chore(renovate): renovate 2025-07-18

chore(deps): update helm release cert-manager to v1.18.2 (#293)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update proxmox-csi-plugin docker tag to v0.3.11 (#311)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update cloudflare/cloudflared docker tag to v2025.7.0 (#314)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update dependency siderolabs/talos to v1.10.5 (#331)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update media containers (#328)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update ghcr.io/prometheus-community/charts/kube-prometheus-stack docker tag to v73.2.3 (#332)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update cilium (#333)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update actions/checkout action to v4.2.2 (#336)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update docker.io/adguard/adguardhome docker tag to v0.107.63 (#338)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update dependency kubernetes/kubernetes to v1.33.3 (#335)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update ghcr.io/authelia/authelia docker tag to v4.39.5 (#339)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update ghcr.io/home-operations/qbittorrent docker tag to v5.1.2 (#340)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update helm release authelia to v0.10.39 (#341)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update registry.k8s.io/git-sync/git-sync docker tag to v4.4.2 (#342)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update sealed-secrets docker tag to v2.5.16 (#343)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update ghcr.io/advplyr/audiobookshelf docker tag to v2.26.1 (#344)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update netbird (#345)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update terraform proxmox to v0.80.0 (#346)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update ghcr.io/home-operations/prowlarr docker tag to v2 (#347)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>

chore(deps): update ghcr.io/prometheus-community/charts/kube-prometheus-stack docker tag to v75 (#348)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Signed-off-by: Vegard Hagen <[email protected]>

chore(deps): update helm release authelia to v0.10.41 (#349)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
This commit is contained in:
renovate[bot]
2025-07-19 18:51:55 +02:00
committed by Vegard Hagen
co-authored by renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
parent 88c39b2b50
commit 7e388f55d7
28 changed files with 30 additions and 30 deletions
+1 -1
View File
@@ -18,7 +18,7 @@ jobs:
steps: steps:
- name: Checkout - name: Checkout
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1 uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
- name: Set up QEMU for multi-architecture builds - name: Set up QEMU for multi-architecture builds
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 #v3.6.0 uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 #v3.6.0
+1 -1
View File
@@ -26,7 +26,7 @@ jobs:
steps: steps:
- name: Checkout - name: Checkout
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1 uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
- name: Tofu format - name: Tofu format
uses: docker://ghcr.io/vehagn/homelab-devcontainer uses: docker://ghcr.io/vehagn/homelab-devcontainer
+1 -1
View File
@@ -30,7 +30,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: lidarr - name: lidarr
image: ghcr.io/home-operations/lidarr:2.12.1 # renovate: docker=ghcr.io/home-operations/lidarr image: ghcr.io/home-operations/lidarr:2.13.0 # renovate: docker=ghcr.io/home-operations/lidarr
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
+1 -1
View File
@@ -30,7 +30,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: prowlarr - name: prowlarr
image: ghcr.io/home-operations/prowlarr:1.37.0 # renovate: docker=ghcr.io/home-operations/prowlarr image: ghcr.io/home-operations/prowlarr:2.0.1 # renovate: docker=ghcr.io/home-operations/prowlarr
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
+1 -1
View File
@@ -30,7 +30,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: radarr - name: radarr
image: ghcr.io/home-operations/radarr:5.26.1 # renovate: docker=ghcr.io/home-operations/radarr image: ghcr.io/home-operations/radarr:5.27.1 # renovate: docker=ghcr.io/home-operations/radarr
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
+1 -1
View File
@@ -30,7 +30,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: sonarr - name: sonarr
image: ghcr.io/home-operations/sonarr:4.0.14 # renovate: docker=ghcr.io/home-operations/sonarr image: ghcr.io/home-operations/sonarr:4.0.15 # renovate: docker=ghcr.io/home-operations/sonarr
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
@@ -30,7 +30,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: audiobookshelf - name: audiobookshelf
