11 Commits

Author SHA1 Message Date
Tom Alexander
1902e132a7
Enable the firewall.
Now that we have networking working, I can enable the firewall and confirm nothing breaks.
2026-02-21 15:11:13 -05:00
Tom Alexander
740e3a17e5
Build the cilium manifest automatically in nix. 2026-02-21 15:11:12 -05:00
Tom Alexander
5c4ac7ea59
Allow pods to directly speak to the public internet on their own public IPv6 addresses. 2026-02-21 15:11:12 -05:00
Tom Alexander
323e2fff83
Enable ipv4 and tunnel routing. 2026-02-21 15:11:12 -05:00
Tom Alexander
f5286bd10e
Switch to kubernetes ipam mode. 2026-02-21 15:11:11 -05:00
Tom Alexander
9529f4b805
Generate kubernetes secrets for ssh keys. 2026-02-21 15:11:10 -05:00
Tom Alexander
2f1075c20c
Set up flux. 2026-02-21 15:11:09 -05:00
Tom Alexander
2d49aff563
Some networking fixes. 2026-02-21 15:11:08 -05:00
Tom Alexander
ac9fa195ae
Add cilium bootstrap. 2026-02-21 15:11:08 -05:00
Tom Alexander
fbfa3dc5dc
Add kube-proxy. 2026-02-21 15:11:08 -05:00
Tom Alexander
4c029aa0b0
Add configs for a new kubernetes cluster on NixOS. 2026-02-21 15:11:06 -05:00