This PR contains the following updates: | Package | Update | Change | |---|---|---| | [grafana](https://grafana.com) ([source](https://github.com/grafana/helm-charts)) | major | `8.15.0` → `10.5.15` | --- ### Release Notes <details> <summary>grafana/helm-charts (grafana)</summary> ### [`v10.5.15`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.15) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.14...grafana-10.5.15) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] deprecate chart by [@​TheRealNoob](https://github.com/TheRealNoob) in [#​4107](https://github.com/grafana/helm-charts/pull/4107) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.61.3...grafana-10.5.15> ### [`v10.5.14`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.14) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.13...grafana-10.5.14) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] feat(pvc): support annotations in StatefulSet volumeClaimTemplate by [@​kirgene](https://github.com/kirgene) in [#​3311](https://github.com/grafana/helm-charts/pull/3311) #### New Contributors - [@​kirgene](https://github.com/kirgene) made their first contribution in [#​3311](https://github.com/grafana/helm-charts/pull/3311) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-1.5.3...grafana-10.5.14> ### [`v10.5.13`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.13) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.12...grafana-10.5.13) The leading tool for querying and visualizing time series and metrics. #### What's Changed - fix sync-readme CI job by [@​TheRealNoob](https://github.com/TheRealNoob) in [#​4116](https://github.com/grafana/helm-charts/pull/4116) - \[grafana] Improve dashboard variable substitution by [@​toanju](https://github.com/toanju) in [#​3120](https://github.com/grafana/helm-charts/pull/3120) #### New Contributors - [@​toanju](https://github.com/toanju) made their first contribution in [#​3120](https://github.com/grafana/helm-charts/pull/3120) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/beyla-1.11.0...grafana-10.5.13> ### [`v10.5.12`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.12) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.11...grafana-10.5.12) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] doc: fix mount secrets path by [@​ebuildy](https://github.com/ebuildy) in [#​3170](https://github.com/grafana/helm-charts/pull/3170) #### New Contributors - [@​ebuildy](https://github.com/ebuildy) made their first contribution in [#​3170](https://github.com/grafana/helm-charts/pull/3170) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.11...grafana-10.5.12> ### [`v10.5.11`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.11) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.10...grafana-10.5.11) The leading tool for querying and visualizing time series and metrics. #### What's Changed - chore(deps): update azure/setup-helm action to v4.3.1 by [@​renovate-sh-app](https://github.com/renovate-sh-app)\[bot] in [#​3941](https://github.com/grafana/helm-charts/pull/3941) - chore(deps): update actions/checkout action to v6 by [@​renovate-sh-app](https://github.com/renovate-sh-app)\[bot] in [#​4077](https://github.com/grafana/helm-charts/pull/4077) - chore(deps): update helm/kind-action action to v1.13.0 by [@​renovate-sh-app](https://github.com/renovate-sh-app)\[bot] in [#​4076](https://github.com/grafana/helm-charts/pull/4076) - chore(deps): update helm/chart-testing-action action to v2.8.0 by [@​renovate-sh-app](https://github.com/renovate-sh-app)\[bot] in [#​4075](https://github.com/grafana/helm-charts/pull/4075) - chore(deps): update helm/chart-releaser-action action to v1.7.0 by [@​renovate-sh-app](https://github.com/renovate-sh-app)\[bot] in [#​4002](https://github.com/grafana/helm-charts/pull/4002) - chore(deps): update actions/create-github-app-token action to v2 by [@​renovate-sh-app](https://github.com/renovate-sh-app)\[bot] in [#​4078](https://github.com/grafana/helm-charts/pull/4078) - \[grafana] enforce explicit privileged false on grafana containerSecurityCo… by [@​blame19](https://github.com/blame19) in [#​4025](https://github.com/grafana/helm-charts/pull/4025) #### New Contributors - [@​blame19](https://github.com/blame19) made their first contribution in [#​4025](https://github.com/grafana/helm-charts/pull/4025) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.10...grafana-10.5.11> ### [`v10.5.10`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.10) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.9...grafana-10.5.10) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Use grafana\_com configuration name by [@​makkes](https://github.com/makkes) in [#​3769](https://github.com/grafana/helm-charts/pull/3769) #### New Contributors - [@​makkes](https://github.com/makkes) made their first contribution in [#​3769](https://github.com/grafana/helm-charts/pull/3769) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.61.0...grafana-10.5.10> ### [`v10.5.9`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.9) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.8...grafana-10.5.9) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Upgrade k8s-sidecar to 2.5.0 by [@​Tolsto](https://github.com/Tolsto) in [#​4094](https://github.com/grafana/helm-charts/pull/4094) #### New Contributors - [@​Tolsto](https://github.com/Tolsto) made their first contribution in [#​4094](https://github.com/grafana/helm-charts/pull/4094) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/helm-loki-6.50.0...grafana-10.5.9> ### [`v10.5.8`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.8) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.7...grafana-10.5.8) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] fix: only skip init request on init k8s-sidecar by [@​mjnagel](https://github.com/mjnagel) in [#​4088](https://github.com/grafana/helm-charts/pull/4088) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.7...grafana-10.5.8> ### [`v10.5.7`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.7) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.6...grafana-10.5.7) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] fix: Use PV name when supplied, rather than looking up existing PVC v… by [@​aimmac23](https://github.com/aimmac23) in [#​4086](https://github.com/grafana/helm-charts/pull/4086) #### New Contributors - [@​aimmac23](https://github.com/aimmac23) made their first contribution in [#​4086](https://github.com/grafana/helm-charts/pull/4086) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.6...grafana-10.5.7> ### [`v10.5.6`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.6) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.5...grafana-10.5.6) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Allow