feat(cluster): octelium + cordium k3s cluster on remotebox/magicplank/magicbox #47

Open
lavender-sys wants to merge 2 commits from octelium into main
Owner

3-node HA k3s (embedded etcd) over tailscale with octelium node labels,
declarative in-cluster postgres/redis via k3s manifests, declarative
octelium resources via an octeliumctl-apply oneshot, packaged CLIs
(octelium/octeliumctl/octops/cordium), dns records, and a runbook.
Secrets bridge from 1password (opnix) at runtime; nothing enters the
nix store. See modules/services/cluster/README.md for deploy order,
bootstrap steps, and the known 443/caddy conflict.

Co-Authored-By: Claude Fable 5 noreply@anthropic.com
Claude-Session: https://claude.ai/code/session_01GxRWyaAXKBjnRytAAr2NWP

3-node HA k3s (embedded etcd) over tailscale with octelium node labels, declarative in-cluster postgres/redis via k3s manifests, declarative octelium resources via an octeliumctl-apply oneshot, packaged CLIs (octelium/octeliumctl/octops/cordium), dns records, and a runbook. Secrets bridge from 1password (opnix) at runtime; nothing enters the nix store. See modules/services/cluster/README.md for deploy order, bootstrap steps, and the known 443/caddy conflict. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01GxRWyaAXKBjnRytAAr2NWP
feat(cluster): octelium + cordium k3s cluster on remotebox/magicplank/magicbox
All checks were successful
nix-eval / evaluate (push) Successful in 28s
nix-build-pr / build (pull_request) Successful in 36s
e428e0dbd5
3-node HA k3s (embedded etcd) over tailscale with octelium node labels,
declarative in-cluster postgres/redis via k3s manifests, declarative
octelium resources via an octeliumctl-apply oneshot, packaged CLIs
(octelium/octeliumctl/octops/cordium), dns records, and a runbook.
Secrets bridge from 1password (opnix) at runtime; nothing enters the
nix store. See modules/services/cluster/README.md for deploy order,
bootstrap steps, and the known 443/caddy conflict.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01GxRWyaAXKBjnRytAAr2NWP
lavender-sys force-pushed octelium from e428e0dbd5
All checks were successful
nix-eval / evaluate (push) Successful in 28s
nix-build-pr / build (pull_request) Successful in 36s
to 40de9c43c0
All checks were successful
nix-eval / evaluate (push) Successful in 30s
nix-build-pr / build (pull_request) Successful in 34s
2026-07-08 17:52:54 -04:00
Compare
Configure Octelium cluster, bootstrap, and local QEMU lab
All checks were successful
nix-eval / evaluate (push) Successful in 36s
nix-build-pr / build (pull_request) Successful in 39s
0bd770b3c1
Added declarative configurations for Octelium cluster setup, including gateway endpoint pinning, TLS certificate management, and integrations for public and private dataplane nodes. Introduced a self-contained QEMU-based lab environment for local testing, with automated cluster bootstrapping and Cordium installation. Enhanced host-specific setups like Caddy SNI passthrough for Octelium namespaces and dynamic DNS updates.
All checks were successful
nix-eval / evaluate (push) Successful in 36s
nix-build-pr / build (pull_request) Successful in 39s
This pull request is broken due to missing fork information.
View command line instructions

Checkout

From your project repository, check out a new branch and test the changes.
git fetch -u origin octelium:octelium
git switch octelium

Merge

Merge the changes and update on Forgejo.
git switch main
git merge --no-ff octelium
git switch octelium
git rebase main
git switch main
git merge --ff-only octelium
git switch octelium
git rebase main
git switch main
git merge --no-ff octelium
git switch main
git merge --squash octelium
git switch main
git merge --ff-only octelium
git switch main
git merge octelium
git push origin main
Sign in to join this conversation.
No reviewers
nea
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
LAN/lannix!47
No description provided.