Commit Graph

  • edfe594e7e fix(playbooks): replace effectivelywild.technitium_dns collection with ansible.builtin.uri Hermes Agent service account 2026-06-07 16:17:05 -05:00
  • 791f13fca5 fix(traefik): correct astro-orbiter → carousel-of-progress in jarvis.yml header Hermes Agent service account 2026-06-07 16:13:48 -05:00
  • c3248fde1f feat(traefik): add TCP SSH entrypoints for Gitea (2221) and JARVIS (10171) Hermes Agent service account 2026-06-07 16:10:30 -05:00
  • c137ea0881 fix(firecrawl): Change Playwright probes from HTTP to TCP Hermes Agent service account 2026-06-06 19:13:36 -05:00
  • 818b6505dd feat(firecrawl): Add ArgoCD Application manifest for GitOps deployment Hermes Agent service account 2026-06-06 19:09:40 -05:00
  • 4a1958876f Day 5: Fix worker probes and HTTPRoute gateway reference Hermes Agent service account 2026-06-06 18:49:52 -05:00
  • 6bdb536848 firecrawl: Day 4 - Add ExternalSecret for 1Password integration Hermes Agent service account 2026-06-06 18:11:59 -05:00
  • 6023ee25e1 feat(firecrawl): Day 3 - Complete Kubernetes manifests for Firecrawl deployment Hermes Agent service account 2026-06-06 17:43:22 -05:00
  • e5d24f557a feat(tekton): Add Firecrawl build pipelines Hermes Agent service account 2026-06-06 17:36:14 -05:00
  • f8e137b67b Tekton Phase 2 Day 3: Complete Harbor authentication and test build Hermes Agent service account 2026-06-06 16:13:31 -05:00
  • 76241e75a8 Add Tekton tasks, pipeline and test Dockerfile Hermes Agent service account 2026-06-06 15:53:57 -05:00
  • d5ce6ff96a fix(tekton): Remove unsupported TektonConfig fields Hermes Agent service account 2026-06-05 21:56:35 -05:00
  • 44b1a2fb33 fix(tekton): Correct ArgoCD repo URL to Gitea Hermes Agent service account 2026-06-05 21:54:42 -05:00
  • 7dc1999928 feat(tekton): Day 2 - Deploy Tekton Operator and components Hermes Agent service account 2026-06-05 21:54:02 -05:00
  • 63d480927d chore(couchdb): switch to production Let's Encrypt certificate Hermes Agent service account 2026-06-05 20:04:38 -05:00
  • fa86fa4c9c fix(couchdb): correct ingress hostname to internal DNS zone Hermes Agent service account 2026-06-05 19:33:39 -05:00
  • 444b597ade fix(couchdb): add erlangCookie to ExternalSecret and external-dns annotation Hermes Agent service account 2026-06-05 19:11:45 -05:00
  • c81a9b7704 fix(couchdb): remove invalid syncWaves from Application spec Hermes Agent service account 2026-06-05 18:39:59 -05:00
  • 6cab6519b1 feat(couchdb): deploy CouchDB for Obsidian sync (communicore) Hermes Agent service account 2026-06-05 18:36:28 -05:00
  • ce992ca743 Fix ClusterSecretStore reference in Harbor ExternalSecrets Hermes Agent service account 2026-06-04 23:47:53 -05:00
  • 092d1ac209 Document robot credential management via 1Password and ExternalSecrets Hermes Agent service account 2026-06-04 23:44:00 -05:00
  • 6acf2f9944 Add ExternalSecrets for Harbor robot account credentials Hermes Agent service account 2026-06-04 23:43:37 -05:00
  • 8d18f42b2e Update Harbor README with robot accounts documentation Hermes Agent service account 2026-06-04 23:38:50 -05:00
  • 152f10ed8b Add ArgoCD PostSync hook for Harbor robot accounts Hermes Agent service account 2026-06-04 23:35:45 -05:00
  • d99ebca829 Add external-dns annotations to Harbor Ingress Hermes Agent service account 2026-06-04 23:16:06 -05:00