customization of hostUsers by [@​jcpunk](https://github.com/jcpunk) in [#​4082](https://github.com/grafana/helm-charts/pull/4082) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/k8s-monitoring-3.7.2...grafana-10.5.6> ### [`v10.5.5`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.5) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.4...grafana-10.5.5) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] fix(unified): set default index\_path in chart by [@​RafaelPaulovic](https://github.com/RafaelPaulovic) in [#​4080](https://github.com/grafana/helm-charts/pull/4080) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.4...grafana-10.5.5> ### [`v10.5.4`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.4) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.3...grafana-10.5.4) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] fix(unified): add ephemeral storage for search by [@​RafaelPaulovic](https://github.com/RafaelPaulovic) in [#​4073](https://github.com/grafana/helm-charts/pull/4073) #### New Contributors - [@​RafaelPaulovic](https://github.com/RafaelPaulovic) made their first contribution in [#​4073](https://github.com/grafana/helm-charts/pull/4073) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.3...grafana-10.5.4> ### [`v10.5.3`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.3) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.2...grafana-10.5.3) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add default label for Grafana ServiceMonitor by [@​KihyeokK](https://github.com/KihyeokK) in [#​4070](https://github.com/grafana/helm-charts/pull/4070) #### New Contributors - [@​KihyeokK](https://github.com/KihyeokK) made their first contribution in [#​4070](https://github.com/grafana/helm-charts/pull/4070) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.2...grafana-10.5.3> ### [`v10.5.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.1...grafana-10.5.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] allow to use sidecar without probes by [@​sylvainOL](https://github.com/sylvainOL) in [#​4072](https://github.com/grafana/helm-charts/pull/4072) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.1...grafana-10.5.2> ### [`v10.5.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.5.0...grafana-10.5.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update kiwigrid/k8s-sidecar tag to 2.2.1 by [@​jnoordsij](https://github.com/jnoordsij) in [#​4068](https://github.com/grafana/helm-charts/pull/4068) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.5.0...grafana-10.5.1> ### [`v10.5.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.5.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.4.3...grafana-10.5.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Make sidecar containers working by [@​sylvainOL](https://github.com/sylvainOL) in [#​4046](https://github.com/grafana/helm-charts/pull/4046) #### New Contributors - [@​sylvainOL](https://github.com/sylvainOL) made their first contribution in [#​4046](https://github.com/grafana/helm-charts/pull/4046) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.4.3...grafana-10.5.0> ### [`v10.4.3`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.4.3) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.4.2...grafana-10.4.3) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Set proper server.domain in grafana.ini even if Gateway API is used by [@​kofuk](https://github.com/kofuk) in [#​4067](https://github.com/grafana/helm-charts/pull/4067) #### New Contributors - [@​kofuk](https://github.com/kofuk) made their first contribution in [#​4067](https://github.com/grafana/helm-charts/pull/4067) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.4.2...grafana-10.4.3> ### [`v10.4.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.4.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.4.1...grafana-10.4.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Switch probes to named ports by [@​jcpunk](https://github.com/jcpunk) in [#​4064](https://github.com/grafana/helm-charts/pull/4064) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.4.1...grafana-10.4.2> ### [`v10.4.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.4.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.4.0...grafana-10.4.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.3.1 by [@​terop](https://github.com/terop) in [#​4063](https://github.com/grafana/helm-charts/pull/4063) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/enterprise-logs-2.5.1...grafana-10.4.1> ### [`v10.4.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.4.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.3.2...grafana-10.4.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Fix route template linebreaks and add https redirect support by [@​guoard](https://github.com/guoard) in [#​4055](https://github.com/grafana/helm-charts/pull/4055) #### New Contributors - [@​guoard](https://github.com/guoard) made their first contribution in [#​4055](https://github.com/grafana/helm-charts/pull/4055) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/beyla-1.10.3...grafana-10.4.0> ### [`v10.3.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.3.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.3.1...grafana-10.3.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] update sidecar.image.tag value in README by [@​julian-alarcon](https://github.com/julian-alarcon) in [#​4053](https://github.com/grafana/helm-charts/pull/4053) #### New Contributors - [@​julian-alarcon](https://github.com/julian-alarcon) made their first contribution in [#​4053](https://github.com/grafana/helm-charts/pull/4053) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-operator-5.21.2...grafana-10.3.2> ### [`v10.3.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.3.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.3.0...grafana-10.3.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] native sidecars: fix ports by [@​sthomson-wyn](https://github.com/sthomson-wyn) in [#​4047](https://github.com/grafana/helm-charts/pull/4047) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/beyla-1.10.1...grafana-10.3.1> ### [`v10.3.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.3.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.2.0...grafana-10.3.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add support for native sidecars by [@​sthomson-wyn](https://github.com/sthomson-wyn) in [#​3949](https://github.com/grafana/helm-charts/pull/3949) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.57.0...grafana-10.3.0> ### [`v10.2.