Switch to filename-based wiki-links (Quartz resolves by filename)
- Convert all wiki-links from title-based to filename-based - Update doc-links to validate against filenames - Add doc-filenames task for duplicate filename detection - Consolidate doc hooks into single local block in pre-commit config Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
This commit is contained in:
parent
d359583d0a
commit
9630655cc9
28 changed files with 166 additions and 149 deletions
|
|
@ -4,8 +4,8 @@ title: blumeops-documentation
|
|||
|
||||
Welcome to the BlumeOps documentation.
|
||||
|
||||
[[readme | Documentation Home]] - Temporary home while docs are being restructured (see [Diataxis](https://diataxis.fr/) restructuring plan)
|
||||
[[README | Documentation Home]] - Temporary home while docs are being restructured (see [Diataxis](https://diataxis.fr/) restructuring plan)
|
||||
|
||||
## Sections
|
||||
|
||||
- [[reference]] - Technical reference cards for services, infrastructure, and operations
|
||||
- [[index | reference]] - Technical reference cards for services, infrastructure, and operations
|
||||
|
|
|
|||
|
|
@ -14,7 +14,7 @@ Individual service reference cards with URLs and configuration details.
|
|||
|
||||
| Service | Description | Location |
|
||||
|---------|-------------|----------|
|
||||
| [[grafana-alloy | Alloy]] | Observability collector (metrics & logs) | indri + k8s |
|
||||
| [[alloy | Alloy]] | Observability collector (metrics & logs) | indri + k8s |
|
||||
| [[argocd]] | GitOps continuous delivery | k8s |
|
||||
| [[borgmatic]] | Backup system | indri |
|
||||
| [[1password]] | Secrets management | cloud + k8s |
|
||||
|
|
@ -36,27 +36,27 @@ Individual service reference cards with URLs and configuration details.
|
|||
|
||||
Host inventory and network configuration.
|
||||
|
||||
- [[host-inventory | Hosts]] - Device inventory
|
||||
- [[hosts | Hosts]] - Device inventory
|
||||
- [[indri]] - Primary server
|
||||
- [[gilbert]] - Development workstation
|
||||
- [[tailscale]] - ACLs, groups, tags
|
||||
- [[service-routing | Routing]] - DNS domains, port mappings
|
||||
- [[routing | Routing]] - DNS domains, port mappings
|
||||
|
||||
## Kubernetes
|
||||
|
||||
Cluster configuration and application registry.
|
||||
|
||||
- [[kubernetes-cluster | Cluster]] - Minikube specs, storage, networking
|
||||
- [[argocd-applications | Apps]] - ArgoCD application registry
|
||||
- [[cluster | Cluster]] - Minikube specs, storage, networking
|
||||
- [[apps | Apps]] - ArgoCD application registry
|
||||
- [[external-secrets]] - Secrets management
|
||||
|
||||
## Storage
|
||||
|
||||
Network storage and backup configuration.
|
||||
|
||||
- [[sifaka-nas | Sifaka]] - Synology NAS configuration
|
||||
- [[sifaka | Sifaka]] - Synology NAS configuration
|
||||
- [[postgresql-storage]] - Database cluster
|
||||
- [[backup-policy | Backups]] - Backup policy and schedule
|
||||
- [[backups | Backups]] - Backup policy and schedule
|
||||
|
||||
## Operations
|
||||
|
||||
|
|
|
|||
|
|
@ -24,4 +24,4 @@ Managed via `Brewfile` and `mise.toml` in the blumeops repo.
|
|||
## Related
|
||||
|
||||
- [[indri]] - Server accessed from gilbert
|
||||
- [[kubernetes-cluster | Cluster]] - Remote k8s access
|
||||
- [[cluster | Cluster]] - Remote k8s access
|
||||
|
|
|
|||
|
|
@ -14,7 +14,7 @@ All devices connected via [Tailscale](https://login.tailscale.com/) tailnet `tai
|
|||
|------|-------------|------|
|
||||
| **Indri** | Mac Mini M1, 2020 - Primary server | [[indri | Details]] |
|
||||
| **Gilbert** | MacBook Air M4, 2025 - Workstation | [[gilbert | Details]] |
|
||||
| **[[sifaka-nas | Sifaka]]** | Synology NAS - Storage & backups | [[sifaka-nas | Details]] |
|
||||
| **[[sifaka | Sifaka]]** | Synology NAS - Storage & backups | [[sifaka | Details]] |
|
||||
| **Mouse** | MacBook Air M2 - Allison's laptop | - |
|
||||
| **UniFi** | UniFi Express 7 - Home WiFi | - |
|
||||
| **Dwarf** | iPad Air - Employer-provided, off tailnet | - |
|
||||
|
|
@ -22,4 +22,4 @@ All devices connected via [Tailscale](https://login.tailscale.com/) tailnet `tai
|
|||
## Related
|
||||
|
||||
- [[tailscale]] - Network configuration
|
||||
- [[service-routing | Routing]] - Service URLs
|
||||
- [[routing | Routing]] - Service URLs
|
||||
|
|
|
|||
|
|
@ -26,13 +26,13 @@ Primary BlumeOps server. Mac Mini M1 (2020).
