prole/infrastructure/roles/k3s/templates
chrisfu 792329ddd2 Milestone: monitoring deployment + svc firewall persistence
- k3s role: persist svc.prole.org reachability with a systemd oneshot that inserts ACCEPT rules ahead of Tailscale filter rules (configurable ports/chain).

- init_monitoring: enable Grafana datasource sidecar and provision a stable Prometheus datasource (uid 'prometheus') so CloudNativePG dashboards bind correctly.

- tests: assert datasource sidecar config and datasource ConfigMap is applied.

Co-authored-by: Junie <junie@jetbrains.com>
2026-03-19 12:19:02 -07:00
..
config.yaml.j2 checkpoint: k3s agent config + node labels + registry optimizations 2026-03-07 03:14:26 -08:00
prole-svc-iptables-allow.service.j2 Milestone: monitoring deployment + svc firewall persistence 2026-03-19 12:19:02 -07:00
prole-svc-iptables-allow.sh.j2 Milestone: monitoring deployment + svc firewall persistence 2026-03-19 12:19:02 -07:00
registries.yaml.j2 Enable TLS for k3s registry and deploy SSL certs 2026-03-10 00:58:08 -07:00
systemd-override.conf.j2 ansible: treat /var/lib/rancher as local K3s state 2026-03-15 23:20:55 -07:00