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.2.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.1.5...grafana-10.2.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Fix datasources initContainer sidecar and add dashboards initContainer sidecar by [@​sthomson-wyn](https://github.com/sthomson-wyn) in [#​4011](https://github.com/grafana/helm-charts/pull/4011) #### New Contributors - [@​sthomson-wyn](https://github.com/sthomson-wyn) made their first contribution in [#​4011](https://github.com/grafana/helm-charts/pull/4011) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.1.5...grafana-10.2.0> ### [`v10.1.5`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.1.5) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.1.4...grafana-10.1.5) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.3.0 by [@​Footur](https://github.com/Footur) in [#​4012](https://github.com/grafana/helm-charts/pull/4012) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/helm-k6-operator-4.1.1...grafana-10.1.5> ### [`v10.1.4`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.1.4) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.1.3...grafana-10.1.4) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Fix using `GF_SECURITY_ADMIN_USER__FILE` by [@​dguendisch](https://github.com/dguendisch) in [#​3962](https://github.com/grafana/helm-charts/pull/3962) #### New Contributors - [@​dguendisch](https://github.com/dguendisch) made their first contribution in [#​3962](https://github.com/grafana/helm-charts/pull/3962) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-10.1.3...grafana-10.1.4> ### [`v10.1.3`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.1.3) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.1.2...grafana-10.1.3) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.2.1 by [@​terop](https://github.com/terop) in [#​3964](https://github.com/grafana/helm-charts/pull/3964) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.52.3...grafana-10.1.3> ### [`v10.1.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.1.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.1.1...grafana-10.1.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add app.kubernetes.io/component to secrets by [@​jkroepke](https://github.com/jkroepke) in [#​3951](https://github.com/grafana/helm-charts/pull/3951) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-mcp-0.2.0...grafana-10.1.2> ### [`v10.1.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.1.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.1.0...grafana-10.1.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add as a maintainer to the Grafana Chart by [@​QuentinBisson](https://github.com/QuentinBisson) in [#​3933](https://github.com/grafana/helm-charts/pull/3933) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.48.1...grafana-10.1.1> ### [`v10.1.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.1.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-10.0.0...grafana-10.1.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.2.0 by [@​muffl0n](https://github.com/muffl0n) in [#​3918](https://github.com/grafana/helm-charts/pull/3918) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/k8s-monitoring-3.5.3...grafana-10.1.0> ### [`v10.0.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-10.0.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.4.5...grafana-10.0.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Enable helm tpl for alert files by [@​waterdrag0n](https://github.com/waterdrag0n) in [#​3891](https://github.com/grafana/helm-charts/pull/3891) #### New Contributors - [@​waterdrag0n](https://github.com/waterdrag0n) made their first contribution in [#​3891](https://github.com/grafana/helm-charts/pull/3891) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-cloud-onboarding-0.3.0...grafana-10.0.0> ### [`v9.4.5`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.4.5) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.4.4...grafana-9.4.5) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Fix typo in comment by [@​ggabijaa](https://github.com/ggabijaa) in [#​3901](https://github.com/grafana/helm-charts/pull/3901) #### New Contributors - [@​ggabijaa](https://github.com/ggabijaa) made their first contribution in [#​3901](https://github.com/grafana/helm-charts/pull/3901) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.47.2...grafana-9.4.5> ### [`v9.4.4`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.4.4) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.4.3...grafana-9.4.4) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add missing attribute for GOMEMLIMIT field reference by [@​cbcoutinho](https://github.com/cbcoutinho) in [#​3884](https://github.com/grafana/helm-charts/pull/3884) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/rollout-operator-0.33.0...grafana-9.4.4> ### [`v9.4.3`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.4.3) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.4.2...grafana-9.4.3) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] upgrade kiwigrid/k8s-sidecar to 1.30.10 by [@​DrFaust92](https://github.com/DrFaust92) in [#​3879](https://github.com/grafana/helm-charts/pull/3879) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.47.1...grafana-9.4.3> ### [`v9.4.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.4.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.4.1...grafana-9.4.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] - bump to version 12.1.1 by [@​cizara](https://github.com/cizara) in [#​3878](https://github.com/grafana/helm-charts/pull/3878) #### New Contributors - [@​cizara](https://github.com/cizara) made their first contribution in [#​3878](https://github.com/grafana/helm-charts/pull/3878) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-9.4.1...grafana-9.4.2> ### [`v9.4.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.4.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.4.0...grafana-9.4.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] fix print statefulset pvc claim accessmode as list by [@​LarsStegman](https://github.com/LarsStegman) in [#​3823](https://github.com/grafana/helm-charts/pull/3823) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-9.4.0...grafana-9.4.1> ### [`v9.4.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.4.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.6...grafana-9.4.