942b398a53455eabfb8e6b6f149a118a4aa4e4b2
Custom provider hardcodes 10.2.0.2/32 but ProtonVPN assigns a different IP per session via their API. WireGuard handshake succeeds but ProtonVPN doesn't route traffic for the wrong IP. Native protonvpn provider fetches the correct IP assignment automatically and enables port forwarding.
infrastructure
Personal infrastructure-as-code for Legion (k3s home server) and supporting tooling.
| Doc | What it covers |
|---|---|
AGENTS.md |
Full reference: machines, secrets, services, domains, namespaces, common operations |
servers/legion/README.md |
What's running on Legion and how deployment works |
servers/legion/RUNBOOK.md |
Disaster recovery — full restore from scratch |
Quick start
cd servers/legion
direnv allow
terraform plan
terraform apply
Push to servers/ to deploy app changes via Argo CD.
Languages
HCL
78.4%
Shell
17.5%
Python
2.6%
Dockerfile
1.5%