Files
ProxMenux/oci/catalog/overlays/kimai.json
T
MacRimiandClaude Opus 5 bcabcb618c feat(oci): run official container images as native LXC containers
Adds the OCI manager: an engine that turns a Docker Compose file into an
LXC definition, a catalog of 365 applications drawn from LinuxServer.io
and other container image sources, and a per-instance registry recording
what each container was built from. Reachable from the main menu.

Catalog text is translated like every other string in the project: the
taglines go through translate() and land in lang/*.json, so the entries
read in all eight languages instead of only English.

Translation cache builder:
- a failed translation leaves the key absent rather than writing English,
  which previously made the string count as translated forever
- a result identical to a 3+ word source is rejected, catching a provider
  that silently returns the text it was given
- strings that are nothing but glossary terms keep their source spelling
  instead of being discarded as failures
- no backoff between attempts when the provider is deterministic
- application names are protected so "HAOS One" survives translation
- argos joins the provider list, and the workflow reads the OCI sources

Audit & Report:
- findings that moved in the wrong direction between runs are reported
  alongside the ones that improved
- an accepted risk can carry a review date and is flagged when it falls due
- backup checks explain in plain language what they looked at and what to
  do next

Monitor:
- disks can be excluded from periodic reads, and an idle disk says so
  instead of showing a stale temperature
- per-disk identity survives a controller or enclosure change
- scheduled Borg backups resolve their SSH key from the repository entry
- PVE upgrades log the package list and the resulting dpkg changes

The web build no longer copies scripts/ into public/: the documentation
links to GitHub, so nothing read that folder.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-09-22 18:24:59 +02:00

31 lines
1.6 KiB
JSON

{
"proxmox": {
"stack_completion_notes": [
"Kimai has no default account. Enter the container with: pct enter {main_vmid}",
"Inside the LXC, create the administrator: console kimai:user:create YOUR_USERNAME YOUR_EMAIL ROLE_SUPER_ADMIN"
],
"stack_environment_overrides": {
"kimai": {
"APP_SECRET": "${GENERATED_APP_SECRET}",
"DATABASE_URL": "mysql://kimai:${GENERATED_KIMAI_DB_PASSWORD}@mariadb:3306/kimai?charset=utf8mb4",
"TRUSTED_HOSTS": "^(?:[0-9]{1,3}[.]){3}[0-9]{1,3}$|^localhost$"
},
"mariadb": {
"MYSQL_ROOT_PASSWORD": "${GENERATED_MARIADB_ROOT_PASSWORD}",
"MYSQL_DATABASE": "kimai",
"MYSQL_USER": "kimai",
"MYSQL_PASSWORD": "${GENERATED_KIMAI_DB_PASSWORD}"
}
},
"stack_adaptation_notes": [
"Both images remain LinuxServer images, including lscr.io/linuxserver/mariadb:latest; no database image substitution.",
"MariaDB persists /config and readiness requires an authenticated SELECT 1 as the application user.",
"The DATABASE_URL uses the shared generated database password and automatic server version detection.",
"Initial TRUSTED_HOSTS permits IPv4 hostnames and localhost. Set the intended domain when configuring a reverse proxy.",
"Create the first administrator using the upstream console kimai:user:create command inside the Kimai LXC; no default account is fabricated.",
"Installation, migrations, administrator creation and persistence remain unvalidated in a real OCI LXC."
],
"stack_references": ["https://docs.linuxserver.io/images/docker-kimai/", "https://docs.linuxserver.io/images/docker-mariadb/"]
}
}