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Set `GOMEMLIMIT` environment variable based on container resources by [@​jnoordsij](https://github.com/jnoordsij) in [#​3138](https://github.com/grafana/helm-charts/pull/3138) #### New Contributors - [@​jnoordsij](https://github.com/jnoordsij) made their first contribution in [#​3138](https://github.com/grafana/helm-charts/pull/3138) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-mcp-0.1.2...grafana-9.4.0> ### [`v9.3.6`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.6) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.5...grafana-9.3.6) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] fix:remove double quotes from NAMESPACE values in sidecar alerts by [@​Peter-YoungUk](https://github.com/Peter-YoungUk) in [#​3871](https://github.com/grafana/helm-charts/pull/3871) #### New Contributors - [@​Peter-YoungUk](https://github.com/Peter-YoungUk) made their first contribution in [#​3871](https://github.com/grafana/helm-charts/pull/3871) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-operator-0.3.9...grafana-9.3.6> ### [`v9.3.5`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.5) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.4...grafana-9.3.5) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] add support for envValueFrom in sidecar.alerts both initContainer and watch container by [@​peter-kyu](https://github.com/peter-kyu) in [#​3739](https://github.com/grafana/helm-charts/pull/3739) #### New Contributors - [@​peter-kyu](https://github.com/peter-kyu) made their first contribution in [#​3739](https://github.com/grafana/helm-charts/pull/3739) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-9.3.4...grafana-9.3.5> ### [`v9.3.4`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.4) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.3...grafana-9.3.4) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] switch targetport from number to port name by [@​KyriosGN0](https://github.com/KyriosGN0) in [#​3849](https://github.com/grafana/helm-charts/pull/3849) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-9.3.3...grafana-9.3.4> ### [`v9.3.3`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.3) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.2...grafana-9.3.3) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update \_pod.tpl to override container name by [@​brianjacksondev](https://github.com/brianjacksondev) in [#​3864](https://github.com/grafana/helm-charts/pull/3864) #### New Contributors - [@​brianjacksondev](https://github.com/brianjacksondev) made their first contribution in [#​3864](https://github.com/grafana/helm-charts/pull/3864) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/helm-loki-6.37.0...grafana-9.3.3> ### [`v9.3.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.1...grafana-9.3.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] docs: link official doc for plugin installation by [@​s4kh](https://github.com/s4kh) in [#​3839](https://github.com/grafana/helm-charts/pull/3839) #### New Contributors - [@​s4kh](https://github.com/s4kh) made their first contribution in [#​3839](https://github.com/grafana/helm-charts/pull/3839) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-operator-0.3.8...grafana-9.3.2> ### [`v9.3.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.3.0...grafana-9.3.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] update persistence reference by [@​Roberto-Utagawa](https://github.com/Roberto-Utagawa) in [#​3822](https://github.com/grafana/helm-charts/pull/3822) #### New Contributors - [@​Roberto-Utagawa](https://github.com/Roberto-Utagawa) made their first contribution in [#​3822](https://github.com/grafana/helm-charts/pull/3822) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-cloud-onboarding-0.2.0...grafana-9.3.1> ### [`v9.3.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.3.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.10...grafana-9.3.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] bump grafana version to 12.1.0 by [@​KyriosGN0](https://github.com/KyriosGN0) in [#​3818](https://github.com/grafana/helm-charts/pull/3818) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/beyla-1.9.0...grafana-9.3.0> ### [`v9.2.10`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.10) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.9...grafana-9.2.10) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] SSL issue with dashboard/datasource sidecards caused by bug on kiwigrid by [@​varet80](https://github.com/varet80) in [#​3779](https://github.com/grafana/helm-charts/pull/3779) #### New Contributors - [@​varet80](https://github.com/varet80) made their first contribution in [#​3779](https://github.com/grafana/helm-charts/pull/3779) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-vulture-0.9.0...grafana-9.2.10> ### [`v9.2.9`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.9) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.8...grafana-9.2.9) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add additional default value for HTTRoute backend by [@​erickuiper](https://github.com/erickuiper) in [#​3775](https://github.com/grafana/helm-charts/pull/3775) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-1.1.2...grafana-9.2.9> ### [`v9.2.8`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.8) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.7...grafana-9.2.8) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] bump kiwigrid/k8s-sidecar image to 1.30.5 by [@​KyriosGN0](https://github.com/KyriosGN0) in [#​3771](https://github.com/grafana/helm-charts/pull/3771) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-mcp-0.1.0...grafana-9.2.8> ### [`v9.2.7`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.7) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.6...grafana-9.2.7) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] bump grafana version to 12.0.2 by [@​KyriosGN0](https://github.com/KyriosGN0) in [#​3758](https://github.com/grafana/helm-charts/pull/3758) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-operator-0.3.2...grafana-9.2.7> ### [`v9.2.6`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.6) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.5...grafana-9.2.6) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.0.1-security-01 by [@​roushikk](https://github.com/roushikk) in [#​3757](https://github.com/grafana/helm-charts/pull/3757) #### New Contributors - [@​roushikk](https://github.com/roushikk) made their first contribution in [#​3757](https://github.com/grafana/helm-charts/pull/3757) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/grafana-9.2.5...grafana-9.2.6> ### [`v9.2.5`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.5) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.4...grafana-9.2.5) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add