Lab · Sheet 03

The stack.

What runs on the metal, layer by layer. Dashed is next.

Hover or tap anything numbered.

TD-LAB-03 · The stack The software on the lab, drawn as a building. Section A–A: the R720xd below grade on three ZFS pools, Proxmox at ground level, the gateway, NAS and control node beside it; a floor of virtual machines with three Talos nodes; the Kubernetes cluster as a tower on those nodes, with Cilium as its floor, the platform as fixtures and the apps storey on top. Plan: the three nodes inside the Proxmox host, one API endpoint, one network, and their disks on the fast pool. Solid is running, dashed is planned. 1234567812345678ABCDEFABCDEF TD-LAB-03 TITLE BLOCK AND NOTES BELOW 03 KUBERNETES BUILT WITH HELM → FLUX 02 VIRTUAL MACHINES BUILT WITH OPENTOFU 01 BOOTSTRAP BUILT WITH ANSIBLE DELL POWEREDGE R720XD 2 × XEON E5-2690 V2 · 40 THREADS · 128 GB HBA330 · 6 DRIVES · BELOW GRADE 1 RPOOL FAST BULK 2 ≈ 220 GiB ≈ 450 GiB ≈ 930 GiB PROXMOX VE 9.2 THE HYPERVISOR, ON ZFS 3 HOST CONFIGPLANT ROOM 4 RASPBERRYPI 4CONTROL 5 UDM PRO GATEWAY 6 UNAS PRO 8 NAS 7 1 GbE ANSIBLE TALOS 1 8 vCPU 24 GiB RAM 64 GB · FAST TALOS 2 8 vCPU 24 GiB RAM 64 GB · FAST TALOS 3 8 vCPU 24 GiB RAM 64 GB · FAST 8 8 8 ROBOMP THE OH-MY-PIGITHUB BOT 9 10 CILIUM 1.20 THE CLUSTER’S FLOOR PLATFORM METRICS-SERVER0.9 11 FLUX 12 CERT-MANAGER1.21 13 EXTERNALSECRETS 14 PROXMOX CSI 15 NFS CSI 16 VOLSYNC 17 CLOUDNATIVEPG 18 OBSERVABILITY 19 ADMISSIONPOLICIES 20 APPS HEADLAMP 21 3 × TALOS · 24 vCPU · 72 GiB SECTION A–A NOT TO SCALE POOLS DRAWN TO SIZE PROXMOX VE 9.2 THE HOST · ONE R720XD 3 kubectl API 22 KUBERNETES API ONE ENDPOINT FOR ALL 3 TALOS 1 CONTROL PLANE + WORKLOADS 8 vCPU · 24 GiB TALOS 2 CONTROL PLANE + WORKLOADS 8 vCPU · 24 GiB TALOS 3 CONTROL PLANE + WORKLOADS 8 vCPU · 24 GiB 8 8 8 10 CILIUM 1.20 ONE NETWORK A A FAST MIRROR · BAYS 2 + 3 2 DISK 1 DISK 2 DISK 3 64 GB 64 GB 64 GB ≈ 450 GiB CSI VOLUMES 15 PLAN · THE CLUSTER NOT TO SCALE POOL AND DISKS DRAWN TO SIZE IN PROGRESS
Revisions
RevDescriptionDateBy
AFirst issue2026-09-29TD
BGateway, cert-manager, first app2026-09-29TD
Project
HOMELAB
Title
The stack
Scale
AS NOTED
Units
mm
Sheet
3 OF 3
Rev
B
Date
2026-09-29
Drawn
TD
Checked
TD
Dwg no
TD-LAB-03

Line key

  • Running
  • Planned
  • Cut: walls, floors, pools
  • Network

Layer by layer

Layers
3
Running
15
Planned
6
Talos nodes
3

03 Kubernetes

Built with Helm → Flux

  • Cilium 1.20 Networking: CNI, kube-proxy replacement, Hubble running
  • metrics-server 0.9 CPU and memory use, for kubectl top running
  • Flux GitOps from the repo running
  • cert-manager 1.21 Certificates running
  • External Secrets Secrets from 1Password running
  • Proxmox CSI Block storage on fast and bulk running
  • NFS CSI Shared storage on the UNAS planned
  • VolSync Backups planned
  • CloudNativePG Postgres planned
  • VictoriaMetrics + VictoriaLogs + Grafana Metrics, logs and dashboards planned
  • Admission policies Guardrails planned
  • Headlamp A web UI for the cluster running

02 Virtual machines

Built with OpenTofu

  • Talos nodes 1.14 Control plane and workloads, all three running
  • robomp The oh-my-pi GitHub bot planned

01 Bootstrap

Built with Ansible

  • Dell R720xd The one server: 40 threads, 128 GB running
  • ZFS pools rpool, fast and bulk running
  • Proxmox VE 9.2 The hypervisor, on ZFS running
  • Host config Snapshots, disk checks, alerts, metrics running
  • Raspberry Pi 4 The control node running
  • UDM Pro Gateway and firewall running
  • UNAS Pro 8 NFS storage over 10 GbE running

Sheet 01 · The cabinet Sheet 02 · The server