image: ghcr.io/advplyr/audiobookshelf:2.24.0 # renovate: docker=ghcr.io/advplyr/audiobookshelf image: ghcr.io/advplyr/audiobookshelf:2.26.1 # renovate: docker=ghcr.io/advplyr/audiobookshelf
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
+1 -1
View File
@@ -28,7 +28,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: plex - name: plex
image: ghcr.io/home-operations/plex:1.41.7.9823 # renovate: docker=ghcr.io/home-operations/plex versioning=loose image: ghcr.io/home-operations/plex:1.41.9.9961 # renovate: docker=ghcr.io/home-operations/plex versioning=loose
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
+2 -2
View File
@@ -30,7 +30,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: git-sync-vuetorrent - name: git-sync-vuetorrent
image: registry.k8s.io/git-sync/git-sync:v4.4.1 # renovate: docker=registry.k8s.io/git-sync/git-sync image: registry.k8s.io/git-sync/git-sync:v4.4.2 # renovate: docker=registry.k8s.io/git-sync/git-sync
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
@@ -57,7 +57,7 @@ spec:
- name: tmp - name: tmp
mountPath: /tmp mountPath: /tmp
- name: torrent - name: torrent
image: ghcr.io/home-operations/qbittorrent:5.1.0 # renovate: docker=ghcr.io/home-operations/qbittorrent image: ghcr.io/home-operations/qbittorrent:5.1.2 # renovate: docker=ghcr.io/home-operations/qbittorrent
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
+1 -1
View File
@@ -26,7 +26,7 @@ helmCharts:
repo: https://charts.authelia.com repo: https://charts.authelia.com
releaseName: authelia releaseName: authelia
namespace: authelia namespace: authelia
version: 0.10.34 version: 0.10.41
valuesFile: values.yaml valuesFile: values.yaml
patches: patches:
+1 -1
View File
@@ -2,7 +2,7 @@
image: image:
registry: ghcr.io registry: ghcr.io
repository: authelia/authelia repository: authelia/authelia
tag: 4.39.4 # renovate: docker=ghcr.io/authelia/authelia tag: 4.39.5 # renovate: docker=ghcr.io/authelia/authelia
pullPolicy: IfNotPresent pullPolicy: IfNotPresent
pod: pod:
@@ -9,7 +9,7 @@ resources:
helmCharts: helmCharts:
- name: cert-manager - name: cert-manager
repo: https://charts.jetstack.io repo: https://charts.jetstack.io
version: v1.17.2 # renovate: github-releases=cert-manager/cert-manager version: v1.18.2 # renovate: github-releases=cert-manager/cert-manager
releaseName: cert-manager releaseName: cert-manager
namespace: cert-manager namespace: cert-manager
valuesFile: values.yaml valuesFile: values.yaml
@@ -4,7 +4,7 @@ kind: Kustomization
helmCharts: helmCharts:
- name: sealed-secrets - name: sealed-secrets
repo: oci://registry-1.docker.io/bitnamicharts repo: oci://registry-1.docker.io/bitnamicharts
version: 2.5.13 version: 2.5.16
releaseName: sealed-secrets-controller releaseName: sealed-secrets-controller
namespace: sealed-secrets namespace: sealed-secrets
includeCRDs: true includeCRDs: true
@@ -10,7 +10,7 @@ spec:
sources: sources:
- repoURL: https://prometheus-community.github.io/helm-charts - repoURL: https://prometheus-community.github.io/helm-charts
chart: kube-prometheus-stack chart: kube-prometheus-stack
targetRevision: 73.2.0 # renovate: docker=ghcr.io/prometheus-community/charts/kube-prometheus-stack targetRevision: 75.12.0 # renovate: docker=ghcr.io/prometheus-community/charts/kube-prometheus-stack
helm: helm:
valueFiles: valueFiles:
- $values/k8s/infra/monitoring/prometheus-stack/values.yaml - $values/k8s/infra/monitoring/prometheus-stack/values.yaml
+1 -1
View File
@@ -8,7 +8,7 @@ resources:
helmCharts: helmCharts:
- name: cilium - name: cilium
repo: https://helm.cilium.io repo: https://helm.cilium.io
version: 1.17.4 # renovate: github-releases=cilium/cilium version: 1.17.6 # renovate: github-releases=cilium/cilium
releaseName: "cilium" releaseName: "cilium"
includeCRDs: true includeCRDs: true
namespace: kube-system namespace: kube-system
@@ -16,7 +16,7 @@ spec:
spec: spec:
containers: containers:
- name: cloudflared - name: cloudflared
image: cloudflare/cloudflared:2025.5.0 # renovate: docker=cloudflare/cloudflared image: cloudflare/cloudflared:2025.7.0 # renovate: docker=cloudflare/cloudflared
imagePullPolicy: IfNotPresent imagePullPolicy: IfNotPresent
args: args:
- tunnel - tunnel
@@ -49,7 +49,7 @@ spec:
mountPath: /opt/adguardhome/conf mountPath: /opt/adguardhome/conf
containers: containers:
- name: adguard - name: adguard
image: docker.io/adguard/adguardhome:v0.107.62 # renovate: docker=docker.io/adguard/adguardhome image: docker.io/adguard/adguardhome:v0.107.63 # renovate: docker=docker.io/adguard/adguardhome
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: true readOnlyRootFilesystem: true
@@ -4,7 +4,7 @@ kind: Kustomization
helmCharts: helmCharts:
- name: proxmox-csi-plugin - name: proxmox-csi-plugin
repo: oci://ghcr.io/sergelogvinov/charts repo: oci://ghcr.io/sergelogvinov/charts
version: 0.3.7 version: 0.3.11
releaseName: proxmox-csi-plugin releaseName: proxmox-csi-plugin