default values for HTTProute backendRefs by [@​erickuiper](https://github.com/erickuiper) in [#​3756](https://github.com/grafana/helm-charts/pull/3756) #### New Contributors - [@​erickuiper](https://github.com/erickuiper) made their first contribution in [#​3756](https://github.com/grafana/helm-charts/pull/3756) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-operator-0.3.1...grafana-9.2.5> ### [`v9.2.4`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.4) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.3...grafana-9.2.4) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Fix formatting for sizeLimit on emptyDir volumes by [@​Alja9](https://github.com/Alja9) in [#​3752](https://github.com/grafana/helm-charts/pull/3752) #### New Contributors - [@​Alja9](https://github.com/Alja9) made their first contribution in [#​3752](https://github.com/grafana/helm-charts/pull/3752) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/mimir-distributed-5.8.0-weekly.347...grafana-9.2.4> ### [`v9.2.3`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.3) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.2...grafana-9.2.3) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Support templated content for annotations image-renderer-service.yaml by [@​chivunito](https://github.com/chivunito) in [#​3714](https://github.com/grafana/helm-charts/pull/3714) #### New Contributors - [@​chivunito](https://github.com/chivunito) made their first contribution in [#​3714](https://github.com/grafana/helm-charts/pull/3714) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-1.23.1...grafana-9.2.3> ### [`v9.2.2`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.2) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.1...grafana-9.2.2) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.0.1 by [@​armingerten](https://github.com/armingerten) in [#​3730](https://github.com/grafana/helm-charts/pull/3730) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.41.0...grafana-9.2.2> ### [`v9.2.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.2.0...grafana-9.2.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Add support for envValueFrom in alerts sidecar container by [@​sangheee](https://github.com/sangheee) in [#​3713](https://github.com/grafana/helm-charts/pull/3713) #### New Contributors - [@​sangheee](https://github.com/sangheee) made their first contribution in [#​3713](https://github.com/grafana/helm-charts/pull/3713) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-vulture-0.8.0...grafana-9.2.1> ### [`v9.2.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.2.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.1.1...grafana-9.2.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] feat(PodDisruptionBudget): add support for unhealthyPodEvictionPolicy by [@​mloiseleur](https://github.com/mloiseleur) in [#​3509](https://github.com/grafana/helm-charts/pull/3509) #### New Contributors - [@​mloiseleur](https://github.com/mloiseleur) made their first contribution in [#​3509](https://github.com/grafana/helm-charts/pull/3509) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/alloy-operator-0.2.9...grafana-9.2.0> ### [`v9.1.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.1.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.0.1...grafana-9.1.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.0.0-security-01 by [@​fredlahde](https://github.com/fredlahde) in [#​3722](https://github.com/grafana/helm-charts/pull/3722) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/helm-loki-6.30.0...grafana-9.1.1> ### [`v9.0.1`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.0.1) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-9.0.0...grafana-9.0.1) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] dont create image renderer svc mon if image renderer is not enabled by [@​DrFaust92](https://github.com/DrFaust92) in [#​3716](https://github.com/grafana/helm-charts/pull/3716) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/tempo-distributed-1.39.5...grafana-9.0.1> ### [`v9.0.0`](https://github.com/grafana/helm-charts/releases/tag/grafana-9.0.0) [Compare Source](https://github.com/grafana/helm-charts/compare/grafana-8.15.0...grafana-9.0.0) The leading tool for querying and visualizing time series and metrics. #### What's Changed - \[grafana] Update Grafana to 12.0.0 by [@​terop](https://github.com/terop) in [#​3700](https://github.com/grafana/helm-charts/pull/3700) **Full Changelog**: <https://github.com/grafana/helm-charts/compare/mimir-distributed-5.8.0-weekly.341...grafana-9.0.0> </details> --- ### Configuration 📅 **Schedule**: (in timezone Europe/Oslo) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC4xMTIuMyIsInVwZGF0ZWRJblZlciI6IjQ0LjExMi4zIiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJicmVha2luZy1jaGFuZ2UiLCJyZW5vdmF0ZSJdfQ==--> --------- Co-authored-by: Renovate Bot <renovate@forteapps.net> Reviewed-on: #49 Reviewed-by: Danijel Simeunovic <danijel.simeunovic@fortedigital.com> Co-authored-by: gitea_admin <admin@forteapps.net>
Kubernetes Cluster - GitOps Configuration
Kubernetes cluster bootstrapping and GitOps configuration repository using ArgoCD for multi-cloud Kubernetes (UpCloud, AWS EKS, Azure AKS, GCP GKE)
📚 Complete Documentation
New developers and operators: Please refer to our comprehensive documentation for detailed guides and references:
🎯 START HERE: Documentation Index
| Document | Description | Audience |
|---|---|---|
| GitOps Architecture | System architecture, repository structure, GitOps workflows, security model | Everyone (start here) |
| Developer Guide | Local setup, deploying apps, managing secrets, troubleshooting | Developers |
| Operations Runbook | Cluster bootstrap, day-to-day operations, incident response, maintenance | Platform Engineers, SREs |
| Technical Reference | Component specs, Helm charts, ArgoCD config, Kyverno policies, API docs | Everyone (reference) |
🚀 Quick Start
For New Developers
# 1. Clone repositories
git clone https://git.forteapps.net/Forte/launchpad.git
git clone ssh://git@git.forteapps.net:2222/Forte/helm-prod-values.git
# 2. Read the guides
# - Start: docs/GITOPS-ARCHITECTURE.md
# - Follow: docs/DEVELOPER-GUIDE.md
# 3. Deploy your first app (see Developer Guide)
For Operators
# 1. Bootstrap new cluster
./bootstrap.sh
# 2. Verify deployment
kubectl get applications -n argocd
kubectl get pods --all-namespaces
# 3. Read Operations Runbook for day-to-day tasks
📋 Overview
This repository contains the complete GitOps configuration for our Kubernetes cluster, using the App-of-Apps pattern with ArgoCD.
