This commit is contained in:
Greyscale 2025-01-16 09:57:50 +01:00
parent 432f5a4f37
commit 15575361e7
6 changed files with 33 additions and 33 deletions

View file

@ -5,8 +5,8 @@ module "volume" {
volume_name_explicit = true
driver = "local"
driver_opts = {
"type" = "nfs"
"o" = "addr=${module.efs_file_system.dns_name},rw,nfsvers=4.1,rsize=1048576,wsize=1048576,hard,timeo=600,retrans=2"
"type" = "nfs"
"o" = "addr=${module.efs_file_system.dns_name},rw,nfsvers=4.1,rsize=1048576,wsize=1048576,hard,timeo=600,retrans=2"
"device" = ":/"
}
}

View file

@ -9,10 +9,10 @@ module "admin" {
networks = [module.network]
converge_enable = false
traefik = {
domain = var.domain
ssl = true
rule = "Host(`${var.domain}`) && PathPrefix(`/admin`)"
port = 80
domain = var.domain
ssl = true
rule = "Host(`${var.domain}`) && PathPrefix(`/admin`)"
port = 80
}
placement_constraints = var.placement_constraints
}

View file

@ -1,11 +1,11 @@
locals {
config = {
server_url = var.domain
listen_addr = "0.0.0.0:8080"
server_url = var.domain
listen_addr = "0.0.0.0:8080"
metrics_listen_addr = "0.0.0.0:9090"
grpc_listen_addr = "0.0.0.0:50443"
grpc_listen_addr = "0.0.0.0:50443"
grpc_allow_insecure = false
private_key_path = "/var/lib/headscale/private.key"
private_key_path = "/var/lib/headscale/private.key"
noise = {
private_key_path = "/var/lib/headscale/noise_private.key"
}
@ -15,22 +15,22 @@ locals {
]
derp = {
server = {
enabled = false
region_id = 999
region_code = "headscale"
region_name = "Headscale Embedded DERP"
enabled = false
region_id = 999
region_code = "headscale"
region_name = "Headscale Embedded DERP"
stun_listen_addr = "0.0.0.0:3478"
}
urls = [
"https://controlplane.tailscale.com/derpmap/default",
]
paths = []
paths = []
auto_update_enabled = true
update_frequency = "24h"
update_frequency = "24h"
}
disable_check_updates = false
disable_check_updates = false
ephemeral_node_inactivity_timeout = "30m"
node_update_check_interval= "10s"
node_update_check_interval = "10s"
# Database bits
db_type = "postgres"
@ -48,12 +48,12 @@ locals {
#tls_letsencrypt_challenge_type = "HTTP-01"
#tls_letsencrypt_listen = ":http"
tls_cert_path = ""
tls_key_path = ""
tls_key_path = ""
# Logs
log = {
level = "info"
format = "text"
level = "info"
format = "text"
}
# ACL
@ -62,12 +62,12 @@ locals {
# DNS
dns_config = {
override_local_dns = true
nameservers = ["1.1.1.1"]
magic_dns = true
base_domain = var.domain
nameservers = ["1.1.1.1"]
magic_dns = true
base_domain = var.domain
}
unix_socket = "/var/run/headscale.sock"
unix_socket = "/var/run/headscale.sock"
unix_socket_permission = "0770"
logtail = {

View file

@ -11,11 +11,11 @@ module "headscale" {
}
networks = [module.network]
converge_enable = false
command = ["headscale", "serve"]
command = ["headscale", "serve"]
traefik = {
domain = var.domain
ssl = true
port = 8080
domain = var.domain
ssl = true
port = 8080
}
placement_constraints = var.placement_constraints
}

View file

@ -1,10 +1,10 @@
variable "image" {
description = "The headscale image to deploy"
default = "headscale/headscale:0.22.3"
default = "headscale/headscale:0.22.3"
}
variable "admin_image" {
description = "The headscale admin image to deploy"
default = "goodieshq/headscale-admin:0.1.7b"
description = "The headscale admin image to deploy"
default = "goodieshq/headscale-admin:0.1.7b"
}
variable "stack_name" {
description = "The name of the stack"

View file

@ -1,4 +1,4 @@
module "network" {
source = "../../docker/network"
source = "../../docker/network"
stack_name = var.stack_name
}