diff --git a/k3s-tooling/.helmignore b/k3s-tooling/.helmignore new file mode 100644 index 0000000..0e8a0eb --- /dev/null +++ b/k3s-tooling/.helmignore @@ -0,0 +1,23 @@ +# Patterns to ignore when building packages. +# This supports shell glob matching, relative path matching, and +# negation (prefixed with !). Only one pattern per line. +.DS_Store +# Common VCS dirs +.git/ +.gitignore +.bzr/ +.bzrignore +.hg/ +.hgignore +.svn/ +# Common backup files +*.swp +*.bak +*.tmp +*.orig +*~ +# Various IDEs +.project +.idea/ +*.tmproj +.vscode/ diff --git a/k3s-tooling/Chart.yaml b/k3s-tooling/Chart.yaml new file mode 100644 index 0000000..e6d0002 --- /dev/null +++ b/k3s-tooling/Chart.yaml @@ -0,0 +1,5 @@ +apiVersion: v2 +name: k3s-tooling +description: A Helm chart for deploying some kubernetes ressources +type: application +version: 0.1.0 diff --git a/k3s-tooling/templates/_helpers.tpl b/k3s-tooling/templates/_helpers.tpl new file mode 100644 index 0000000..3877a9c --- /dev/null +++ b/k3s-tooling/templates/_helpers.tpl @@ -0,0 +1,62 @@ +{{/* +Expand the name of the chart. +*/}} +{{- define "k3s-tooling.name" -}} +{{- default .Chart.Name .Values.nameOverride | trunc 63 | trimSuffix "-" }} +{{- end }} + +{{/* +Create a default fully qualified app name. +We truncate at 63 chars because some Kubernetes name fields are limited to this (by the DNS naming spec). +If release name contains chart name it will be used as a full name. +*/}} +{{- define "k3s-tooling.fullname" -}} +{{- if .Values.fullnameOverride }} +{{- .Values.fullnameOverride | trunc 63 | trimSuffix "-" }} +{{- else }} +{{- $name := default .Chart.Name .Values.nameOverride }} +{{- if contains $name .Release.Name }} +{{- .Release.Name | trunc 63 | trimSuffix "-" }} +{{- else }} +{{- printf "%s-%s" .Release.Name $name | trunc 63 | trimSuffix "-" }} +{{- end }} +{{- end }} +{{- end }} + +{{/* +Create chart name and version as used by the chart label. +*/}} +{{- define "k3s-tooling.chart" -}} +{{- printf "%s-%s" .Chart.Name .Chart.Version | replace "+" "_" | trunc 63 | trimSuffix "-" }} +{{- end }} + +{{/* +Common labels +*/}} +{{- define "k3s-tooling.labels" -}} +helm.sh/chart: {{ include "k3s-tooling.chart" . }} +{{ include "k3s-tooling.selectorLabels" . }} +{{- if .Chart.AppVersion }} +app.kubernetes.io/version: {{ .Chart.AppVersion | quote }} +{{- end }} +app.kubernetes.io/managed-by: {{ .Release.Service }} +{{- end }} + +{{/* +Selector labels +*/}} +{{- define "k3s-tooling.selectorLabels" -}} +app.kubernetes.io/name: {{ include "k3s-tooling.name" . }} +app.kubernetes.io/instance: {{ .Release.Name }} +{{- end }} + +{{/* +Create the name of the service account to use +*/}} +{{- define "k3s-tooling.serviceAccountName" -}} +{{- if .Values.serviceAccount.create }} +{{- default (include "k3s-tooling.fullname" .) .Values.serviceAccount.name }} +{{- else }} +{{- default "default" .Values.serviceAccount.name }} +{{- end }} +{{- end }} diff --git a/k3s-tooling/templates/cert-manager.yaml b/k3s-tooling/templates/cert-manager.yaml new file mode 100644 index 0000000..69edc08 --- /dev/null +++ b/k3s-tooling/templates/cert-manager.yaml @@ -0,0 +1,30 @@ +{{- if .Values.cert-manager.enabled -}} +apiVersion: argoproj.io/v1alpha1 +kind: Application +metadata: + name: cert-manager + namespace: {{ .Values.argocd.namespace }} + finalizers: + - resources-finalizer.argocd.argoproj.io +spec: + project: {{ .Values.argocd.project }} + source: + repoURL: "https://charts.jetstack.io" # Helm repository for Tailscale + chart: cert-manager # Chart name + targetRevision: {{ .Values.cert-manager.targetRevision }} # Version of the chart (update to latest if needed) + helm: + values: | + crds: + enabled: true + destination: + server: {{ .Values.cert-manager.destination.server }} + namespace: {{ .Values.cert-manager.destination.namespace }} + syncPolicy: + automated: + prune: true # Automatically remove resources no longer in the repo + selfHeal: true # Automatically self-heal when drift is detected + syncOptions: + - ApplyOutOfSyncOnly=true + - ServerSideApply=true + - CreateNamespace=true +{{- end }} diff --git a/k3s-tooling/templates/cnpg.yaml b/k3s-tooling/templates/cnpg.yaml new file mode 100644 index 0000000..b6d25d4 --- /dev/null +++ b/k3s-tooling/templates/cnpg.yaml @@ -0,0 +1,26 @@ +{{- if .Values.cnpg.enable -}} +apiVersion: argoproj.io/v1alpha1 +kind: Application +metadata: + name: cnpg + namespace: {{ .Values.argocd.namespace }} + finalizers: + - resources-finalizer.argocd.argoproj.io +spec: + project: {{ .Values.argocd.project }} + source: + repoURL: "https://cloudnative-pg.github.io/charts" # Helm repository for Tailscale + chart: cloudnative-pg # Chart name + targetRevision: {{ .Values.cnpd.targetRevision }} + destination: + server: {{ .Values.cnpg.destination.server }} + namespace: {{ .Values.cnpg.destination.namespace }} + syncPolicy: + automated: + prune: true # Automatically remove resources no longer in the repo + selfHeal: true # Automatically self-heal when drift is detected + syncOptions: + - ApplyOutOfSyncOnly=true + - ServerSideApply=true + - CreateNamespace=true +{{- end }} diff --git a/k3s-tooling/templates/longhorn.yaml b/k3s-tooling/templates/longhorn.yaml new file mode 100644 index 0000000..f0c072b --- /dev/null +++ b/k3s-tooling/templates/longhorn.yaml @@ -0,0 +1,24 @@ +{{- if .Values.longhorn.enable -}} +apiVersion: argoproj.io/v1alpha1 +kind: Application +metadata: + name: longhorn + namespace: {{ .Values.argocd.namespace }} + finalizers: + - resources-finalizer.argocd.argoproj.io +spec: + project: {{ .Values.argocd.project }} + source: + repoURL: "https://charts.longhorn.io" # Helm repository for Tailscale + chart: longhorn # Chart name + targetRevision: {{ .Values.longhorn.targetRevision }} + destination: + server: {{ .Values.longhorn.destination.server }} + namespace: {{ .Values.longhorn.destination.namespace }} + syncPolicy: + automated: + prune: true # Automatically remove resources no longer in the repo + selfHeal: true # Automatically self-heal when drift is detected + syncOptions: + - CreateNamespace=true +{{- end }} diff --git a/k3s-tooling/templates/tailscale-operator.yaml b/k3s-tooling/templates/tailscale-operator.yaml new file mode 100644 index 0000000..fa45ffe --- /dev/null +++ b/k3s-tooling/templates/tailscale-operator.yaml @@ -0,0 +1,35 @@ +{{- if .Values.tailscaleOperator.enable -}} +apiVersion: argoproj.io/v1alpha1 +kind: Application +metadata: + name: tailscale-operator + namespace: {{ .Values.argocd.namespace }} + finalizers: + - resources-finalizer.argocd.argoproj.io +spec: + project: {{ .Values.argocd.project }} + source: + repoURL: "https://pkgs.tailscale.com/helmcharts" + chart: tailscale-operator + targetRevision: {{ .Values.tailscaleOperator.targetRevision }} + helm: + valuesObject: + oauth: + clientId: {{ .Vault.tailscaleOperator.oauth.clientId }} + clientSecret: {{ .Vault.tailscaleOperator.oauth.clientSecret }} + operatorConfig: + hostname: {{ .Values.tailscaleOperator.operatorHostname }} + apiServerProxyConfig: + mode: "true" + destination: + server: {{ .Values.tailscaleOperator.destination.server }} + namespace: {{ .Values.tailscaleOperator.destination.namespace }} + syncPolicy: + automated: + prune: true # Automatically remove resources no longer in the repo + selfHeal: true # Automatically self-heal when drift is detected + syncOptions: + - ApplyOutOfSyncOnly=true + - ServerSideApply=true + - CreateNamespace=true +{{- end }} diff --git a/k3s-tooling/templates/traefik.yaml b/k3s-tooling/templates/traefik.yaml new file mode 100644 index 0000000..6466785 --- /dev/null +++ b/k3s-tooling/templates/traefik.yaml @@ -0,0 +1,26 @@ +{{- if .Values.traefik.enable -}} +apiVersion: argoproj.io/v1alpha1 +kind: Application +metadata: + name: traefik + namespace: {{ .Values.argocd.namespace }} + finalizers: + - resources-finalizer.argocd.argoproj.io +spec: + project: {{ .Values.argocd.project }} + source: + repoURL: "https://traefik.github.io/charts" + chart: traefik + targetRevision: {{ .Values.traefik.targetRevision }} + destination: + server: {{ .Values.traefik.destination.server }} + namespace: {{ .Values.traefik.destination.namespace }} + syncPolicy: + automated: + prune: true # Automatically remove resources no longer in the repo + selfHeal: true # Automatically self-heal when drift is detected + syncOptions: + - ApplyOutOfSyncOnly=true + - ServerSideApply=true + - CreateNamespace=true +{{- end }} diff --git a/k3s-tooling/values.yaml b/k3s-tooling/values.yaml new file mode 100644 index 0000000..0c538a7 --- /dev/null +++ b/k3s-tooling/values.yaml @@ -0,0 +1,51 @@ +argocd: + namespace: argocd + project: default + +cert-manager: + enable: false + targetRevision: v1.16.x + destination: + server: https://kubernetes.default.svc + namespace: cert-manager + +cnpg: + enable: false + targetRevision: 0.22.x + destination: + server: https://kubernetes.default.svc + namespace: cnpg-system + +longhorn: + enable: false + targetRevision: 1.7.x + destination: + server: https://kubernetes.default.svc + namespace: longhorn-system + +tailscaleOperator: + enable: false + targetRevision: 1.x + destination: + server: https://kubernetes.default.svc + namespace: tailscale + oauth: + clientId: + valueFrom: + secretKeyRef: + name: tailscale-operator-config + key: client-id + clientSecret: + valueFrom: + secretKeyRef: + name: tailscale-operator-config + key: client-secret + operatorHostname: tailscale-operator + +traefik: + enable: false + targetRevision: 25.x + destination: + server: https://kubernetes.default.svc + namespace: kube-system +