What's Inside
- Infrastructure Applications: Traefik, Cert-Manager, Kyverno, Prometheus, Grafana, Loki, Tempo, Sealed Secrets, Homepage (platform dashboard)
- Business Applications: MCP10X, MusicMan, Dot-AI Stack, ArgoCD MCP
- Policies: Kyverno security policies for secret management, namespace controls, pod verification
- Monitoring: Full observability stack with metrics, logs, traces, and alerting
- Secrets: Sealed Secrets for secure Git storage
Key Features
✅ GitOps-Native: Git is the single source of truth ✅ Auto-Sync: Changes automatically deployed (60s reconciliation) ✅ Self-Healing: Manual cluster changes are reverted ✅ Multi-Source: Separate chart templates from configuration ✅ Policy Enforcement: Kyverno ensures security and compliance ✅ Authentication: Automatic sidecar injection (token & OIDC support) ✅ TLS Everywhere: Automatic Let's Encrypt certificates ✅ Full Observability: Prometheus, Grafana, Loki, Tempo integration
🗂️ Repository Structure
.
├── bootstrap.sh # Cluster initialization (ArgoCD + GitOps)
├── _app-of-apps-{cluster}.yaml # Root ArgoCD Application (per cluster)
│
├── .tofu/ # Infrastructure provisioning (OpenTofu)
│ ├── platforms/ # Per-platform IaC (one dir per cloud)
│ │ ├── aks/ # Azure AKS (modules/ + dev/ + prod/ + workload/)
│ │ ├── eks/ # AWS EKS
│ │ ├── gke/ # GCP GKE
│ │ └── upc/ # UpCloud
│ ├── configs/ # Platform credentials (git-ignored)
│ │ └── *.env.example # Template for each platform
│ └── scripts/ # Cluster lifecycle scripts
│ ├── setup-cluster.sh # Create cluster: ./setup-cluster.sh aks-dev
│ ├── teardown-cluster.sh
│ └── get-kubeconfig.sh
│
├── clusters/ # Cluster metadata (domain, trustedIPs, etc.)
│
├── infra/ # Infrastructure ArgoCD Applications (Kustomize multi-cluster)
│ ├── base/ # Base ArgoCD Application manifests (one dir per component)
│ │ ├── kustomization.yaml # Aggregates all component subdirectories
│ │ ├── traefik-application/
│ │ │ ├── kustomization.yaml
│ │ │ └── traefik-application.yaml
│ │ ├── keycloak/
│ │ │ ├── kustomization.yaml
│ │ │ └── keycloak.yaml
│ │ ├── grafana/
│ │ ├── prometheus/
│ │ ├── ... # Each component in its own subdirectory
│ │ └── secrets/
│ ├── overlays/ # Per-cluster overrides (Kustomize)
│ │ ├── upc-dev/ # UpCloud Dev — includes all base components
│ │ ├── upc-prod/ # UpCloud Prod — all components + patches
│ │ ├── aks-dev/ # Azure AKS Dev — selective components only
│ │ ├── aks-prod/ # Azure AKS Prod
│ │ ├── eks-dev/ # AWS EKS Dev
│ │ ├── eks-prod/ # AWS EKS Prod
│ │ ├── gke-dev/ # GCP GKE Dev
│ │ └── gke-prod/ # GCP GKE Prod
│ ├── dashboards/ # Grafana dashboard ConfigMaps
│ └── values/ # Helm value overrides
│ ├── base/ # Shared cloud-agnostic values
│ ├── upc-dev/ # UpCloud Dev (storage, LB, pricing)
│ ├── upc-prod/ # UpCloud Prod
│ ├── eks-dev/ # AWS EKS Dev
│ ├── eks-prod/ # AWS EKS Prod
│ ├── aks-dev/ # Azure AKS Dev
│ ├── aks-prod/ # Azure AKS Prod
│ ├── gke-dev/ # GCP GKE Dev
│ └── gke-prod/ # GCP GKE Prod
│
├── apps/ # Business Applications (Kustomize, same pattern as infra)
│ ├── base/ # One subdirectory per app
│ │ ├── kustomization.yaml
│ │ ├── musicman/
│ │ ├── mcp10x/
│ │ ├── dot-ai-stack/
│ │ ├── ts-mcp/
│ │ └── argo-mcp/
│ └── overlays/ # Per-cluster: cherry-pick or include all
│ ├── upc-dev/ # All apps
│ ├── upc-prod/ # All apps + patches
│ └── aks-dev/ # Selective apps only
│
├── cluster-resources/ # Cluster-wide Kubernetes resources
│ ├── letsencrypt-issuer.yaml
│ ├── kyverno-config.yaml
│ ├── *-sealed.yaml # Sealed secrets
│ └── policies/ # Kyverno policies
│ ├── secret-cloner.yaml
│ ├── default-ns-blocker.yaml
│ ├── bare-pod-cleaner.yaml
│ └── auth-sidecar-injector.yaml
│
├── secrets/ # Application secrets (sealed)
│ └── *-credentials-sealed.yaml
│
├── private/ # Local-only files (Git-ignored)
│ └── *.yaml # Unsealed secrets (never committed)
│
└── docs/ # 📚 Comprehensive documentation
├── README.md # Documentation index
├── GITOPS-ARCHITECTURE.md # Architecture guide
├── DEVELOPER-GUIDE.md # Developer onboarding
├── OPERATIONS-RUNBOOK.md # Operations procedures
└── REFERENCE.md # Technical reference
See GitOps Architecture - Repository Structure for detailed explanation.
