This was the plan and I finally got around doing it. The original list was:

  • A docker registry for pushing and pulling images too. Maybe I can setup Forgejo to also be a registry, but just the docker registry might be enough. The image comes from Docker Hub.
  • Caddy with L4 forwarding, I can easily make the image myself, and push it to the local registry.
  • S3 storage so that I can make backups with Kopia - probably going to use Garage for this, doesn’t need a certificate and should only advertise itself on the internal network - not sure how to do this, without actively blocking.
  • atomdns as a DNS server.
  • prometheus and grafana of course.
  • Git hosting, the server is now holding some bare git repos… Forgejo does sound nice…

Note, if you are reading this then miek.nl is served via a docker image through Uncloud.

But taking stock of the list, some things did change a little:

  • Deployed Forgejo, so I have Git repos and a Docker registry.
  • Caddy with L4 forwarding for ssh, not dns, this is be able to use Forgejo.
  • S3 storage for Kopia is not needed, you can do it now with sftp, directly on the filesystem.
  • atomdns is the DNS server, but running as a systemd unit, so outside of the cluster.
  • Prometheus and Grafana still to do; wondering what I actually want out of it.