Tuan-Dat Tran
e8df950e87
chore(k3s): update vault-encrypted cluster join token
2026-04-27 21:39:37 +02:00
Tuan-Dat Tran
5bc3024eaf
feat(k3s): replace nginx loadbalancer with kube-vip for control-plane HA
...
Deploys kube-vip as a DaemonSet on all k3s server nodes, advertising a
VIP (192.168.20.2) via ARP. Eliminates the single-point-of-failure
k3s-loadbalancer VM.
- New kube_vip role: RBAC + DaemonSet templates, TLS SAN cert rotation
- playbooks/kube-vip.yaml: migration playbook (serial=1, idempotent)
- Updated k3s install tasks (server primary/secondary, agent) to use k3s_vip
instead of the loadbalancer VM IP
- Added k3s_vip: 192.168.20.2 to group_vars (below DHCP range .11-.250)
Migration steps in playbook header comment.
2026-04-26 12:08:42 +02:00
Tuan-Dat Tran
e87dcd06f3
chore(k3s): rotate cluster token secret
2026-04-23 08:06:08 +02:00
Tuan-Dat Tran
ef652fac20
refactor: yml -> yaml
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-11-07 20:44:14 +01:00
Tuan-Dat Tran
48aec11d8c
feat(common): added iscsi for longhorn on k3s
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-09-07 18:17:33 +02:00
Tuan-Dat Tran
89c51aa45c
feat(argo): app-of-app argo
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-25 07:58:41 +02:00
Tuan-Dat Tran
976cad51e2
refactor(k3s): enhance cluster setup and enable ArgoCD apps
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-22 07:23:23 +02:00
Tuan-Dat Tran
4aa939426b
refactor(k3s): enhance kubeconfig generation and token management
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-13 09:33:39 +02:00
Tuan-Dat Tran
9cce71f73b
refactor(k3s): manage token securely and install guest agent
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-13 02:15:01 +02:00
Tuan-Dat Tran
97a5d6c41d
refactor(k3s): centralize k3s primary server IP and integrate Netcup DNS
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-13 01:30:05 +02:00
Tuan-Dat Tran
f1b0cfad2c
refactor(k3s): streamline inventory and primary server IP handling
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-13 00:40:48 +02:00
Tuan-Dat Tran
609e000089
refactor(ansible): centralize inventory and variables in 'vars' directory
...
Signed-off-by: Tuan-Dat Tran <tuan-dat.tran@tudattr.dev >
2025-07-12 21:38:53 +02:00