🏗️ Architecture
Three-Repository Pattern
| Repository | Purpose | Who Edits | How Often |
|---|---|---|---|
| launchpad (this repo) | ArgoCD Applications, cluster resources | Platform / DevOps engineers | ✅ Often |
| forte-helm | Generic Helm chart templates | Platform engineers | ❌ Rarely |
| helm-prod-values | App-specific configuration & versions | Developers / CI pipelines | ✅ Sometimes |
GitOps Workflow
Developer commits code → CI/CD builds image → Updates helm-prod-values → ArgoCD syncs → Deployed to cluster
Learn more: GitOps Architecture - GitOps Workflow
🔧 Common Tasks
Deploy a New Application
See detailed guide: Developer Guide - Deploying Your First Application
Quick version:
- Create
apps/myapp.yaml(ArgoCD Application manifest) - Create
helm-prod-values/myapp/values.yaml(configuration) - Create sealed secrets if needed
- Commit and push - ArgoCD auto-syncs!
Update an Existing Application
See detailed guide: Developer Guide - Updating an Existing Application
Quick version:
- Update code: Push to app repo → CI/CD updates image tag in helm-prod-values
- Update config: Edit
helm-prod-values/myapp/values.yaml→ commit → push
Manage Secrets
See detailed guide: Developer Guide - Working with Secrets
# Create plain secret
kubectl create secret generic myapp-creds \
--from-literal=KEY=value \
--dry-run=client -o yaml > private/myapp-creds.yaml
# Seal it
kubeseal --format=yaml --cert=pub-cert.pem \
< private/myapp-creds.yaml > secrets/myapp-creds-sealed.yaml
# Commit sealed version
git add secrets/myapp-creds-sealed.yaml
git commit -m "Add myapp credentials"
git push
Enable Authentication
See detailed guide: Developer Guide - Enabling Authentication
Quick version:
# In helm-prod-values/myapp/values.yaml
# Token-based auth (simple)
auth:
enabled: true
type: token
tokens:
- your-secret-token-here
# OIDC auth (SSO)
auth:
enabled: true
type: oidc
oidc:
authority: https://auth.example.com/realms/master
clientId: myapp
Then create OIDC secret (if using OIDC):
kubectl create secret generic auth-oidc \
--from-literal=client-secret=your-oidc-secret \
--from-literal=cookie-secret=$(openssl rand -hex 32) \
--namespace=myapp | \
kubeseal --format=yaml --cert=pub-cert.pem --namespace=myapp | \
kubectl apply -f -
Bootstrap Cluster
See detailed guide: Operations Runbook - Cluster Bootstrap
# Initialize new cluster
./bootstrap.sh
# Verify
kubectl get applications -n argocd
kubectl get pods --all-namespaces
🛠️ Quick Reference
Monitor Applications
# List all ArgoCD applications
kubectl get applications -n argocd
# Watch sync status
kubectl get applications -n argocd -w
# Check specific application
kubectl describe application myapp -n argocd
# View application logs
kubectl logs -n myapp <pod-name>
Access UIs
# ArgoCD UI
kubectl port-forward svc/argocd-server -n argocd 8080:443
# Access: https://localhost:8080 (no auth required)
# Grafana
kubectl port-forward -n monitoring svc/grafana 3000:80
# Access: http://localhost:3000
# Prometheus
kubectl port-forward -n monitoring svc/prometheus-server 9090:80
# Access: http://localhost:9090
Troubleshooting
# Check pod status
kubectl get pods -n myapp
# View pod logs
kubectl logs -n myapp <pod-name>
# Check pod events
kubectl describe pod -n myapp <pod-name>
# Check ArgoCD sync errors
kubectl describe application myapp -n argocd
# Force sync
kubectl patch application myapp -n argocd \
--type merge -p '{"metadata":{"annotations":{"argocd.argoproj.io/refresh":"hard"}}}'
Full troubleshooting guide: Developer Guide - Troubleshooting
🔐 Security
Secret Management
- ✅ Sealed Secrets for Git storage
- ✅ Kyverno auto-clones secrets to namespaces
- ❌ Never commit plain secrets
Network Security
- ✅ All traffic TLS-encrypted (Let's Encrypt)
- ✅ HTTP → HTTPS redirect
- ✅ Traefik IngressRoute per application
Policy Enforcement
- ✅ Kyverno policies for security
- ✅ Default namespace blocked
- ✅ Bare pods not allowed
- ✅ Optional authentication sidecar injection
Learn more: GitOps Architecture - Security Model
📊 Infrastructure Components
| Component | Purpose | Namespace | Replicas |
|---|---|---|---|
| ArgoCD | GitOps controller | argocd |
1 |
| Traefik | Ingress controller | traefik |
2 |
| Cert-Manager | TLS certificates | cert-manager |
1 |
| Kyverno | Policy engine | kyverno |
1 |
| Sealed Secrets | Secret encryption | kube-system |
1 |
| Prometheus | Metrics | monitoring |
1 |
| Grafana | Dashboards | monitoring |
1 |
