remove dependencies
This commit is contained in:
@@ -1,70 +1,70 @@
|
|||||||
apiVersion: external-secrets.io/v1beta1
|
# apiVersion: external-secrets.io/v1beta1
|
||||||
kind: ExternalSecret
|
# kind: ExternalSecret
|
||||||
metadata:
|
# metadata:
|
||||||
name: argocd-oidc-secret
|
# name: argocd-oidc-secret
|
||||||
namespace: {{ .Release.Namespace }}
|
# namespace: {{ .Release.Namespace }}
|
||||||
labels:
|
# labels:
|
||||||
app.kubernetes.io/name: "{{ .Release.Name }}-server"
|
# app.kubernetes.io/name: "{{ .Release.Name }}-server"
|
||||||
app.kubernetes.io/instance: {{ .Release.Name }}
|
# app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
# app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
||||||
app.kubernetes.io/component: server
|
# app.kubernetes.io/component: server
|
||||||
app.kubernetes.io/part-of: {{ .Release.Name }}
|
# app.kubernetes.io/part-of: {{ .Release.Name }}
|
||||||
spec:
|
# spec:
|
||||||
secretStoreRef:
|
# secretStoreRef:
|
||||||
kind: ClusterSecretStore
|
# kind: ClusterSecretStore
|
||||||
name: vault
|
# name: vault
|
||||||
data:
|
# data:
|
||||||
- secretKey: secret
|
# - secretKey: secret
|
||||||
remoteRef:
|
# remoteRef:
|
||||||
conversionStrategy: Default
|
# conversionStrategy: Default
|
||||||
decodingStrategy: None
|
# decodingStrategy: None
|
||||||
key: /authentik/oidc/argocd
|
# key: /authentik/oidc/argocd
|
||||||
metadataPolicy: None
|
# metadataPolicy: None
|
||||||
property: secret
|
# property: secret
|
||||||
- secretKey: client
|
# - secretKey: client
|
||||||
remoteRef:
|
# remoteRef:
|
||||||
conversionStrategy: Default
|
# conversionStrategy: Default
|
||||||
decodingStrategy: None
|
# decodingStrategy: None
|
||||||
key: /authentik/oidc/argocd
|
# key: /authentik/oidc/argocd
|
||||||
metadataPolicy: None
|
# metadataPolicy: None
|
||||||
property: client
|
# property: client
|
||||||
|
|
||||||
---
|
# ---
|
||||||
apiVersion: external-secrets.io/v1beta1
|
# apiVersion: external-secrets.io/v1beta1
|
||||||
kind: ExternalSecret
|
# kind: ExternalSecret
|
||||||
metadata:
|
# metadata:
|
||||||
name: argocd-gitea-repo-infrastructure-secret
|
# name: argocd-gitea-repo-infrastructure-secret
|
||||||
namespace: {{ .Release.Namespace }}
|
# namespace: {{ .Release.Namespace }}
|
||||||
labels:
|
# labels:
|
||||||
app.kubernetes.io/name: argocd-gitea-repo-infrastructure-secret
|
# app.kubernetes.io/name: argocd-gitea-repo-infrastructure-secret
|
||||||
app.kubernetes.io/instance: {{ .Release.Name }}
|
# app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
# app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
||||||
app.kubernetes.io/component: repo
|
# app.kubernetes.io/component: repo
|
||||||
app.kubernetes.io/part-of: {{ .Release.Name }}
|
# app.kubernetes.io/part-of: {{ .Release.Name }}
|
||||||
argocd.argoproj.io/secret-type: repository
|
# argocd.argoproj.io/secret-type: repository
|
||||||
spec:
|
# spec:
|
||||||
secretStoreRef:
|
# secretStoreRef:
|
||||||
kind: ClusterSecretStore
|
# kind: ClusterSecretStore
|
||||||
name: vault
|
# name: vault
|
||||||
data:
|
# data:
|
||||||
- secretKey: type
|
# - secretKey: type
|
||||||
remoteRef:
|
# remoteRef:
|
||||||
conversionStrategy: Default
|
# conversionStrategy: Default
|
||||||
decodingStrategy: None
|
# decodingStrategy: None
|
||||||
key: /cl01tl/argocd/credentials/repo/infrastructure
|
# key: /cl01tl/argocd/credentials/repo/infrastructure
|
||||||
metadataPolicy: None
|
# metadataPolicy: None
|
||||||
property: type
|
# property: type
|
||||||
- secretKey: url
|
# - secretKey: url
|
||||||
remoteRef:
|
# remoteRef:
|
||||||
conversionStrategy: Default
|
# conversionStrategy: Default
|
||||||
decodingStrategy: None
|
# decodingStrategy: None
|
||||||
