feat(synapse): update ingress to use traefik ingress class and bump version
feat(syncthing-discovery): introduce syncthing discovery service with deployment and ingress
feat(syncthing-relay): add syncthing relay server with deployment and ingress configuration
fix(taiga): update liveness and readiness probes to use tcpSocket for health checks
fix(taiga): change PVC access mode to ReadWriteMany for media and static storage
feat(traefik): add icon and ignore rules for traefik service
docs(ushahidi): add notes for Redis configuration and Laravel startup probe adjustments
feat(ushahidi): implement dedicated Redis deployment for Ushahidi
fix(vllm): update deployment strategy and readiness/liveness probes for improved stability
fix(writefreely): pin writefreely image version to v0.15.1 for consistency
docs(zulip): add notes for TLS-terminating reverse proxy configuration and expected behavior
pretix/standalone runs gunicorn + celery + celery-beat in one container
and OOMKilled at 4Gi. Increased limit to 6Gi, request to 512Mi.
eventyay: add nginx sidecar to serve static files, update health probes
to check a static asset at port 8080, add create-superuser script,
register script in manifest.
crowdsec: middleware fix (previously uncommitted).
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
The karrot-frontend nginx template hardcodes Docker's DNS resolver
(127.0.0.11) which doesn't exist in Kubernetes. Added a ConfigMap to
override the template, removing the Docker DNS resolver by using a
direct proxy_pass with no nginx variable (which would force runtime
resolution). Also adds a README with usage instructions.
Documents lessons learned in ADDING-APPS-NOTES.md:
- Note 24: nginx Docker DNS resolver doesn't work in Kubernetes; any
nginx variable in proxy_pass (including $request_uri) forces runtime
DNS resolution requiring a resolver directive
- Note 25: ConfigMap changes don't restart pods; subPath mounts never
auto-update; always follow with kubectl rollout restart
- Note 26: includeSelectors mismatch affects every deployment in an
app — check all endpoints, not just the web-facing one
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>