The umbrella charts for my personal Kubernetes cluster.
Most of the tools are completely overkill, but this allows me to test various apps of https://landscape.cncf.io/.
Fetch cert.pem
:
$ kubeseal --controller-name=clust-config-sealed-secrets --controller-namespace=default --fetch-cert > cert.pem
Encrypt :
$ kubeseal --format=yaml --cert /path/to/cert.pem < /path/to/secrets-unsealed.yaml > /path/to/secrets-sealed.yaml
Fetch main.key
:
$ kubectl get secret -n default sealed-secrets-keyxxxx -o yaml > main.key
Decrypt
$ kubeseal --recovery-unseal --recovery-private-key main.key < /path/to/secrets-sealed.yaml > /path/to/secrets-unsealed.yaml
- Remove hardcoded fullname
- Clean PVC
- Storageclass
- Size
- Check retention
- Remove useless LogsIntegration / PodLogs
- Check other Grafana agent crd
- Update dashboards with log
- Save dasboard as code
- Add pods dashboard