key: /cl01tl/argocd/credentials/repo/infrastructure
|
# key: /cl01tl/argocd/credentials/repo/infrastructure
|
||||||
metadataPolicy: None
|
# metadataPolicy: None
|
||||||
property: url
|
# property: url
|
||||||
- secretKey: sshPrivateKey
|
# - secretKey: sshPrivateKey
|
||||||
remoteRef:
|
# remoteRef:
|
||||||
conversionStrategy: Default
|
# conversionStrategy: Default
|
||||||
decodingStrategy: None
|
# decodingStrategy: None
|
||||||
key: /cl01tl/argocd/credentials/repo/infrastructure
|
# key: /cl01tl/argocd/credentials/repo/infrastructure
|
||||||
metadataPolicy: None
|
# metadataPolicy: None
|
||||||
property: sshPrivateKey
|
# property: sshPrivateKey
|
||||||
|
@@ -1,27 +1,27 @@
|
|||||||
apiVersion: networking.k8s.io/v1
|
# apiVersion: networking.k8s.io/v1
|
||||||
kind: Ingress
|
# kind: Ingress
|
||||||
metadata:
|
# metadata:
|
||||||
name: argocd-tailscale
|
# name: argocd-tailscale
|
||||||
namespace: {{ .Release.Namespace }}
|
# namespace: {{ .Release.Namespace }}
|
||||||
labels:
|
# labels:
|
||||||
app.kubernetes.io/name: argocd-tailscale
|
# app.kubernetes.io/name: argocd-tailscale
|
||||||
app.kubernetes.io/instance: {{ .Release.Name }}
|
# app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
# app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
||||||
app.kubernetes.io/component: web
|
# app.kubernetes.io/component: web
|
||||||
app.kubernetes.io/part-of: {{ .Release.Name }}
|
# app.kubernetes.io/part-of: {{ .Release.Name }}
|
||||||
spec:
|
# spec:
|
||||||
ingressClassName: tailscale
|
# ingressClassName: tailscale
|
||||||
tls:
|
# tls:
|
||||||
- hosts:
|
# - hosts:
|
||||||
- argocd-cl01tl
|
# - argocd-cl01tl
|
||||||
rules:
|
# rules:
|
||||||
- host: argocd-cl01tl
|
# - host: argocd-cl01tl
|
||||||
http:
|
# http:
|
||||||
paths:
|
# paths:
|
||||||
- path: /
|
# - path: /
|
||||||
pathType: Prefix
|
# pathType: Prefix
|
||||||
backend:
|
# backend:
|
||||||
service:
|
# service:
|
||||||
name: argocd-server
|
# name: argocd-server
|
||||||
port:
|
# port:
|
||||||
number: 80
|
# number: 80
|
||||||
|
@@ -15,23 +15,23 @@ argo-cd:
|
|||||||
- '.spec.template.spec.hostUsers'
|
- '.spec.template.spec.hostUsers'
|
||||||
timeout.reconciliation: 100s
|
timeout.reconciliation: 100s
|
||||||
timeout.reconciliation.jitter: 60s
|
timeout.reconciliation.jitter: 60s
|
||||||
url: https://argocd-cl01tl.boreal-beaufort.ts.net
|
# url: https://argocd-cl01tl.boreal-beaufort.ts.net
|
||||||
statusbadge.enabled: true
|
statusbadge.enabled: true
|
||||||
dex.config: |
|
# dex.config: |
|
||||||
connectors:
|
# connectors:
|
||||||
- config:
|
# - config:
|
||||||
issuer: https://auth-cl01tl.boreal-beaufort.ts.net/application/o/argocd/
|
# issuer: https://auth-cl01tl.boreal-beaufort.ts.net/application/o/argocd/
|
||||||
clientID: $argocd-oidc-secret:client
|
# clientID: $argocd-oidc-secret:client
|
||||||
clientSecret: $argocd-oidc-secret:secret
|
# clientSecret: $argocd-oidc-secret:secret
|
||||||
insecureEnableGroups: true
|
# insecureEnableGroups: true
|
||||||
scopes:
|
# scopes:
|
||||||
- openid
|
# - openid
|
||||||
- profile
|
# - profile
|
||||||
- email
|
# - email
|
||||||
- groups
|
# - groups
|
||||||
name: authentik
|
# name: authentik
|
||||||
type: oidc
|
# type: oidc
|
||||||
id: authentik
|
# id: authentik
|
||||||
rbac:
|
rbac:
|
||||||
policy.csv: |
|
policy.csv: |
|
||||||
g, ArgoCD Admins, role:admin
|
g, ArgoCD Admins, role:admin
|
||||||
@@ -40,7 +40,7 @@ argo-cd:
|
|||||||
server:
|
server:
|
||||||
replicas: 2
|
replicas: 2
|
||||||
ingress:
|
ingress:
|
||||||
enabled: true
|
enabled: false
|
||||||
controller: generic
|
controller: generic
|
||||||
ingressClassName: traefik
|
ingressClassName: traefik
|
||||||
annotations:
|
annotations:
|
||||||
|
Reference in New Issue
Block a user