36 lines
1.2 KiB
Markdown
36 lines
1.2 KiB
Markdown
|
|
# Dozzle Deployment
|
||
|
|
|
||
|
|
Dozzle is a real-time log viewer for Docker containers running in the Kubernetes cluster.
|
||
|
|
|
||
|
|
## Components
|
||
|
|
|
||
|
|
- **Namespace**: `dozzle`
|
||
|
|
- **Domain**: `dozzle.basicstack.de`
|
||
|
|
- **Storage**: 1Gi PVC using `hcloud-volumes-encrypted` storage class
|
||
|
|
- **Authentication**: Pocket ID OIDC integration
|
||
|
|
|
||
|
|
## Files
|
||
|
|
|
||
|
|
- `namespace.yaml`: Dozzle namespace
|
||
|
|
- `service-account.yaml`: Service account with RBAC for accessing pod logs cluster-wide
|
||
|
|
- `pvc.yaml`: Persistent volume claim for Dozzle settings (1Gi, ReadWriteOnce with Recreate strategy)
|
||
|
|
- `deployment.yaml`: Dozzle deployment with OIDC authentication
|
||
|
|
- `service.yaml`: Kubernetes service
|
||
|
|
- `ingress.yaml`: Traefik ingress with TLS
|
||
|
|
- `dozzle-oidc-sealed.yaml`: Sealed secret with OIDC credentials
|
||
|
|
|
||
|
|
## Pocket ID OIDC Client
|
||
|
|
|
||
|
|
- **Client ID**: `179c13f2-d251-4e1e-b1a0-c070df350c4e`
|
||
|
|
- **Client Name**: Dozzle
|
||
|
|
- **Callback URL**: `https://dozzle.basicstack.de/oauth/callback`
|
||
|
|
- **Scopes**: `openid profile email`
|
||
|
|
|
||
|
|
## Access
|
||
|
|
|
||
|
|
After deployment, access Dozzle at https://dozzle.basicstack.de and authenticate with Pocket ID credentials.
|
||
|
|
|
||
|
|
## ArgoCD
|
||
|
|
|
||
|
|
The application is managed by ArgoCD via `app-dozzle.yaml` in the parent apps directory.
|