  • df91305e13 Cleanup unneeded harbor deployment files and switch to prod certificate. Ryan Blundon 2026-06-04 22:51:53 -05:00
  • 6f2b6e0290 Remove redundant Harbor manifest files Hermes Agent service account 2026-06-04 22:43:57 -05:00
  • fc34833472 Consolidate Harbor TLS certificates into single multi-SAN certificate Hermes Agent service account 2026-06-04 22:39:18 -05:00
  • 7f37211a8b fix(harbor): switch from Gateway API to nginx-ingress Hermes Agent service account 2026-06-04 22:05:55 -05:00
  • ccc956f70b fix(harbor): HTTPRoute should use service port 80, not targetPort 8080 Hermes Agent service account 2026-06-04 21:23:29 -05:00
  • 511f32e521 fix(harbor): correct HTTPRoute backend port (8080) Hermes Agent service account 2026-06-04 21:21:32 -05:00
  • 87a3e84f5b fix(harbor): correct HTTPRoute backend service name (the-seas) Hermes Agent service account 2026-06-04 21:20:06 -05:00
  • 1743145e9f fix(harbor): disable TLS in expose config (Gateway API handles TLS) Hermes Agent service account 2026-06-04 21:12:00 -05:00
  • d561ac6e04 fix: Remove invalid configureUserSettings from harbor-core Hermes Agent service account 2026-06-04 21:08:27 -05:00
  • 99bc31dee9 Simplify Harbor to standard deployment pattern Hermes Agent service account 2026-06-04 20:44:32 -05:00
  • ac8e7acbd4 fix(harbor): add secret key names for database and redis passwords Hermes Agent service account 2026-06-04 20:36:12 -05:00
  • 0ad5dbe741 fix(harbor): remove invalid secretName parameter from core config Hermes Agent service account 2026-06-04 20:34:25 -05:00
  • 7d9b054340 fix(harbor): correct secret key name for core secret Hermes Agent service account 2026-06-04 20:32:40 -05:00
  • 4b1e8a7cac fix(harbor): correct naming convention and use staging certs Hermes Agent service account 2026-06-04 20:25:25 -05:00
  • 8f190eb188 fix(the-seas): correct Harbor image tags to use v-prefix (v2.15.1) Hermes Agent service account 2026-06-04 20:22:34 -05:00
  • 95ae6919b0 feat(platform): add Harbor container registry (the-seas) deployment Hermes Agent service account 2026-06-04 20:20:51 -05:00
  • 52e97f3a7c chore: Remove Firecrawl deployment - pausing until platform infra is ready Hermes Agent service account 2026-06-04 19:10:47 -05:00
  • 461aa1bc54 fix(firecrawl): correct Docker image registry paths Hermes Agent service account 2026-06-04 17:05:06 -05:00
  • c38461a6e8 docs(firecrawl): Add comprehensive refactoring summary Hermes Agent service account 2026-06-04 16:57:28 -05:00
  • 6bcb6fa93f refactor(firecrawl): Convert to production-ready Helm chart with persistent storage Hermes Agent service account 2026-06-04 16:56:29 -05:00
  • f4181349f8 feat: Deploy Firecrawl (spaceship-earth) to fastpass cluster Hermes Agent service account 2026-06-04 16:40:12 -05:00
  • 9d860367cc honcho: document deriver disabled-by-default and manual start procedure Hermes Agent service account 2026-06-02 10:28:11 -05:00
  • f654c59dd5 honcho: add honcho_deriver_autostart flag (default: false) Hermes Agent service account 2026-06-02 10:26:30 -05:00
  • d22ac5cef2 hermes: dashboard auto-restart after updates (Restart=always) Hermes Agent service account 2026-06-02 08:43:49 -05:00
  • 0fd69e0b90 ticktick: store OAuth2 creds + PSTG project ID in vault Hermes Agent service account 2026-05-31 23:41:57 -05:00
