6d842c7d66
The VM haproxies are being decommissioned; the sites they published via puppet CNAMEs are already served by the k8s haproxy edge, so k8s DNS publishes them instead. - add main.unkin.net A records for sonarr, radarr, lidarr, readarr, prowlarr, nzbget, jellyfin -> 198.18.199.0 - add unkin.net A records for fafflix and git (git-edge.yaml) -> 198.18.199.0, auth -> 198.18.200.4 - point the commented git.yaml cutover at replacing git-edge.yaml Merge alongside puppet-prod halb DNS removal; A records only take effect once the puppet CNAMEs are gone. Reviewed-on: #523 Co-authored-by: unkin-agent <unkin-agent@unkin.net> Co-committed-by: unkin-agent <unkin-agent@unkin.net>
17 lines
510 B
YAML
17 lines
510 B
YAML
---
|
|
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
kind: Kustomization
|
|
|
|
# Individually-managed authoritative records live under <zone>/<type>/<record>.yaml.
|
|
# DNSRecords must live in the same namespace as their BindZone (the operator
|
|
# resolves zoneRef/clusterRef/updateKeyRef within the record's namespace), so
|
|
# these sit alongside the zone in bind-internal, not in the app namespace.
|
|
resources:
|
|
- cluster.yaml
|
|
- tsigkey.yaml
|
|
- zones.yaml
|
|
- unkin-net
|
|
- main-unkin-net
|
|
- ceph-unkin-net
|
|
- acls.yaml
|