|
|||
- [[zot]] - Container registry
|
||||
- [[jellyfin]] - Media server
|
||||
- [[borgmatic]] - Backup system
|
||||
- [[grafana-alloy | Alloy]] - Metrics/logs collector
|
||||
- [[alloy | Alloy]] - Metrics/logs collector
|
||||
- Caddy - Reverse proxy for `*.ops.eblu.me`
|
||||
|
||||
**Kubernetes (via minikube):**
|
||||
- [[argocd-applications | All k8s applications]]
|
||||
- [[apps | All k8s applications]]
|
||||
|
||||
## Related
|
||||
|
||||
- [[service-routing | Routing]] - Port mappings
|
||||
- [[kubernetes-cluster | Cluster]] - Minikube details
|
||||
- [[routing | Routing]] - Port mappings
|
||||
- [[cluster | Cluster]] - Minikube details
|
||||
|
|
|
|||
|
|
@ -38,7 +38,7 @@ DNS points to indri's Tailscale IP (100.98.163.89). TLS via Let's Encrypt (ACME
|
|||
| [[navidrome]] | https://dj.ops.eblu.me | Music streaming |
|
||||
| [[jellyfin]] | https://jellyfin.ops.eblu.me | Media server |
|
||||
| [[postgresql]] | pg.ops.eblu.me:5432 | Database |
|
||||
| [[sifaka-nas | Sifaka]] | https://nas.ops.eblu.me | NAS dashboard |
|
||||
| [[sifaka | Sifaka]] | https://nas.ops.eblu.me | NAS dashboard |
|
||||
|
||||
## Tailscale-Only Services
|
||||
|
||||
|
|
|
|||
|
|
@ -58,5 +58,5 @@ Pulumi uses OAuth client from 1Password (blumeops vault):
|
|||
|
||||
## Related
|
||||
|
||||
- [[service-routing | Routing]] - Service URLs
|
||||
- [[host-inventory | Hosts]] - Device inventory
|
||||
- [[routing | Routing]] - Service URLs
|
||||
- [[hosts | Hosts]] - Device inventory
|
||||
|
|
|
|||
|
|
@ -26,7 +26,7 @@ Registry of all applications deployed via [[argocd]].
|
|||
| `grafana` | monitoring | Helm chart (forge mirror) | [[grafana]] |
|
||||
| `grafana-config` | monitoring | `argocd/manifests/grafana-config/` | [[grafana]] |
|
||||
| `immich` | immich | Helm chart | [[immich]] |
|
||||
| `alloy-k8s` | alloy | `argocd/manifests/alloy-k8s/` | [[grafana-alloy | Alloy]] |
|
||||
| `alloy-k8s` | alloy | `argocd/manifests/alloy-k8s/` | [[alloy | Alloy]] |
|
||||
| `kube-state-metrics` | monitoring | `argocd/manifests/kube-state-metrics/` | K8s metrics |
|
||||
| `miniflux` | miniflux | `argocd/manifests/miniflux/` | [[miniflux]] |
|
||||
| `kiwix` | kiwix | `argocd/manifests/kiwix/` | [[kiwix]] |
|
||||
|
|
@ -45,4 +45,4 @@ Registry of all applications deployed via [[argocd]].
|
|||
## Related
|
||||
|
||||
- [[argocd]] - GitOps platform details
|
||||
- [[kubernetes-cluster | Cluster]] - Kubernetes infrastructure
|
||||
- [[cluster | Cluster]] - Kubernetes infrastructure
|
||||
|
|
|
|||
|
|
@ -24,7 +24,7 @@ Single-node Minikube cluster running on [[indri]].
|
|||
|
||||
## Volume Mounting
|
||||
|
||||
Pods mount NFS directly from [[sifaka-nas | Sifaka]]. Docker NATs outbound traffic through indri's LAN IP (192.168.1.50), allowing access to Sifaka's NFS exports.
