Modern self-hosting framework, fully automated from empty disk to operating services with a single command.
Go to file
2022-05-13 22:45:16 +07:00
.tekton ci: add gitleaks task 2022-04-17 12:54:39 +07:00
apps feat: add app name and icon for all ingress 2022-05-04 09:17:42 +07:00
bootstrap chore: remove outdated TODOs 2022-05-13 22:45:16 +07:00
docs docs: update Mermaid syntax style 2022-05-04 01:22:40 +07:00
external chore(deps): update all non-major dependencies helm releases 2022-03-23 15:07:13 +00:00
metal chore(k3s): ugprade to latest patch 1.23.5 2022-04-28 11:51:44 +07:00
platform chore: remove outdated TODOs 2022-05-13 22:45:16 +07:00
scripts feat(scripts): get Vault root token 2022-05-12 12:12:45 +07:00
system refactor(platform): replace Authentik with Dex 2022-05-07 11:55:29 +07:00
tools refactor!: switch dev environment from Vagrant to k3d 2022-04-04 03:21:42 +07:00
.gitattributes style: do not detect YAML files 2021-12-25 19:54:26 +07:00
.gitignore refactor!: switch dev environment from Vagrant to k3d 2022-04-04 03:21:42 +07:00
.yamllint.yaml style: add yamllint rules 2021-12-26 12:19:05 +07:00
LICENSE.md style: convert LICENSE to Markdown 2021-11-18 00:35:38 +07:00
Makefile build: PHONY by default for all global target 2022-04-22 07:53:34 +07:00
README.md chore: remove outdated TODOs 2022-05-13 22:45:16 +07:00
renovate.json5 chore(renovate): update config 2022-01-28 01:05:36 +07:00

Khue's Homelab

chat tag document license stars

This project utilizes Infrastructure as Code and GitOps to automate provisioning, operating, and updating self-hosted services in my homelab. It can be used as a highly customizable framework to build your own homelab.

Current status: ALPHA

Overview

This section provides a high level overview of the project. For further information, please see the documentation.

Hardware

Hardware

  • 4 × NEC SFF PC-MK26ECZDR (Japanese version of the ThinkCentre M700):
    • CPU: Intel Core i5-6600T @ 2.70GHz
    • RAM: 16GB
    • SSD: 128GB
  • TP-Link TL-SG108 switch:
    • Ports: 8
    • Speed: 1000Mbps

Features

Project status: Alpha (see roadmap below)

  • Common applications: Gitea, Seafile, Jellyfin, Paperless...
  • Automated bare metal provisioning with PXE boot
  • Automated Kubernetes installation and management
  • Installing and managing applications using GitOps
  • Automatic rolling upgrade for OS and Kubernetes
  • Automatically update apps (with approval)
  • Modular architecture, easy to add or remove features/components
  • Automated certificate management
  • Automatically update DNS records for exposed services
  • Expose services to the internet securely with Cloudflare Tunnel
  • CI/CD platform
  • Private container registry
  • Distributed storage
  • Support multiple environments (dev, prod)
  • Monitoring and alerting 🚧
  • Automated offsite backups 🚧
  • Single sign-on 🚧

Some demo videos and screenshots are shown here. They can't capture all of the project's features, but they are sufficient to get a concept of it.

Deployment
Deploy with a single command (after updating the config files of course)
PXE boot
PXE boot
Homepage with Ingress discovery powered by Hajimari
Git server powered by Gitea
Continuous integration with Tekton
Continuous deployment with ArgoCD
Monitoring dashboard powered by Grafana
Matrix chat server powered by Element and Dendrite
Cluster management using Lens (or you can just use kubectl)
Secret management with Vault

Tech stack

Logo Name Description
Ansible Automate bare metal provisioning and configuration
ArgoCD GitOps tool built to deploy applications to Kubernetes
cert-manager Cloud native certificate management
Cloudflare DNS and Tunnel
Docker Ephermeral PXE server and convenient tools container
ExternalDNS Synchronizes exposed Kubernetes Services and Ingresses with DNS providers
Gitea Self-hosted Git service
Grafana Operational dashboards
Helm The package manager for Kubernetes
K3s Lightweight distribution of Kubernetes
Kubernetes Container-orchestration system, the backbone of this project
Loki Log aggregation system
Longhorn Cloud native distributed block storage for Kubernetes
MetalLB Bare metal load-balancer for Kubernetes
NGINX Kubernetes Ingress Controller
Prometheus Systems monitoring and alerting toolkit
Renovate Automatically update dependencies
Rocky Linux Base OS for Kubernetes nodes
Tekton Cloud native solution for building CI/CD systems
Trow Private container registry
Vault Secrets and encryption management system

Get Started

Roadmap

See roadmap and open issues for a list of proposed features and known issues.

Contributing

Any contributions you make, either big or small, are greatly appreciated.

License

Copyright (c) 2020, 2021, 2022 Khue Doan

Distributed under the GPLv3 License.

This project is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.

This project is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.

You should have received a copy of the GNU General Public License along with this project (LICENSE.md). If not, see https://www.gnu.org/licenses.

Acknowledgements

Stargazers over time

Stargazers over time