security rework and memory optimilizations.

This commit is contained in:
2025-11-17 08:48:00 +01:00
parent 72a653f494
commit e8eb2e954c
55 changed files with 8301 additions and 245 deletions
+22 -14
View File
@@ -26,24 +26,31 @@
```
┌─────────────────────────────────────────┐
│ Infrastructure Layer │
│ ├── Portainer (8080) - Container mgmt │
│ ├── NPM (8000) - Reverse proxy │
│ ├── Portainer (8001) - Container mgmt │
│ ├── PostgreSQL Shared (5432) - DB │
│ ├── Redis Shared (6379) - Cache │
│ ├── NPM (81) - Reverse proxy │
│ └── Ollama (11434) - ML models [GPU] │
├─────────────────────────────────────────┤
│ Networking Layer │
│ └── Headscale (8085) - Secure mesh │
│ ├── docker-dataplane - Service mesh │
│ └── Headscale (8085) - VPN mesh │
├─────────────────────────────────────────┤
│ Monitoring Layer │
│ ├── Uptime Kuma (3001) - Uptime │
│ ├── Netdata (19999) - Metrics │
│ └── Organizr (9999) - Dashboard │
├─────────────────────────────────────────┤
│ Optimization Layer │
│ ├── Watchtower - Auto-updates │
│ └── Maintenance - Automated backups │
├─────────────────────────────────────────┤
│ Application Layer (Backlog) │
│ Application Layer │
│ ├── Open WebUI (82) - LLM chat UI │
│ ├── Core API (8083) - Infra mgmt │
│ ├── Jellyfin (8096) - Media [GPU] │
│ ├── Nextcloud (8082) - Cloud storage │
│ ├── Gitea (3002) - Git hosting │
│ └── Samba (445) - File shares │
└─────────────────────────────────────────┘
```
@@ -78,12 +85,12 @@ tower-of-joy/
## Documentation
- **[CONTAINERS.md](CONTAINERS.md)** - Complete container reference guide with specs and access details
- **[docs/SHARED_INFRASTRUCTURE_ARCHITECTURE.md](docs/SHARED_INFRASTRUCTURE_ARCHITECTURE.md)** - PostgreSQL/Redis shared infrastructure design
- **[AGENTS.md](AGENTS.md)** - Guidelines for AI coding agents (conventions, testing, commits)
- **[STATUS.md](STATUS.md)** - Current implementation phase and progress
- **[CHANGELOG.md](CHANGELOG.md)** - Version history and completed work
- **[SYSTEM.md](SYSTEM.md)** - Detailed hardware and software specs
- **[containers/research.md](containers/research.md)** - Platform research and comparison
- **[containers/implementation-plan.md](containers/implementation-plan.md)** - Detailed deployment guide
## Development Setup
@@ -138,19 +145,20 @@ make deploy-apps # Deploy applications (Jellyfin, Nextcloud, Samba)
| Service | Port | Description |
|---------|------|-------------|
| **Nginx Proxy Manager** | 8000 | Unified web interface entry point |
| **Portainer** | 8080 | Container management UI |
| **AMP** | 8081 | Game server management (existing) |
| **Portainer** | 8001 | Container management UI |
| **PostgreSQL Shared** | 5432 | Shared database server (internal) |
| **Redis Shared** | 6379 | Shared cache server (internal) |
| **Nginx Proxy Manager** | 81 | Reverse proxy admin |
| **Open WebUI** | 82 | LLM chat interface |
| **Ollama** | 11434 | ML model API |
| **Core API** | 8083 | OpenAPI functions for Open WebUI |
| **Core API** | 8083 | Infrastructure management API |
| **Code-Server** | 8084 | Browser-based IDE (localhost only) |
| **Headscale** | 8085 | Tailscale control server |
| **Headscale** | 8085 | VPN control server |
| **Jellyfin** | 8096 | Media streaming |
| **Nextcloud** | 8082 | Cloud storage |
| **Uptime Kuma** | 3001 | Service monitoring |
| **Gitea** | 3002 | Git repository hosting |
| **Netdata** | 19999 | System monitoring |
| **Heimdall** | 8888 | Application dashboard |
| **Organizr** | 9999 | Unified dashboard |
## GPU Services
@@ -212,6 +220,6 @@ Personal infrastructure project - not licensed for reuse.
---
**Version:** 0.1.0-planning
**Last Updated:** 2025-11-11
**Version:** 0.5.0-optimization
**Last Updated:** 2025-11-16
**System:** tower-of-joy