  • e8d87ff092 honcho: rotate vault_honcho_openai_api_key (new project with embeddings access) Hermes Agent service account 2026-05-31 23:02:21 -05:00
  • 23612a38f2 honcho: enable OpenAI embeddings for conclusion vectorisation Hermes Agent service account 2026-05-31 22:29:03 -05:00
  • bd100c15e7 hermes: add hermes-dashboard systemd unit (port 9119, fronted by Traefik) Hermes Agent service account 2026-05-31 21:09:27 -05:00
  • dc5392446c fix(honcho/templates): restore Jinja {{ ... }} markers around secrets JARVIS 2026-05-31 00:14:46 -05:00
  • f8cf139b10 fix(honcho): cover all LLM subsystems, enable flush, disable embeddings JARVIS 2026-05-31 00:10:59 -05:00
  • ac955d327f fix(traefik/honcho): drop {{ ansible_managed }} — file is rsync-raw JARVIS 2026-05-30 23:46:36 -05:00
  • 9e6339037a fix(add_service_route): use FQDN for lightning-lane + add technitium collection JARVIS 2026-05-30 23:43:57 -05:00
  • b647f6afee fix(honcho/deriver): invoke package main (src.deriver) not module file JARVIS 2026-05-30 23:37:33 -05:00
  • aabb3d5009 fix(honcho/deriver): invoke via python -m so src.* imports resolve JARVIS 2026-05-30 23:28:52 -05:00
  • 4ed64ab91c feat(vault): add honcho secrets for lincoln deployment JARVIS 2026-05-30 23:20:41 -05:00
  • f57e0bef02 feat(day0): promote expand_root_lv to a canonical day0 step JARVIS 2026-05-30 23:08:35 -05:00
  • 9ed7466fd8 feat(expand_root_lv): new role to grow root LV to fill VG + resize fs JARVIS 2026-05-30 23:03:10 -05:00
  • 4d7766d1b1 feat(honcho): add role + day1 playbook + traefik route for lincoln JARVIS 2026-05-30 22:41:33 -05:00
  • 09ae954085 fix(semaphore/configure): template vault entry requires type='password' Hermes Agent service account 2026-05-29 23:25:07 -05:00
  • 8fd9fd5b20 fix(semaphore/configure): vault key attaches via vaults[] not vault_key_id Hermes Agent service account 2026-05-29 23:13:49 -05:00
  • dcb764eca7 fix(semaphore): ANSIBLE_ROLES_PATH is relative to repo root not playbook dir Hermes Agent service account 2026-05-29 23:11:29 -05:00
  • b6a4ad6816 fix(semaphore): set ANSIBLE_ROLES_PATH in default env Hermes Agent service account 2026-05-29 23:08:42 -05:00
  • bbaaf655fa fix(semaphore): become_key=None (wed has passwordless sudo) Hermes Agent service account 2026-05-29 22:57:00 -05:00
  • 7228dc6e11 feat(semaphore): wed-ssh as the canonical Semaphore SSH key Hermes Agent service account 2026-05-29 22:51:10 -05:00
  • 8953702608 fix(semaphore/configure): build POST bodies via Jinja dict literals Hermes Agent service account 2026-05-29 22:47:13 -05:00
  • 0be33cb8db fix(semaphore/configure): use ['keys'] subscript not .keys attribute Hermes Agent service account 2026-05-29 22:45:16 -05:00
  • 0f0b5db29b debug: temporarily disable no_log on key creation to see API error Hermes Agent service account 2026-05-29 22:44:48 -05:00
  • 009f244739 feat(semaphore): add config-as-code via Semaphore REST API Hermes Agent service account 2026-05-29 22:44:15 -05:00
  • 2f87039f17 vault: add jarvis SSH key, gitea deploy key, and Semaphore API token Hermes Agent service account 2026-05-29 22:37:34 -05:00
  • 72fa38e928 fix(semaphore): force container restart when Quadlet template changes Hermes Agent service account 2026-05-29 21:53:47 -05:00
  • 9e68802090 fix(semaphore): make host-agnostic by omitting SEMAPHORE_WEB_ROOT Hermes Agent service account 2026-05-29 21:52:33 -05:00
