summaryrefslogtreecommitdiff
path: root/f3s/forgejo/helm-chart/templates/service.yaml
diff options
context:
space:
mode:
authorPaul Buetow <paul@buetow.org>2026-07-26 09:57:28 +0300
committerPaul Buetow <paul@buetow.org>2026-07-26 09:57:28 +0300
commita3f216fc2cce2299cf66e174fb927cc05dde97dd (patch)
treec8b89ccbd7c81c3a11a6a6e7872efc77b0b7dfb9 /f3s/forgejo/helm-chart/templates/service.yaml
parentaaa786fcea8de25be1bd2eff8bc35afd1bc7482a (diff)
forgejo: add a standalone Forgejo install at code.f3s.buetow.org
Deliberately independent of the cgit git-server: separate namespace (services), separate NFS volumes, separate SSH NodePort (30222 vs 30022), and no shared storage. cgit keeps serving the existing 80 bare repos at c-git.f3s.buetow.org and is not touched. Forgejo starts empty; repos get migrated by hand later. ArgoCD deliberately keeps reading conf.git from the existing git-server, so Forgejo has no consumers and cannot take cluster deploys down with it. SQLite rather than a PostgreSQL pod: single writer (replicas 1 + Recreate) and NFSv4.2 does real byte-range locking, so the usual SQLite-on-NFS failure mode does not apply. Uses the -rootless image so the pod runs wholly as UID 1000 with all capabilities dropped, and both volumes carry the .nfs-sentinel guard. The installer is locked and registration disabled because the instance is reachable from the internet; the admin account is created via the CLI. code.f3s.buetow.org added to @f3s_hosts, which drives the DNS zone, the relayd route, the ACME cert and the gogios checks. Not yet activated: the ArgoCD Application still needs applying, the NFS directories creating, and the frontends deploying. See f3s/forgejo/README.md. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Diffstat (limited to 'f3s/forgejo/helm-chart/templates/service.yaml')
-rw-r--r--f3s/forgejo/helm-chart/templates/service.yaml36
1 files changed, 36 insertions, 0 deletions
diff --git a/f3s/forgejo/helm-chart/templates/service.yaml b/f3s/forgejo/helm-chart/templates/service.yaml
new file mode 100644
index 0000000..7c3bfe7
--- /dev/null
+++ b/f3s/forgejo/helm-chart/templates/service.yaml
@@ -0,0 +1,36 @@
+apiVersion: v1
+kind: Service
+metadata:
+ name: forgejo
+ namespace: services
+ labels:
+ app: forgejo
+spec:
+ selector:
+ app: forgejo
+ ports:
+ - name: http
+ protocol: TCP
+ port: 80
+ targetPort: 3000
+ type: ClusterIP
+---
+# SSH for git clone/push. NodePort 30222 -- git-server/cgit already owns 30022,
+# and the two installs are intentionally independent.
+apiVersion: v1
+kind: Service
+metadata:
+ name: forgejo-ssh
+ namespace: services
+ labels:
+ app: forgejo
+spec:
+ selector:
+ app: forgejo
+ ports:
+ - name: ssh
+ protocol: TCP
+ port: 2222
+ targetPort: 2222
+ nodePort: 30222
+ type: NodePort