This website requires JavaScript.
Explore
Help
Sign in
chris
/
amarth
Archived
Watch
1
Star
0
Fork
You've already forked amarth
0
Code
Issues
30
Pull requests
Projects
1
Releases
Packages
Wiki
Activity
Actions
Labels
Milestones
New issue
MVP
21
Backlog
Create incident response runbook and escalation path
#60 opened
2025-09-01 14:28:08 +00:00
by
chris
F - Polish & Onboarding
docs
incident-response
ops
Configure Forgejo runners for running OpenTofu jobs
#45 opened
2025-09-01 14:19:26 +00:00
by
chris
C - IaC Flow for Customers
ci
forgejo
runners
Deploy kube-state-metrics and configure per-namespace metrics
#50 opened
2025-09-01 14:22:20 +00:00
by
chris
D - Metering & Billing
billing
monitoring
prometheus
Create starter Terraform/OpenTofu templates for tenants
#49 opened
2025-09-01 14:21:50 +00:00
by
chris
C - IaC Flow for Customers
developer-experience
templates
Deploy k3s cluster on C1/C2/C3
#41 opened
2025-09-01 14:16:56 +00:00
by
chris
B - k3s Cluster & Storage
infra
k3s
kubernetes
Implement billing worker prototype (hourly aggregates + credits)
#51 opened
2025-09-01 14:22:53 +00:00
by
chris
D - Metering & Billing
backend
billing
prototype
Deploy Rook operator + Ceph cluster across C1–C3
#42 opened
2025-09-01 14:17:30 +00:00
by
chris
B - k3s Cluster & Storage
ceph
rook
storage
Add billing UI to owner portal (assign credits, 100% discount)
#52 opened
2025-09-01 14:23:23 +00:00
by
chris
D - Metering & Billing
billing
portal
ui
Prepare C1, C2, C3: disk layout, NixOS base config
#40 opened
2025-09-01 14:15:54 +00:00
by
chris
B - k3s Cluster & Storage
nodes
ops
storage
Deploy Cilium for policy + MetalLB for LB
#43 opened
2025-09-01 14:18:13 +00:00
by
chris
B - k3s Cluster & Storage
k8s
networking
Integrate payment gateway (manual invoicing for MVP)
#59 opened
2025-09-01 14:27:31 +00:00
by
chris
F - Polish & Onboarding
billing
payments
Implement scheduled backups and DR test
#54 opened
2025-09-01 14:24:49 +00:00
by
chris
E - Hardening, Backups & DR
backup
disaster-recovery
ops
Implement sops/agenix for secrets in repo; plan Vault for future
#56 opened
2025-09-01 14:25:53 +00:00
by
chris
E - Hardening, Backups & DR
infra
secrets
security
Write onboarding docs and user-friendly templates
#58 opened
2025-09-01 14:27:03 +00:00
by
chris
F - Polish & Onboarding
docs
onboarding
Configure MinIO backend and Consul locking for OpenTofu runs
#47 opened
2025-09-01 14:20:36 +00:00
by
chris
C - IaC Flow for Customers
opentofu
storage
terraform
Create tenant namespace template and enforcement
#44 opened
2025-09-01 14:18:54 +00:00
by
chris
B - k3s Cluster & Storage
k8s
multi-tenancy
security
Deploy Falco for runtime detection and Kyverno for admission policies
#55 opened
2025-09-01 14:25:23 +00:00
by
chris
E - Hardening, Backups & DR
policies
runtime
security
Automate tenant-scoped service accounts & kubeconfigs
#46 opened
2025-09-01 14:20:02 +00:00
by
chris
C - IaC Flow for Customers
automation
k8s
security
Document multi-region expansion playbook
#57 opened
2025-09-01 14:26:34 +00:00
by
chris
E - Hardening, Backups & DR
architecture
design
docs
Implement plan → approval → apply workflow for IaC runs
#48 opened
2025-09-01 14:21:11 +00:00
by
chris
C - IaC Flow for Customers
ci
security
workflow
Create Prometheus alerts for tenant burn-rate & quota exceed
#53 opened
2025-09-01 14:24:15 +00:00
by
chris
D - Metering & Billing
alerts
billing
monitoring
7
ToDo
Harden M1 OS: SSH key-only, firewall, audit
#33 opened
2025-09-01 14:10:01 +00:00
by
chris
A - Foundations & Hardened Management Node
hardening
nix
security
Deploy Caddy on M1 + automate Let's Encrypt for public services
#34 opened
2025-09-01 14:10:49 +00:00
by
chris
A - Foundations & Hardened Management Node
networking
ops
tls
Install Forgejo on M1 + create repos (infra, portal, billing)
#35 opened
2025-09-01 14:11:12 +00:00
by
chris
A - Foundations & Hardened Management Node
git
ops
Deploy MinIO on M1 and secure for Terraform state
#36 opened
2025-09-01 14:12:13 +00:00
by
chris
A - Foundations & Hardened Management Node
ops
storage
terraform
Deploy Consul: 3-node cluster (M1 + C1 + C2) for locking
#37 opened
2025-09-01 14:12:50 +00:00
by
chris
A - Foundations & Hardened Management Node
consul
ops
storage
Deploy Postgres on M1 and schedule backups
#38 opened
2025-09-01 14:14:33 +00:00
by
chris
A - Foundations & Hardened Management Node
backup
database
ops
Deploy Prometheus + Grafana + Loki on M1 (central)
#39 opened
2025-09-01 14:15:16 +00:00
by
chris
A - Foundations & Hardened Management Node
grafana
monitoring
prometheus
2
In Progress
Prep & inventory (machine specs, network, domains, SSH keys)
#31 opened
2025-09-01 14:08:55 +00:00
by
chris
A - Foundations & Hardened Management Node
docs
ops
setup
Create Nix Flakes repo & deploy-rs skeleton
#32 opened
2025-09-01 14:09:29 +00:00
by
chris
A - Foundations & Hardened Management Node
infra
nix
repo
0
Done