diff --git a/clusters/cl01tl/helm/vault/templates/config-map.yaml b/clusters/cl01tl/helm/vault/templates/config-map.yaml index fc9efb758..a0e5d05ad 100644 --- a/clusters/cl01tl/helm/vault/templates/config-map.yaml +++ b/clusters/cl01tl/helm/vault/templates/config-map.yaml @@ -9,6 +9,7 @@ metadata: app.kubernetes.io/part-of: {{ .Release.Name }} data: snapshot.sh: | + DATE=$(date +"%Y%m%d-%H-%M") MAX_RETRIES=5 SUCCESS=false @@ -45,7 +46,11 @@ data: echo " "; echo ">> Taking Vault snapsot ..."; - vault operator raft snapshot save /opt/backup/vault-snapshot-$(date +"%Y%m%d-%H-%M").snap + vault operator raft snapshot save /opt/backup/vault-snapshot-$DATE.snap + + echo " "; + echo ">> Setting ownership of Vault snapsot ..."; + chown 100:1000 /opt/backup/vault-snapshot-$DATE.snap echo " "; echo ">> Completed Vault snapshot"; diff --git a/clusters/cl01tl/helm/vault/values.yaml b/clusters/cl01tl/helm/vault/values.yaml index 53eaec6ff..e7cdedd1e 100644 --- a/clusters/cl01tl/helm/vault/values.yaml +++ b/clusters/cl01tl/helm/vault/values.yaml @@ -156,10 +156,6 @@ snapshot: controllers: snapshot: type: cronjob - pod: - securityContext: - runAsUser: 100 - runAsGroup: 1000 cronjob: suspend: false concurrencyPolicy: Forbid