You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A GitOps-managed Kubernetes homelab running TalosOS on Proxmox. Apps are published directly on the home connection through Traefik and gated by Authentik; Tailscale carries DNS and cluster administration.
🌐 Architecture Overview
flowchart TB
subgraph Internet["🌐 Public Internet"]
Users(["Users"])
end
subgraph Private["🏠 Home LAN"]
Devices(["Private Devices"])
end
subgraph Tailscale["🔐 Tailscale Mesh"]
TS(("AdGuard DNS<br/>cluster admin"))
end
subgraph Proxmox["🖥️ Proxmox Host"]
subgraph Cluster["TalosOS Cluster"]
Edge["Traefik + Authentik<br/>192.168.1.11"]
T1["talos-1<br/>GPU"]
T2["talos-2"]
T3["talos-3"]
end
Storage[("ZFS<br/>NFS + LongHorn")]
end
Users -->|"*.nerine.dev :443"| Edge
Devices -->|LAN| Edge
Devices -.->|DNS| TS
TS -.->|kubectl| Cluster
Edge --> T1 & T2 & T3
T1 & T2 & T3 <--> Storage
style Internet fill:#e1f5fe
style Private fill:#f3e5f5
style Tailscale fill:#e8f5e9
style Proxmox fill:#fce4ec
style Cluster fill:#fff8e1
All setup and bootstrap instructions live in SETUP.md. Local tool versions are pinned in .mise.toml, and SETUP.md is the single source of truth for bootstrapping the environment.