{"id":25497219,"url":"https://github.com/kha7iq/homeops","last_synced_at":"2025-09-11T05:05:27.173Z","repository":{"id":277800501,"uuid":"931909941","full_name":"kha7iq/homeops","owner":"kha7iq","description":"GitOps-managed homelab with Talos, Kubernetes, Argo CD, and Bitwarden for secrets managment.","archived":false,"fork":false,"pushed_at":"2025-02-16T07:19:00.000Z","size":82,"stargazers_count":0,"open_issues_count":0,"forks_count":0,"subscribers_count":1,"default_branch":"main","last_synced_at":"2025-02-16T08:19:59.278Z","etag":null,"topics":["argocd","bitwarden","external-secrets","homelab","kubernetes","talos"],"latest_commit_sha":null,"homepage":"","language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/kha7iq.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2025-02-13T03:48:23.000Z","updated_at":"2025-02-16T07:20:22.000Z","dependencies_parsed_at":"2025-02-16T08:31:32.031Z","dependency_job_id":null,"html_url":"https://github.com/kha7iq/homeops","commit_stats":null,"previous_names":["kha7iq/homeops"],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/kha7iq%2Fhomeops","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/kha7iq%2Fhomeops/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/kha7iq%2Fhomeops/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/kha7iq%2Fhomeops/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/kha7iq","download_url":"https://codeload.github.com/kha7iq/homeops/tar.gz/refs/heads/main","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":239576779,"owners_count":19662114,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["argocd","bitwarden","external-secrets","homelab","kubernetes","talos"],"created_at":"2025-02-19T01:18:50.868Z","updated_at":"2025-09-11T05:05:27.164Z","avatar_url":"https://github.com/kha7iq.png","language":null,"funding_links":[],"categories":[],"sub_categories":[],"readme":"# 🏗️ HomeOps\n\nThis repository contains the infrastructure and Kubernetes cluster configuration for my homelab, managed using GitOps principles.  \n\nThe stack is powered by **[Talos](https://talos.dev)**, **[Kubernetes](https://kubernetes.io/)**, and **[Argo CD](https://argoproj.github.io/cd/)**, \nwith automation assistance from **[Renovate](https://www.mend.io/renovate/)**. \n\nMost workloads run on a **Talos-powered Kubernetes cluster**, while **storage services** are handled by a dedicated\n**[OpenMediaVault](https://www.openmediavault.org/) Server \u0026 [Longhorn](https://github.com/longhorn/longhorn)**.  \nTo securely manage secrets, it uses **[External Secrets Operator](https://external-secrets.io/)**  \nintegrated with **[Bitwarden](https://bitwarden.com/)** as the secret backend.\n\nConfiguration is structured using **Kustomized Helm**, with **[Argo CD](https://argoproj.github.io/cd/)** orchestrating application deployments.  \n\n---\n\n## 🛠️ Core Components  \n\nHere’s a quick rundown of the key technologies in this setup:  \n\n- **[Cilium](https://cilium.io/):** eBPF-based networking, observability, and security for Kubernetes.  \n- **[Argo CD](https://argo-cd.readthedocs.io/en/stable/):** GitOps-driven continuous deployment for Kubernetes workloads.  \n- **[Cert-manager](https://cert-manager.io/):** Automated certificate management for TLS security.  \n- **[External Secrets](https://external-secrets.io/):** Open-source external secret management systems.  \n- **[Gateway API](https://gateway-api.sigs.k8s.io/):** The next-gen Kubernetes Ingress for advanced traffic routing.  \n- **[Technitium](https://github.com/TechnitiumSoftware/DnsServer):** DNS Server \u0026 ad-blocker.  \n- **[Netbird](https://netbird.io/):** Secure, self-hosted VPN alternative with a mesh networking approach.  \n\n---\n\n## 🗃️ Folder Structure\n\n```shell\nhomeops\n├── 📂 argocd-apps\n│   ├── databases\n│   ├── logging\n│   ├── network\n│   ├── observability\n│   ├── security\n│   ├── tools\n│   └── web\n├── 📂 bootstrap\n│   ├── argocd\n│   ├── cilium\n│   ├── crds\n│   ├── csr-approver\n│   └── external-secrets\n├── 📂 services\n│   ├── database\n│   ├── network\n│   ├── observability\n│   ├── security\n│   ├── storage\n│   ├── tools\n│   └── web\n└── 📂 talos\n    ├── clusterconfig\n    └── patches\n```\n\n\n## 🗄️ Hardware Overview\n\nBelow is a list of the hardware used in the HomeOps setup:\n\n| Device               | Model             | CPU                         | RAM   | Storage                        | Role                |\n|----------------------|------------------|-----------------------------|-------|--------------------------------|---------------------|\n| Lenovo SFF M900 (x4) | Lenovo M900 SFF  | Intel Core i5 @ 3.2 GHz     | 32GB  | 512GB SATA SSD + 128GB NVMe   | Worker Nodes        |\n| Raspberry Pi 4       | RPI 4            | ARM Cortex-A72 @ 1.5 GHz    | 8GB   | 32GB MicroSD                  | Master Node         |\n| Raspberry Pi 3       | RPI 3            | ARM Cortex-A53 @ 1.2 GHz    | 1GB   | 16GB                            | Dedicated DNS Server |\n| Desktop             | Custom Build      | Intel Core i7-6700 @ 3.4 GHz | 16GB  | 2TB SATA SSD                   | NAS (Some other Services) |\n\n\n## Bootstrapping Your HomeOps Environment\n\nFor detailed steps on bootstrapping your environment, check out the [Bootstrap Guide](bootstrap/README.md).\n\n## ✅ TODO List\n\n- [x] 🔧 **Configure Renovate for Automated Dependency Updates**  \n\n- [ ] 🚀 **Improve networking policies with Cilium.**  \n\n- [ ] 📜 **Document services configuration \u0026 deployment.**  \n\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fkha7iq%2Fhomeops","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fkha7iq%2Fhomeops","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fkha7iq%2Fhomeops/lists"}