## Summary - Split k8s migration plan into phases folder for easier navigation - Added `tag:k8s` to Pulumi ACLs for Kubernetes workloads - Phase 1 work in progress ## Phase 1 Goals - Tailscale Kubernetes Operator - CloudNativePG Operator - PostgreSQL cluster for future app migrations ## Deployment and Testing - [ ] Review Phase 1 plan - [ ] `mise run tailnet-preview` to verify ACL changes - [ ] `mise run tailnet-up` to apply ACL changes - [ ] Create Tailscale OAuth client (manual) - [ ] Deploy operators and PostgreSQL cluster 🤖 Generated with [Claude Code](https://claude.com/claude-code) Reviewed-on: https://forge.tail8d86e.ts.net/eblume/blumeops/pulls/29
101 lines
4.3 KiB
Bash
Executable file
101 lines
4.3 KiB
Bash
Executable file
#!/usr/bin/env bash
|
|
#MISE description="Check that all indri services are online and responding"
|
|
|
|
set -euo pipefail
|
|
|
|
# Colors for output
|
|
RED='\033[0;31m'
|
|
GREEN='\033[0;32m'
|
|
NC='\033[0m' # No Color
|
|
|
|
FAILED=0
|
|
|
|
check_service() {
|
|
local name="$1"
|
|
local check_cmd="$2"
|
|
|
|
printf "%-20s " "$name..."
|
|
if eval "$check_cmd" > /dev/null 2>&1; then
|
|
echo -e "${GREEN}OK${NC}"
|
|
else
|
|
echo -e "${RED}FAILED${NC}"
|
|
FAILED=1
|
|
fi
|
|
}
|
|
|
|
check_http() {
|
|
local name="$1"
|
|
local url="$2"
|
|
|
|
printf "%-20s " "$name..."
|
|
if curl -sf --max-time 5 "$url" > /dev/null 2>&1; then
|
|
echo -e "${GREEN}OK${NC}"
|
|
else
|
|
echo -e "${RED}FAILED${NC}"
|
|
FAILED=1
|
|
fi
|
|
}
|
|
|
|
echo "Checking indri services..."
|
|
echo "=========================="
|
|
echo ""
|
|
|
|
# Check via SSH that services are running on indri
|
|
echo "Local services (via launchctl/brew services):"
|
|
check_service "loki" "ssh indri 'brew services list | grep loki | grep started'"
|
|
check_service "alloy" "ssh indri 'brew services list | grep grafana-alloy | grep started'"
|
|
check_service "prometheus" "ssh indri 'brew services list | grep prometheus | grep started'"
|
|
check_service "grafana" "ssh indri 'brew services list | grep grafana | grep started'"
|
|
check_service "transmission" "ssh indri 'brew services list | grep transmission | grep started'"
|
|
check_service "transmission-metrics" "ssh indri 'launchctl list | grep transmission-metrics | grep -v \"^-\"'"
|
|
check_service "kiwix-serve" "ssh indri 'launchctl list | grep kiwix | grep -v \"^-\"'"
|
|
check_service "forgejo" "ssh indri 'brew services list | grep forgejo | grep started'"
|
|
check_service "devpi" "ssh indri 'launchctl list | grep devpi | grep -v \"^-\"'"
|
|
check_service "postgresql" "ssh indri 'brew services list | grep postgresql | grep started'"
|
|
check_service "miniflux" "ssh indri 'brew services list | grep miniflux | grep started'"
|
|
check_service "zot" "ssh indri 'launchctl list | grep mcquack.eblume.zot | grep -v \"^-\"'"
|
|
check_service "zot-metrics" "ssh indri 'launchctl list | grep zot-metrics | grep -v \"^-\"'"
|
|
check_service "minikube-metrics" "ssh indri 'launchctl list | grep minikube-metrics | grep -v \"^-\"'"
|
|
|
|
echo ""
|
|
echo "HTTP endpoints (via Tailscale):"
|
|
check_http "Loki" "http://indri:3100/ready"
|
|
check_http "Prometheus" "http://indri:9090/-/healthy"
|
|
check_http "Grafana" "https://grafana.tail8d86e.ts.net/api/health"
|
|
check_http "Kiwix" "https://kiwix.tail8d86e.ts.net/"
|
|
check_http "Forgejo" "https://forge.tail8d86e.ts.net/"
|
|
check_http "Devpi" "https://pypi.tail8d86e.ts.net/+api"
|
|
check_http "Miniflux" "https://feed.tail8d86e.ts.net/healthcheck"
|
|
# Transmission RPC is localhost-only by design, check via SSH
|
|
check_service "Transmission RPC" "ssh indri 'curl -sf http://127.0.0.1:9091/transmission/rpc'"
|
|
# Check that transmission metrics are being collected
|
|
check_service "Transmission metrics" "ssh indri 'test -f /opt/homebrew/var/node_exporter/textfile/transmission.prom'"
|
|
# PostgreSQL uses TCP not HTTP, check via pg_isready
|
|
check_service "PostgreSQL" "ssh indri '/opt/homebrew/opt/postgresql@18/bin/pg_isready -h localhost'"
|
|
# Zot registry (via Tailscale service)
|
|
check_http "Zot Registry" "https://registry.tail8d86e.ts.net/v2/_catalog"
|
|
check_service "Zot metrics file" "ssh indri 'test -f /opt/homebrew/var/node_exporter/textfile/zot.prom'"
|
|
check_service "Minikube metrics file" "ssh indri 'test -f /opt/homebrew/var/node_exporter/textfile/minikube.prom'"
|
|
|
|
echo ""
|
|
echo "Kubernetes cluster:"
|
|
check_service "minikube" "ssh indri 'minikube status --format={{.Host}} | grep -q Running'"
|
|
check_service "k8s-apiserver (indri)" "ssh indri 'kubectl get --raw /healthz'"
|
|
check_service "k8s-apiserver (remote)" "kubectl --kubeconfig=$HOME/.kube/minikube-indri/config.yml --context=minikube-indri get --raw /healthz"
|
|
|
|
echo ""
|
|
echo "Kubernetes workloads (via Tailscale):"
|
|
check_http "ArgoCD" "https://argocd.tail8d86e.ts.net/healthz"
|
|
# k8s PostgreSQL - check TCP connection (no auth needed for pg_isready)
|
|
check_service "k8s-pg" "pg_isready -h k8s-pg.tail8d86e.ts.net -p 5432"
|
|
# ArgoCD apps sync status
|
|
check_service "ArgoCD apps synced" "kubectl --context=minikube-indri get applications -n argocd -o jsonpath='{.items[*].status.sync.status}' | grep -v OutOfSync"
|
|
|
|
echo ""
|
|
if [ $FAILED -eq 0 ]; then
|
|
echo -e "${GREEN}All services healthy!${NC}"
|
|
exit 0
|
|
else
|
|
echo -e "${RED}Some services failed health check${NC}"
|
|
exit 1
|
|
fi
|