January 27, 2025

Migration is in progress

I'm migrating my infra from the previous (docker-compose) into the current (k8s) infra. All the previous posts were deleted since they are outdated Upd: 15.02.2025

I'm migrating my infra from the previous (docker-compose) into the current (k8s) infra.

All the previous posts were deleted since they are outdated

This should help me with ease infra management:

  • Auto service discovery for monitoring
  • Ready templating functionality (Helm)
  • Easy integration with Hashicorp Vault: Vault Secrets Webhook and Vault Agent
  • Easier to manage services via Istio
  • Easier to manage resources per pod/namespace and possibility to limit services with storage size provided

15.02.2025

I faced a blocker when moved the mail server. This led to ~5-7k spam letters was send. So the new plan is to make things right.

The main issue with my attempt was every customer had the same IP (of Load Balancer). This issue allowed malicious actors to send emails without any questions.

So, I'll investigate how to use HAProxy in front, and Load Balancer (now it is MetalLB) in front of service.