  • d05cfcf317 fix(semaphore): provide SEMAPHORE_ADMIN_* env vars for non-interactive first boot Hermes Agent service account 2026-05-29 21:38:44 -05:00
  • 80f810fb0c feat(semaphore): rewrite role with rootful Podman Quadlet + PostgreSQL Hermes Agent service account 2026-05-29 21:34:22 -05:00
  • 9153324795 fix(linux-baseline): correct MOTD padding math Hermes Agent service account 2026-05-29 20:56:38 -05:00
  • 91b5817e5f feat(ansible): add linux-baseline role and day0_linux_baseline playbook Hermes Agent service account 2026-05-29 20:40:04 -05:00
  • 1dfa7889ab chore(playbooks): switch day0_baseline.yml to new day0-baseline role Hermes Agent service account 2026-05-28 22:06:49 -05:00
  • 08d7da0c35 feat(baseline): add clean day0 baseline role (time, packages, hardening) Hermes Agent service account 2026-05-28 21:54:34 -05:00
  • 9ebeb42023 fix(semaphore): add SEMAPHORE_DB_SSLMODE=disable for postgres connection Hermes Agent service account 2026-05-28 21:24:14 -05:00
  • 075f34b1fb fix(semaphore): make network creation task more reliable Hermes Agent service account 2026-05-28 15:22:45 -05:00
  • 210c89c2c7 fix(semaphore): make network creation more robust and earlier in legacy block Hermes Agent service account 2026-05-28 15:20:09 -05:00
  • b93a6e50ab feat(semaphore): add optional aggressive storage cleanup for legacy mode Hermes Agent service account 2026-05-28 15:17:54 -05:00
  • 85cc1f8c6a fix(semaphore): improve container cleanup and volume reuse in legacy mode Hermes Agent service account 2026-05-28 15:16:07 -05:00
  • 8e781b0c54 fix(semaphore): add container cleanup at start of legacy postgres deployment Hermes Agent service account 2026-05-28 15:14:34 -05:00
  • d8ad35b8e9 fix(semaphore): add dedicated network for legacy postgres deployment Hermes Agent service account 2026-05-28 15:13:16 -05:00
  • a9973d1e0f feat(semaphore): add legacy postgres deployment path using podman_container Hermes Agent service account 2026-05-28 15:07:47 -05:00
  • 4113011f63 fixed semaphore template Ryan Blundon 2026-05-28 14:51:04 -05:00
  • 018782d986 fix(semaphore): remove User/Group from quadlet template Hermes Agent service account 2026-05-28 14:49:37 -05:00
  • 3681e8c03e fix(semaphore): make volume creation task more robust Hermes Agent service account 2026-05-28 14:31:06 -05:00
  • 8f377e4cf3 fix(semaphore): create named volumes before deploying quadlets Hermes Agent service account 2026-05-28 14:25:18 -05:00
  • 419acaa40d fix(semaphore): use systemctl start for quadlet services after daemon-reload Hermes Agent service account 2026-05-28 14:08:53 -05:00
  • 42b204bf8a fix(semaphore): make quadlet deployment self-contained with immediate daemon-reload + service start Hermes Agent service account 2026-05-28 14:06:24 -05:00
  • 1d7dcb7d82 fix(semaphore): load role defaults in cleanup playbook so variables are defined Hermes Agent service account 2026-05-28 14:02:33 -05:00
  • d63ca0b4f9 docs(semaphore): add cleanup playbook reference to deploy playbook Hermes Agent service account 2026-05-28 14:01:00 -05:00
  • e9440327aa feat(semaphore): add dedicated cleanup playbook Hermes Agent service account 2026-05-28 10:25:56 -05:00
  • dcc7e282c7 feat(semaphore): complete quadlet deployment for PostgreSQL + Semaphore Hermes Agent service account 2026-05-28 10:22:28 -05:00