Adds ArgoCD Application to manage Tailscale operator from forge: - ArgoCD Application sourced from internal Forgejo via SSH - DNS config for cluster-to-tailnet name resolution - Egress proxy for accessing forge on indri - ACL grants for k8s workloads to reach forge (ports 3001, 2200) - Template for repository secret with 1Password SSH key reference Key discovery: 1Password op read requires ?ssh-format=openssh parameter to get keys in OpenSSH format that ArgoCD's SSH client can read. Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| .gitignore | ||
| __main__.py | ||
| policy.hujson | ||
| Pulumi.tail8d86e.yaml | ||
| Pulumi.yaml | ||
| pyproject.toml | ||