A fully automated home lab Kubernetes cluster running media services, home automation, network infrastructure, and observability tools. Everything is managed declaratively through Git using Flux CD.
| Device | Num | OS Disk Size | Data Disk Size | RAM | OS | Function |
|---|---|---|---|---|---|---|
| Lenovo M720q Tiny | 3 | 256GB SSD | - | 16GB | Talos Linux | Kubernetes |
| UniFi UNAS | 1 | - | 3x16TB HDD | - | UniFi OS | NAS |
| UniFi UDM Pro | 1 | - | - | - | UniFi OS | Router |
| UniFi USW Pro 24 PoE | 1 | - | - | - | - | PoE Switch |
- OS: Talos Linux - Immutable Kubernetes OS
- GitOps: Flux CD - Automated cluster reconciliation
- CNI: Cilium - eBPF-based networking
- Storage: OpenEBS - Container-attached storage
- Ingress: Traefik - Cloud-native reverse proxy (split internal/external instances)
- Certificates: cert-manager - Automated TLS with Let's Encrypt wildcard certificates
- Secrets: External Secrets + Infisical - Secret management
- DNS: AdGuard Home - Network-wide ad blocking
Media Stack
- Jellyfin, Radarr, Sonarr, Prowlarr, Sabnzbd, qBittorrent
- Audiobookshelf, Booklore, Shelfmark
Home Automation
- Home Assistant
Network Services
- UniFi Controller, AdGuard Home, Cloudflare Tunnel
Observability
- Grafana, Prometheus, Loki, Alloy
Dashboard
- Homepage - Unified dashboard with service integrations
- Automatic reconciliation every 30 minutes
- Encrypted secrets with SOPS (Age) and External Secrets (Infisical)
- Automated dependency updates via Renovate
- Automatic pod restarts on config/secret changes via Reloader
This cluster setup is inspired by and based on the onedr0p/cluster-template.