|
||||
Pods mount NFS directly from [[sifaka | Sifaka]]. Docker NATs outbound traffic through indri's LAN IP (192.168.1.50), allowing access to Sifaka's NFS exports.
|
||||
|
||||
## Registry Mirror
|
||||
|
||||
|
|
@ -34,6 +34,6 @@ Mirrors configured: `registry.ops.eblu.me`, `docker.io`, `ghcr.io`, `quay.io`
|
|||
|
||||
## Related
|
||||
|
||||
- [[argocd-applications | Apps]] - ArgoCD applications
|
||||
- [[apps | Apps]] - ArgoCD applications
|
||||
- [[argocd]] - GitOps deployment
|
||||
- [[zot]] - Registry mirror
|
||||
|
|
|
|||
|
|
@ -11,5 +11,5 @@ Daily automated backups of BlumeOps data.
|
|||
## Components
|
||||
|
||||
- [[borgmatic]] - Backup orchestration
|
||||
- [[sifaka-nas | Sifaka]] - Backup target (NAS)
|
||||
- [[backup-policy]] - What gets backed up and retention
|
||||
- [[sifaka | Sifaka]] - Backup target (NAS)
|
||||
- [[backups | backup-policy]] - What gets backed up and retention
|
||||
|
|
|
|||
|
|
@ -8,7 +8,7 @@ tags:
|
|||
|
||||
TBD. Current state:
|
||||
|
||||
- [[borgmatic]] provides daily backups to [[sifaka-nas | Sifaka]]
|
||||
- [[borgmatic]] provides daily backups to [[sifaka | Sifaka]]
|
||||
- Infrastructure can be rebootstrapped using the blumeops repo
|
||||
- Detailed DR procedures not yet documented
|
||||
|
||||
|
|
|
|||
|
|
@ -12,5 +12,5 @@ Metrics, logs, and dashboards for BlumeOps infrastructure.
|
|||
|
||||
- [[prometheus]] - Metrics storage and querying
|
||||
- [[loki]] - Log aggregation
|
||||
- [[grafana-alloy | Alloy]] - Metrics and log collection
|
||||
- [[alloy | Alloy]] - Metrics and log collection
|
||||
- [[grafana]] - Dashboards and visualization
|
||||
|
|
|
|||
|
|
@ -7,7 +7,7 @@ tags:
|
|||
|
||||
# ArgoCD
|
||||
|
||||
GitOps continuous delivery platform for the [[kubernetes-cluster | Kubernetes cluster]].
|
||||
GitOps continuous delivery platform for the [[cluster | Kubernetes cluster]].
|
||||
|
||||
## Quick Reference
|
||||
|
||||
|
|
@ -33,5 +33,5 @@ GitOps continuous delivery platform for the [[kubernetes-cluster | Kubernetes cl
|
|||
|
||||
## Related
|
||||
|
||||
- [[argocd-applications | Apps]] - Full application registry
|
||||
- [[apps | Apps]] - Full application registry
|
||||
- [[forgejo]] - Git source
|
||||
|
|
|
|||
|
|
@ -16,7 +16,7 @@ Daily backup system using Borg backup, running on indri.
|
|||
| **Install** | mise (pipx) |
|
||||
| **Config** | `~/.config/borgmatic/config.yaml` |
|
||||
| **Schedule** | Daily at 2:00 AM |
|
||||
| **Repository** | `/Volumes/backups/borg/` on [[sifaka-nas | Sifaka]] |
|
||||
| **Repository** | `/Volumes/backups/borg/` on [[sifaka | Sifaka]] |
|
||||
|
||||
## What Gets Backed Up
|
||||
|
||||
|
|
@ -55,6 +55,6 @@ Dashboard: "Borgmatic Backups" in [[grafana]]
|
|||
|
||||
## Related
|
||||
|
||||
- [[backup-policy | Backups]] - Full backup policy
|
||||
- [[sifaka-nas | Sifaka]] - Backup target
|
||||
- [[backups | Backups]] - Full backup policy
|
||||
- [[sifaka | Sifaka]] - Backup target
|
||||
- [[postgresql]] - Database backups
|
||||
|
|
|
|||
|
|
@ -47,4 +47,4 @@ Optional annotation: `grafana_folder: "FolderName"`
|
|||
|
||||
- [[prometheus]] - Metrics datasource
|
||||
- [[loki]] - Logs datasource
|
||||
- [[grafana-alloy | Alloy]] - Data collector
|
||||
- [[alloy | Alloy]] - Data collector
|
||||
|
|
|
|||
|
|
@ -17,10 +17,10 @@ Self-hosted photo and video management.
