd operator on the cluster, responding on some-hostname:2379 so that the external-dns service can find what it needs. I don't have this setup yet so nothing is running on :2379.

    I didn't see this mentioned in the docs so tomorrow I'll design something and see if I can get it working.

    I also really should take some better notes, if only for my own documentation. Then I should probably redeploy my original infrastructure.

    #homelab #kubernetes #etcd #dns #externaldns

  17. I spent probably a weeks worth of hours learning more #kubernetes so I could save $60 a month.

    I have a nice 3 node kube cluster with a 2 node #keepalived #haproxy TCP load balancer. All on #ARM VPS.

    Haproxy ingress
    #ExternalDNS operator
    #CertManager
    #RookCeph
    #ArgoCD
    #KeyCloak
    #ValKey
    #Mastodon
    #CloudNativePG #Postgresql

  18. I spent probably a weeks worth of hours learning more #kubernetes so I could save $60 a month.

    I have a nice 3 node kube cluster with a 2 node #keepalived #haproxy TCP load balancer. All on #ARM VPS.

    Haproxy ingress
    #ExternalDNS operator
    #CertManager
    #RookCeph
    #ArgoCD
    #KeyCloak
    #ValKey
    #Mastodon
    #CloudNativePG #Postgresql

  19. I spent probably a weeks worth of hours learning more #kubernetes so I could save $60 a month.

    I have a nice 3 node kube cluster with a 2 node #keepalived #haproxy TCP load balancer. All on #ARM VPS.

    Haproxy ingress
    #ExternalDNS operator
    #CertManager
    #RookCeph
    #ArgoCD
    #KeyCloak
    #ValKey
    #Mastodon
    #CloudNativePG #Postgresql

  20. I spent probably a weeks worth of hours learning more #kubernetes so I could save $60 a month.

    I have a nice 3 node kube cluster with a 2 node #keepalived #haproxy TCP load balancer. All on #ARM VPS.

    Haproxy ingress
    #ExternalDNS operator
    #CertManager
    #RookCeph
    #ArgoCD
    #KeyCloak
    #ValKey
    #Mastodon
    #CloudNativePG #Postgresql

  21. Ha, funktioniert: LoadBalancer für #dovecot wird automatisch erzeugt, automatisch in DNS eingetragen und automatisch ein TLS-Zertifikat erzeugt. Langsam nimmt mein Mail-auf-Kubernetes-Setup Form an.

    #k8s #externaldns #certmanager #rfc2136

  22. Ha, funktioniert: LoadBalancer für #dovecot wird automatisch erzeugt, automatisch in DNS eingetragen und automatisch ein TLS-Zertifikat erzeugt. Langsam nimmt mein Mail-auf-Kubernetes-Setup Form an.

    #k8s #externaldns #certmanager #rfc2136

  23. Ha, funktioniert: LoadBalancer für #dovecot wird automatisch erzeugt, automatisch in DNS eingetragen und automatisch ein TLS-Zertifikat erzeugt. Langsam nimmt mein Mail-auf-Kubernetes-Setup Form an.

    #k8s #externaldns #certmanager #rfc2136

  24. Ha, funktioniert: LoadBalancer für #dovecot wird automatisch erzeugt, automatisch in DNS eingetragen und automatisch ein TLS-Zertifikat erzeugt. Langsam nimmt mein Mail-auf-Kubernetes-Setup Form an.

    #k8s #externaldns #certmanager #rfc2136

  25. Ha, funktioniert: LoadBalancer für #dovecot wird automatisch erzeugt, automatisch in DNS eingetragen und automatisch ein TLS-Zertifikat erzeugt. Langsam nimmt mein Mail-auf-Kubernetes-Setup Form an.

    #k8s #externaldns #certmanager #rfc2136

  26. Low hanging stateless fruits moved from ArgoCD to #FluxCD: #CertManager, #ExternalDNS, #Drone, #Stakater #Reloader. Those seem to be in working order. It's gonna take a bit of time moving the stateful projects though.

  27. Low hanging stateless fruits moved from ArgoCD to #FluxCD: #CertManager, #ExternalDNS, #Drone, #Stakater #Reloader. Those seem to be in working order. It's gonna take a bit of time moving the stateful projects though.

  28. Low hanging stateless fruits moved from ArgoCD to #FluxCD: #CertManager, #ExternalDNS, #Drone, #Stakater #Reloader. Those seem to be in working order. It's gonna take a bit of time moving the stateful projects though.

  29. Low hanging stateless fruits moved from ArgoCD to #FluxCD: #CertManager, #ExternalDNS, #Drone, #Stakater #Reloader. Those seem to be in working order. It's gonna take a bit of time moving the stateful projects though.

  30. Low hanging stateless fruits moved from ArgoCD to #FluxCD: #CertManager, #ExternalDNS, #Drone, #Stakater #Reloader. Those seem to be in working order. It's gonna take a bit of time moving the stateful projects though.