Kubernetes on Proxmox.
Fully automated.

From a bare Proxmox instance to a production-ready Kubernetes cluster — in under 5 minutes. One Bash script, zero dependencies.

Coming soon...
proxkube.dev — k8s-hetzner — 00:04:12
K8s Monitor · k8s-hetzner · 00:04:12 11:14:47 RUNNING ██████████████████████████░░░░░░ 80% 14/18 ── Phases ────────────────────────────────────────────────────────────────── 1. Preflight Check 10. Control Plane init 2. Cloud-Init Template 11. CNI Plugin 3. Clone VMs 12. Join CPs (HA) 4. Port Forwarding 13. Join Workers 5. Start VMs + SSH 14. Labels + Taints 6. apt update + Reboot 15. · Add-ons (Helm...) 7. SSH Keys + /etc/hosts 16. · Fetch kubeconfig 8. Firewall (nftables) 17. · Write inventory 9. Kubernetes packages 18. · Take snapshots ── Proxmox ───────────────────────────────────────────────────────────────── k8s-hetzner-cp-1 running k8s-hetzner-worker-1 running k8s-hetzner-worker-2 running ── Log ───────────────────────────────────────────────────────────────────── [11:14:29] Worker-2 joined successfully. [11:14:31] Applying node labels and taints... [11:14:47] ✓ All 3 Nodes Ready. [q] Quit [+/-] Log lines

Why proxkube.dev

Everything included. Nothing extra.

A single Bash script. No Ansible, no Terraform, no external dependencies.

Fully Automated

Cloud-Init template, network detection, storage detection — everything is automatically discovered and configured.

🔄

Resumption

If setup aborts, resume continues exactly where it left off. No VM is recreated.

🖥️

Live TUI

Built-in flicker-free TUI with 18 phases, progress bar and live log. No separate monitoring tool needed.

🔒

Wildcard TLS

Let's Encrypt wildcard certificate via Cloudflare DNS01 challenge — works without a public IP.

🏗️

HA Mode

3 Control Planes with HAProxy and keepalived (Virtual IP). If one CP fails, another takes over automatically.

💾

Backup & Restore

etcd backup, VM snapshots, Velero for Persistent Volumes. Fully automated restore process included.

🌐

Hetzner Dedicated

Special mode for Proxmox on Hetzner root servers: private NAT network, port forwarding, iptables-persistent.

🔑

Secrets Management

All addon tokens (Headlamp, ArgoCD, Vaultwarden) are collected in a secured file after setup.

Ecosystem

Add-ons at the flip of a switch

Just set to true — the rest happens automatically.

Traefik Traefik
cert-manager cert-manager
Cloudflare Cloudflare DNS
ArgoCD ArgoCD
H Headlamp
Vaultwarden Vaultwarden
Longhorn Longhorn
M MetalLB
N NFS Provisioner
Velero Velero
metrics-server metrics-server
K Kured
k9 k9s
Helm Helm