|
|||
| **Namespace** | `immich` |
|
||||
| **Deployment** | Helm chart (k8s) |
|
||||
| **Database** | [[postgresql]] (CNPG) |
|
||||
| **Storage** | [[sifaka-nas | Sifaka]] photos volume |
|
||||
| **Storage** | [[sifaka | Sifaka]] photos volume |
|
||||
|
||||
## Related
|
||||
|
||||
- [[postgresql]] - Database backend
|
||||
- [[sifaka-nas | Sifaka]] - Photo storage
|
||||
- [[sifaka | Sifaka]] - Photo storage
|
||||
- [[jellyfin]] - Video streaming (separate service)
|
||||
|
|
|
|||
|
|
@ -42,10 +42,10 @@ Dashboard > Playback:
|
|||
## Observability
|
||||
|
||||
- Metrics: `jellyfin_metrics` ansible role
|
||||
- Logs: Forwarded via [[grafana-alloy | Alloy]]
|
||||
- Logs: Forwarded via [[alloy | Alloy]]
|
||||
- Dashboard: "Jellyfin Media Server" in [[grafana]]
|
||||
|
||||
## Related
|
||||
|
||||
- [[navidrome]] - Music streaming
|
||||
- [[sifaka-nas | Sifaka]] - Media storage
|
||||
- [[sifaka | Sifaka]] - Media storage
|
||||
|
|
|
|||
|
|
@ -17,7 +17,7 @@ Offline Wikipedia and ZIM archive server.
|
|||
| **Tailscale URL** | https://kiwix.tail8d86e.ts.net |
|
||||
| **Namespace** | `kiwix` |
|
||||
| **Image** | `ghcr.io/kiwix/kiwix-serve:3.8.1` |
|
||||
| **Storage** | NFS from [[sifaka-nas | Sifaka]] (`/volume1/torrents`) |
|
||||
| **Storage** | NFS from [[sifaka | Sifaka]] (`/volume1/torrents`) |
|
||||
|
||||
## Architecture
|
||||
|
||||
|
|
@ -49,4 +49,4 @@ Full list: `argocd/manifests/kiwix/configmap-zim-torrents.yaml`
|
|||
## Related
|
||||
|
||||
- [[transmission]] - Downloads ZIM files
|
||||
- [[sifaka-nas | Sifaka]] - ZIM storage
|
||||
- [[sifaka | Sifaka]] - ZIM storage
|
||||
|
|
|
|||
|
|
@ -24,7 +24,7 @@ Log aggregation system for BlumeOps infrastructure.
|
|||
|
||||
- Single-node deployment with filesystem storage
|
||||
- TSDB index with 24h period
|
||||
- Logs collected by [[grafana-alloy | Alloy]] and pushed via Loki API
|
||||
- Logs collected by [[alloy | Alloy]] and pushed via Loki API
|
||||
- Queried via [[grafana]]
|
||||
|
||||
## Log Sources
|
||||
|
|
@ -46,6 +46,6 @@ Log aggregation system for BlumeOps infrastructure.
|
|||
|
||||
## Related
|
||||
|
||||
- [[grafana-alloy | Alloy]] - Log collector
|
||||
- [[alloy | Alloy]] - Log collector
|
||||
- [[grafana]] - Log visualization
|
||||
- [[prometheus]] - Metrics counterpart
|
||||
|
|
|
|||
|
|
@ -39,4 +39,4 @@ The `/data` directory contains SQLite database, configuration, and cache.
|
|||
## Related
|
||||
|
||||
- [[jellyfin]] - Video streaming
|
||||
- [[sifaka-nas | Sifaka]] - Music storage
|
||||
- [[sifaka | Sifaka]] - Music storage
|
||||
|
|
|
|||
|
|
@ -23,19 +23,19 @@ Metrics storage and querying for BlumeOps infrastructure.
|
|||
## Data Sources
|
||||
|
||||
### Remote Write (from Alloy)
|
||||
- Indri system metrics via [[grafana-alloy | Alloy]] remote_write
|
||||
- Indri system metrics via [[alloy | Alloy]] remote_write
|
||||
- Textfile metrics: minikube, borgmatic, zot, jellyfin
|
||||
|
||||
### Scrape Targets
|
||||
|
||||
| Target | Metrics |
|
||||
|--------|---------|
|
||||
| `sifaka:9100` | [[sifaka-nas | Sifaka]] NAS (node_exporter) |
|
||||
| `sifaka:9100` | [[sifaka | Sifaka]] NAS (node_exporter) |
|
||||
| `cnpg-metrics.tail8d86e.ts.net:9187` | [[postgresql | CloudNativePG]] metrics |
|
||||
| `kube-state-metrics.monitoring.svc:8080` | Kubernetes resource metrics |
|
||||
|
||||
## Related
|
||||
|
||||
- [[grafana-alloy | Alloy]] - Metrics collector
|
||||
- [[alloy | Alloy]] - Metrics collector
|
||||
- [[grafana]] - Visualization
|
||||
- [[loki]] - Logs counterpart
|
||||
|
|
|
|||
|
|
@ -17,7 +17,7 @@ BitTorrent daemon, primarily for downloading ZIM archives for [[kiwix]].
