homelab/argocd/apps/authentik.yaml
Nik Afiq e15911305f Revert "feat: move Gitea traffic from gitea.nik4nao.com to gitea.home.arpa"
This reverts commit fd13b8a. The registry-host migration broke image
pulls for home-services/portfolio (internal CA not trusted by
containerd) and has left them Degraded for 11 days; reverting back to
gitea.nik4nao.com pending a decision on how to proceed. Not pushed yet.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-08-19 00:22:27 +09:00

32 lines
985 B
YAML

# targetRevision below is confirmed against the live deployment's
# helm.sh/chart=authentik-2026.2.1 label on the authentik-server pod (checked
# 2026-07-23) -- not a guess. Sync is still left manual (no `automated:`
# block): diff with `kubectl diff` / `argocd app diff` before enabling
# automated sync, since Authentik is the SSO IdP gating Argo CD/Grafana/Gitea
# logins.
apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: authentik
namespace: argocd
annotations:
argocd.argoproj.io/sync-wave: "-1"
spec:
project: default
sources:
- repoURL: https://charts.goauthentik.io
chart: authentik
targetRevision: "2026.2.1"
helm:
valueFiles:
- $values/values/authentik.yaml
- repoURL: https://gitea.nik4nao.com/nik/homelab.git
targetRevision: main
ref: values
destination:
server: https://kubernetes.default.svc
namespace: authentik
syncPolicy:
syncOptions:
- CreateNamespace=true