• 0 Posts
  • 6 Comments
Joined 2 years ago
cake
Cake day: December 30th, 2023

help-circle
  • Check the permissions/owner of the authorized_keys file. I’m not at home right now to give you the path to it, but I have had a similar problem after I add a new ssh key to my gitea/forgejo account. It turned out that in doing so, sometimes the permissions change and gitea/forgejo then refuses to use the file. You should see warnings about this in the logs.

    In my case the problem is probably rooted within the uid/gid thats used inside the container and/or the nfs mount I use for the container volume. I never bothered to get to the bottom of it though.




  • I’m thinking about just doing something outside kubernetes that just copies the data from the directory that NFS provides to another storage.

    This is what I’m doing for the most part. A TrueNAS server provides the NFS shares and periodically backs them up with restic.

    Some apps don’t like NFS very much, especially those that require SQLite. If you’re running Jellyfin over NFS you probably know what I mean. For those apps I use Ceph instead, which is highly available and a lot faster but also more complicated. Those PVCs I backup from within kubernetes to S3 storage with velero.