19 Commits

Author SHA1 Message Date
Tom Alexander
85649d7b6c
Trust flux's ssh key in the yaml git repo. 2026-03-19 18:17:02 -04:00
Tom Alexander
bf2712331e
Generic secrets for ssh keys. 2026-03-19 18:17:02 -04:00
Tom Alexander
575a355bfc
Generic secrets for pgp keys. 2026-03-19 18:17:02 -04:00
Tom Alexander
593e01cbf9
Generate kubernetes secrets for ssh keys. 2026-03-19 18:17:01 -04:00
Tom Alexander
97d48f1035
Install CoreDNS. 2026-03-19 18:17:01 -04:00
Tom Alexander
2c58f4ee8e
Generate pgp keys for sops. 2026-03-19 18:17:01 -04:00
Tom Alexander
ea62ed81bb
Generate ssh keys for flux bootstrap. 2026-03-19 18:17:01 -04:00
Tom Alexander
15a101793d
Move the cluster bootstrap into the keys flake.
Bootstrapping the cluster needs access to secrets, so I am moving it into the keys flake.
2026-03-19 18:17:01 -04:00
Tom Alexander
37f5564f74
Add kube-proxy. 2026-03-19 18:16:59 -04:00
Tom Alexander
066c8bbcff
Add kubelet. 2026-03-19 18:16:59 -04:00
Tom Alexander
0ecf8b7f84
Add kube-scheduler. 2026-03-19 18:16:59 -04:00
Tom Alexander
c3ded367e6
Add kube-controller-manager. 2026-03-19 18:16:59 -04:00
Tom Alexander
d2e59e5d0d
Fix launching kube-apiserver. 2026-03-19 18:16:59 -04:00
Tom Alexander
72345e363f
Move the encryption config into a package. 2026-03-19 18:16:58 -04:00
Tom Alexander
2f35f56c72
Switch to generating certs with openssl. 2026-03-19 18:16:58 -04:00
Tom Alexander
2b037dc8ad
Add controller proxy certs. 2026-03-19 18:16:58 -04:00
Tom Alexander
6ffc4c92fd
Add requestheader-client-ca. 2026-03-19 18:16:58 -04:00
Tom Alexander
fcf1200114
Add service account. 2026-03-19 18:16:58 -04:00
Tom Alexander
3f6ec161d3
Add configs for a new kubernetes cluster on NixOS. 2026-03-19 18:16:57 -04:00