| Loki | Logs | monitoring |
1 |
| Tempo | Distributed tracing | monitoring |
1 |
| Fluent-Bit | Log shipping | monitoring |
DaemonSet |
| OpenCost | Cost monitoring | monitoring |
1 |
| Renovate | Dependency updates | renovate |
CronJob |
Full specs: Technical Reference - Infrastructure Components
🌐 Domains & Networking
- Local development:
*.127.0.0.1.nip.io - Production:
*.forteapps.net - DNS: Manual configuration (contact platform team)
- TLS: Automatic via Let's Encrypt
📖 Key Concepts
App-of-Apps Pattern
_app-of-apps-{cluster}.yaml is the root Application that manages all other Applications in infra/. Each component in infra/base/ lives in its own subdirectory (e.g., infra/base/grafana/). Overlays can either include all components (via ../../base) or cherry-pick specific ones (via ../../base/grafana, ../../base/prometheus, etc.). Per-cluster patches swap Helm value file paths. Supported clusters: upc-dev, upc-prod, eks-dev, eks-prod, aks-dev, aks-prod, gke-dev, gke-prod.
Multi-Source Pattern
Applications reference both:
- Helm charts from
forte-helm(templates) - Values from
helm-prod-values(configuration)
This separates reusable templates from environment-specific config.
Sync Waves
Applications deploy in order using argocd.argoproj.io/sync-wave:
- Wave
-1: Namespaces - Wave
0: Kyverno (policies) - Wave
1: Infrastructure - Wave
2+: Applications
Auto-Sync & Self-Heal
- Auto-Sync: ArgoCD automatically deploys Git changes (60s polling)
- Self-Heal: Manual cluster changes are reverted to match Git
- Prune: Deleted resources in Git are removed from cluster
Learn more: GitOps Architecture - GitOps Workflow
⚙️ Configuration
ArgoCD Settings
- Reconciliation: Every 60 seconds
- Sync timeout: 5 minutes per application
- Retry policy: 5 attempts with exponential backoff
- Authentication: Disabled (internal use only)
Application Defaults
- Auto-sync: Enabled
- Self-heal: Enabled
- Prune: Enabled
- Validation: Server-side validation enabled
- Server-side apply: Enabled
Full configuration: Technical Reference - ArgoCD Configuration
🆘 Getting Help
Documentation
- Start here: Documentation Index
- For development: Developer Guide
- For operations: Operations Runbook
- For reference: Technical Reference
Support
- Slack: #platform-support
- Issues: Contact platform team
- Emergencies: Escalate via Slack
Common Questions
| Question | Answer |
|---|---|
| How do I deploy an app? | Developer Guide - Deploying Your First Application |
| How do I manage secrets? | Developer Guide - Working with Secrets |
| App won't sync? | Developer Guide - Troubleshooting |
| How do I bootstrap a cluster? | Operations Runbook - Cluster Bootstrap |
| Where are the logs? | Operations Runbook - Monitoring & Alerting |
🤝 Contributing
Adding a New Application
- Read Developer Guide - Deploying Your First Application
- Create ArgoCD Application manifest in
apps/ - Create Helm values in
helm-prod-values/ - Create sealed secrets if needed
- Commit and push - ArgoCD handles the rest!
Modifying Infrastructure
- Read Operations Runbook
- Update relevant files in
infra/orcluster-resources/ - Test changes in isolated namespace if possible
- Commit and push
- Monitor sync status in Slack/ArgoCD UI
Updating Documentation
Documentation lives in docs/. To update:
- Edit relevant markdown file
- Update "Last Updated" date
- Submit PR or push directly
- Notify team of significant changes
📝 Notes
Current Environment
- Provider: Multi-cloud (UpCloud, AWS EKS, Azure AKS, GCP GKE)
- Active clusters: UpCloud (upc-dev, upc-prod)
- Environment: Production (internal use only)
- Auth: Disabled for ArgoCD (internal access)
- Backup: Gitea daily backup to S3-compatible storage
Known Limitations
- Secret rotation not automated
- DNS management is manual
Future improvements: See Operations Runbook - Disaster Recovery
📚 Additional Resources
External Documentation
- ArgoCD Documentation
- Kyverno Documentation
- Traefik Documentation
- Cert-Manager Documentation
- Grafana Tempo Documentation
- Sealed Secrets
Related Repositories
- forte-helm - Helm chart templates
- helm-prod-values - Application values
📄 License
Internal use only. Not for public distribution.
👥 Maintainers
Platform Team
- Contact: #platform-support on Slack
- Issues: Create issue in repository or contact team directly
Last Updated: 2026-04-22 Documentation Version: 1.0.0
🚀 Ready to get started? Check out the Documentation Index!