includeCRDs: true includeCRDs: true
namespace: csi-proxmox namespace: csi-proxmox
+1 -1
View File
@@ -22,7 +22,7 @@ spec:
value: "1" value: "1"
containers: containers:
- name: agent - name: agent
image: docker.io/netbirdio/netbird:0.46.0 # renovate: docker=docker.io/netbirdio/netbird image: docker.io/netbirdio/netbird:0.51.1 # renovate: docker=docker.io/netbirdio/netbird
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: false readOnlyRootFilesystem: false
@@ -17,7 +17,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: dashboard - name: dashboard
image: docker.io/netbirdio/dashboard:v2.13.1 # renovate: docker=docker.io/netbirdio/dashboard image: docker.io/netbirdio/dashboard:v2.14.0 # renovate: docker=docker.io/netbirdio/dashboard
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
readOnlyRootFilesystem: false readOnlyRootFilesystem: false
@@ -54,7 +54,7 @@ spec:
mountPath: /tmp/netbird mountPath: /tmp/netbird
containers: containers:
- name: management - name: management
image: docker.io/netbirdio/management:0.46.0 # renovate: docker=docker.io/netbirdio/management image: docker.io/netbirdio/management:0.51.1 # renovate: docker=docker.io/netbirdio/management
args: [ --dns-domain, $(DNS_DOMAIN), --log-level, $(LOG_LEVEL), --log-file, console, --idp-sign-key-refresh-enabled ] args: [ --dns-domain, $(DNS_DOMAIN), --log-level, $(LOG_LEVEL), --log-file, console, --idp-sign-key-refresh-enabled ]
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
+1 -1
View File
@@ -16,7 +16,7 @@ spec:
seccompProfile: seccompProfile:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- image: docker.io/netbirdio/relay:0.46.0 # renovate: docker=docker.io/netbirdio/relay - image: docker.io/netbirdio/relay:0.51.1 # renovate: docker=docker.io/netbirdio/relay
imagePullPolicy: IfNotPresent imagePullPolicy: IfNotPresent
name: relay name: relay
securityContext: securityContext:
+1 -1
View File
@@ -21,7 +21,7 @@ spec:
type: RuntimeDefault type: RuntimeDefault
containers: containers:
- name: signal - name: signal
image: docker.io/netbirdio/signal:0.46.0 # renovate: docker=docker.io/netbirdio/signal image: docker.io/netbirdio/signal:0.51.1 # renovate: docker=docker.io/netbirdio/signal
args: [ --port, $(PORT), --log-level, $(LOG_LEVEL), --log-file, console ] args: [ --port, $(PORT), --log-level, $(LOG_LEVEL), --log-file, console ]
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false
+1 -1
View File
@@ -2,7 +2,7 @@ terraform {
required_providers { required_providers {
proxmox = { proxmox = {
source = "bpg/proxmox" source = "bpg/proxmox"
version = "0.78.1" version = "0.80.0"
} }
} }
} }
+1 -1
View File
@@ -6,7 +6,7 @@ terraform {
} }
proxmox = { proxmox = {
source = "bpg/proxmox" source = "bpg/proxmox"
version = "0.78.1" version = "0.80.0"
} }
talos = { talos = {
source = "siderolabs/talos" source = "siderolabs/talos"
@@ -59,7 +59,7 @@ spec:
hostNetwork: true hostNetwork: true
containers: containers:
- name: cilium-install - name: cilium-install
image: quay.io/cilium/cilium-cli:v0.18.4 # renovate: github-releases=cilium/cilium-cli image: quay.io/cilium/cilium-cli:v0.18.5 # renovate: github-releases=cilium/cilium-cli
env: env:
- name: KUBERNETES_SERVICE_HOST - name: KUBERNETES_SERVICE_HOST
valueFrom: valueFrom:
@@ -75,7 +75,7 @@ spec:
command: command:
- cilium - cilium
- install - install
- --version=v1.17.4 # renovate: github-releases=cilium/cilium - --version=v1.17.6 # renovate: github-releases=cilium/cilium
- --set - --set
- kubeProxyReplacement=true - kubeProxyReplacement=true
- --values - --values
+1 -1
View File
@@ -9,7 +9,7 @@ talos_cluster_config = {
# Uncomment to use this instead of version from talos_image. # Uncomment to use this instead of version from talos_image.
# talos_machine_config_version = "v1.9.2" # talos_machine_config_version = "v1.9.2"
proxmox_cluster = "homelab" proxmox_cluster = "homelab"
kubernetes_version = "v1.33.1" # renovate: github-releases=kubernetes/kubernetes kubernetes_version = "v1.33.3" # renovate: github-releases=kubernetes/kubernetes
cilium = { cilium = {
bootstrap_manifest_path = "talos/inline-manifests/cilium-install.yaml" bootstrap_manifest_path = "talos/inline-manifests/cilium-install.yaml"
values_file_path = "../../k8s/infra/network/cilium/values.yaml" values_file_path = "../../k8s/infra/network/cilium/values.yaml"
+1 -1
View File
@@ -1,6 +1,6 @@
talos_image = { talos_image = {
version = "v1.10.3" version = "v1.10.3"
update_version = "v1.10.3" # renovate: github-releases=siderolabs/talos update_version = "v1.10.5" # renovate: github-releases=siderolabs/talos
schematic_path = "talos/image/schematic.yaml" schematic_path = "talos/image/schematic.yaml"
# Point this to a new schematic file to update the schematic # Point this to a new schematic file to update the schematic
# update_schematic_path = "talos/image/schematic.yaml" # update_schematic_path = "talos/image/schematic.yaml"