NixOS homelab infrastructure config for Bluelynx. Komodo-managed Docker stacks behind Traefik with Pocket ID OIDC auth.
https://komodo.vlan0.io
- Just 100%
| Filename | Latest commit message | Latest commit date |
|---|---|---|
| komodo | ||
| .gitignore | ||
| README.md | ||
| resource.toml | ||
Homelab
Infrastructure
- Hardware: B650 + 1660 Super (bluelynx), NixOS
- Orchestration: Komodo
- Reverse Proxy: Traefik
- Auth: Pocket ID (passkey OIDC) + oauth2-proxy (forward auth)
- Domain: vlan0.io
- Docker Networks:
traefik- external, shared across all stacksinternal- Komodo stack only (core + mongo)
Komodo
Managed via UI at komodo.vlan0.io. Stack definitions live in Komodo DB; only the Komodo bootstrap compose is in this repo.
cd komodo
just start # start
just stop # stop
just restart # restart
To upgrade, change COMPOSE_KOMODO_IMAGE_TAG in komodo/compose.env, then restart.
.env files are not committed. Secrets managed via Komodo secret store.
Notes
- Break-glass Komodo access:
http://192.168.0.174:9120(port 32400 open in firewall) - Resource sync configured from
git.vlan0.io/ehouse/homelab - Local network (192.168.0.0/24) bypasses oauth2-proxy