{"repo":"kencx/homelab","free":true,"listed":false,"github":"https://github.com/kencx/homelab","clone":"git clone https://github.com/kencx/homelab.git","description":"Nomad, Consul & Vault cluster in Proxmox","language":"YAML","stars":232,"topics":["hashicorp","homelab","nomad","ansible","packer","terraform","consul","vault"],"license":"MIT","category":"deployment-docker-iac","readme_excerpt":"Hubble Homelab Documentation This repository contains infrastructure-as-code for the automated deployment and configuration, and management of a Hashicorp (Nomad + Consul + Vault) cluster on Proxmox. Disclaimer This project is in alpha status and subject to bugs and breaking changes. Please do not run any code on your machine without understanding the provisioning flow, in case of data loss. Some playbooks may perform destructive actions that are irreversible! Overview This project aims to provision a full Hashicorp cluster in a semi-automated manner. It utilizes Packer, Ansible and Terraform: 1. Packer creates base Proxmox VM templates from cloud images and ISOs 2. Terraform provisions cluster nodes by cloning existing VM templates 3. Ansible installs and configures Vault, Consul, Nomad on cluster nodes It comprises minimally of one server and one client node with no high availability (HA). The nodes run Vault, Consul and Nomad as a cluster. To support HA, the setup can be further expanded to at least three server nodes and multiple client nodes hosted on a Proxmox cluster, spanning multiple physical machines. Features - [x] Golden image creation with Packer - [x] Declarative configuration of Proxmox VMs and Vault with Terraform - [x] Automated post-provisioning with Ansible - [x] Nomad container scheduling and orchestration - [x] Consul service discovery - [x] Secure node communication via mTLS - [x] Personal Certificate Authority hosted on Vault - [x] Secrets management, r","default_branch":null,"files":null,"tree":[],"storefront":"/r/kencx","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/kencx/homelab/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}