Add new bases for cert-manager (Let's Encrypt + wildcard cert), Longhorn distributed storage, and monitoring (kube-prometheus-stack + Loki + Tempo + Grafana OIDC). Add cloud-init for Scaleway Elastic Metal provisioning. Production overlay: add patches for postgres sizing, SeaweedFS volume, OpenSearch storage, LiveKit service, Pingora host ports, resource limits, and CNPG daily barman backups. Update cert-manager.yaml with full dnsNames for all *.sunbeam.pt subdomains.
11 lines
339 B
YAML
11 lines
339 B
YAML
# Patch: keep LiveKit TURN service as ClusterIP — Pingora routes external TURN traffic.
|
|
# Without this patch, klipper-lb (disabled) or the default LoadBalancer type may
|
|
# conflict with Pingora's host port bindings on port 443.
|
|
apiVersion: v1
|
|
kind: Service
|
|
metadata:
|
|
name: livekit-server-turn
|
|
namespace: media
|
|
spec:
|
|
type: ClusterIP
|