Add a app kustomize and the new talos configs

This commit is contained in:
2024-02-14 19:46:39 +00:00
parent 7980076108
commit a7c4f3f1e4
4 changed files with 534 additions and 68 deletions

View File

@@ -1,20 +1,51 @@
#
# Set up
## Prerequisites
Boot from talos iso memory stick (dd mode in rufus).
## Commands
### Talos
- `talosctl -n 192.168.1.101 apply-config -f controlplane.yaml --insecure`
- `talosctl --nodesn.168.1.101 -e 192.168.1.101 --talosconfig=./talosconfig bootstrap`
- `talosctl --talosconfig ./talosconfig -n 192.168.1.101 -e 192.168.1.101 kubeconfig`
- `talosctl -n 192.168.1.101 -e 192.168.1.101 --talosconfig=./talosconfig bootstrap`
- `talosctl -n 192.168.1.101 -e 192.168.1.101 --talosconfig ./talosconfig kubeconfig`
## Cilium
- `helm repo add cilium https://helm.cilium.io/`
- `helm repo update`
```sh
helm install \
cilium \
cilium/cilium \
--version 1.14.0 \
--namespace kube-system \
--set ipam.mode=kubernetes \
--set=kubeProxyReplacement=true \
--set=securityContext.capabilities.ciliumAgent="{CHOWN,KILL,NET_ADMIN,NET_RAW,IPC_LOCK,SYS_ADMIN,SYS_RESOURCE,DAC_OVERRIDE,FOWNER,SETGID,SETUID}" \
--set=securityContext.capabilities.cleanCiliumState="{NET_ADMIN,SYS_ADMIN,SYS_RESOURCE}" \
--set=cgroup.autoMount.enabled=false \
--set=cgroup.hostRoot=/sys/fs/cgroup \
--set=k8sServiceHost=localhost \
--set=k8sServicePort=7445
```
## Flux
- `flux bootstrap git --private-key-file=/config/.ssh/gitea --url ssh://git@gitea.home.joemonk.co.uk:2222/joe/gitops.git --branch main --path=clusters/talos`
### Resetting
Boot the above memory stick and click reset installation, then carry on as above.
## Patching
First create the patch file
i.e.
```patch.yaml
cluster:
network:
@@ -28,9 +59,9 @@ Then apply the patch to the control plane yaml
And apply that control plane yaml with
`talosctl --talosconfig ./talosconfig -n 192.168.1.101 -e 192.168.1.101 apply-config -f controlplane.yaml`
`talosctl -n 192.168.1.101 -e 192.168.1.101 --talosconfig ./talosconfig apply-config -f controlplane.yaml`
## Cilium
`helm repo add cilium https://helm.cilium.io/`
`helm repo update`
`helm repo update`