|
|||
| **Tailscale URL** | https://torrent.tail8d86e.ts.net |
|
||||
| **Namespace** | `torrent` |
|
||||
| **Image** | `lscr.io/linuxserver/transmission:latest` |
|
||||
| **Storage** | NFS PVC from [[sifaka-nas | Sifaka]] |
|
||||
| **Storage** | NFS PVC from [[sifaka | Sifaka]] |
|
||||
|
||||
## Storage Layout
|
||||
|
||||
|
|
@ -43,11 +43,11 @@ When downloads complete, the zim-watcher CronJob detects new ZIMs and restarts K
|
|||
|
||||
## Monitoring
|
||||
|
||||
Basic uptime via blackbox probe in [[grafana-alloy | Alloy]] k8s (Services Health dashboard).
|
||||
Basic uptime via blackbox probe in [[alloy | Alloy]] k8s (Services Health dashboard).
|
||||
|
||||
Web UI shows: active/seeding/paused counts, speeds, disk usage.
|
||||
|
||||
## Related
|
||||
|
||||
- [[kiwix]] - ZIM archive consumer
|
||||
- [[sifaka-nas | Sifaka]] - Download storage
|
||||
- [[sifaka | Sifaka]] - Download storage
|
||||
|
|
|
|||
|
|
@ -30,7 +30,7 @@ OCI-native container registry providing pull-through cache and private image sto
|
|||
|
||||
## Pull-Through Cache
|
||||
|
||||
When [[kubernetes-cluster | minikube]] pulls an image, containerd checks zot first. If cached, returns immediately. If not, zot fetches from upstream, caches it, then returns.
|
||||
When [[cluster | minikube]] pulls an image, containerd checks zot first. If cached, returns immediately. If not, zot fetches from upstream, caches it, then returns.
|
||||
|
||||
## Security Model
|
||||
|
||||
|
|
@ -39,4 +39,4 @@ Network access only (no authentication). Defense is the Tailscale ACL boundary.
|
|||
## Related
|
||||
|
||||
- [[forgejo]] - Container build CI
|
||||
- [[kubernetes-cluster | Cluster]] - Registry consumer
|
||||
- [[cluster | Cluster]] - Registry consumer
|
||||
|
|
|
|||
|
|
@ -7,7 +7,7 @@ tags:
|
|||
|
||||
# Backup Policy
|
||||
|
||||
Daily automated backups from [[indri]] to [[sifaka-nas | Sifaka]] NAS.
|
||||
Daily automated backups from [[indri]] to [[sifaka | Sifaka]] NAS.
|
||||
|
||||
## Schedule
|
||||
|
||||
|
|
@ -53,7 +53,7 @@ Daily automated backups from [[indri]] to [[sifaka-nas | Sifaka]] NAS.
|
|||
|
||||
## Backup Target
|
||||
|
||||
Repository: `/Volumes/backups/borg/` on [[sifaka-nas | Sifaka]]
|
||||
Repository: `/Volumes/backups/borg/` on [[sifaka | Sifaka]]
|
||||
|
||||
## Monitoring
|
||||
|
||||
|
|
@ -67,5 +67,5 @@ Dashboard: "Borgmatic Backups" in [[grafana]]
|
|||
## Related
|
||||
|
||||
- [[borgmatic]] - Backup system details
|
||||
- [[sifaka-nas | Sifaka]] - Backup storage
|
||||
- [[sifaka | Sifaka]] - Backup storage
|
||||
- [[postgresql]] - Database backups
|
||||
|
|
|
|||
|
|
@ -52,7 +52,7 @@ Data protection for sifaka itself currently relies on the Synology RAID 5 config
|
|||
|
||||
## Related
|
||||
|
||||
- [[backup-policy | Backups]] - Backup policy
|
||||
- [[backups | Backups]] - Backup policy
|
||||
- [[borgmatic]] - Backup system
|
||||
- [[immich]] - Photo consumer
|
||||
- [[jellyfin]] - Media consumer
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue