chore: Update manifests after change

This commit is contained in:
2026-03-27 01:08:44 +00:00
parent 5bedbbefa2
commit 81368dbe1a
21 changed files with 17 additions and 192 deletions

View File

@@ -45,13 +45,13 @@ spec:
value: /gallery value: /gallery
- name: CSRF_TRUSTED_ORIGINS - name: CSRF_TRUSTED_ORIGINS
value: https://foldergram.alexlebens.net value: https://foldergram.alexlebens.net
image: ghcr.io/foldergram/foldergram:1.0.6 image: ghcr.io/foldergram/foldergram:1.0.8@sha256:3546dc1da4ec12cb27aaecbf77896d708ac7601eb0225e0f6e181d7ef35273f9
imagePullPolicy: IfNotPresent imagePullPolicy: IfNotPresent
name: main name: main
resources: resources:
requests: requests:
cpu: 10m cpu: 1m
memory: 128Mi memory: 230Mi
volumeMounts: volumeMounts:
- mountPath: /app/data - mountPath: /app/data
name: cache name: cache

View File

@@ -23,7 +23,7 @@ spec:
name: foldergram name: foldergram
namespace: foldergram namespace: foldergram
port: 80 port: 80
weight: 100 weight: 1
matches: matches:
- path: - path:
type: PathPrefix type: PathPrefix

View File

@@ -33,80 +33,6 @@ spec:
hostNetwork: false hostNetwork: false
hostPID: false hostPID: false
dnsPolicy: ClusterFirst dnsPolicy: ClusterFirst
initContainers:
- command:
- /bin/sh
- -ec
- |
apk add --no-cache git;
cd /tmp;
git clone -n --depth=1 --filter=tree:0 https://github.com/cn-tools/cntools_FreshRssExtensions.git;
cd cntools_FreshRssExtensions;
git sparse-checkout set --no-cone /xExtension-YouTubeChannel2RssFeed;
git checkout;
rm -rf /var/www/FreshRSS/extensions/xExtension-YouTubeChannel2RssFeed
cp -r xExtension-YouTubeChannel2RssFeed /var/www/FreshRSS/extensions
chown -R 568:568 /var/www/FreshRSS/extensions/xExtension-YouTubeChannel2RssFeed
image: alpine:3.23.3
imagePullPolicy: IfNotPresent
name: init-download-extension-1
resources:
requests:
cpu: 10m
memory: 128Mi
securityContext:
runAsUser: 0
volumeMounts:
- mountPath: /var/www/FreshRSS/extensions
name: extensions
- command:
- /bin/sh
- -ec
- |
apk add --no-cache git;
cd /tmp;
git clone -n --depth=1 --filter=tree:0 https://github.com/FreshRSS/Extensions.git;
cd Extensions;
git sparse-checkout set --no-cone /xExtension-ImageProxy;
git checkout;
rm -rf /var/www/FreshRSS/extensions/xExtension-ImageProxy
cp -r xExtension-ImageProxy /var/www/FreshRSS/extensions
chown -R 568:568 /var/www/FreshRSS/extensions/xExtension-ImageProxy
image: alpine:3.23.3
imagePullPolicy: IfNotPresent
name: init-download-extension-2
resources:
requests:
cpu: 10m
memory: 128Mi
securityContext:
runAsUser: 0
volumeMounts:
- mountPath: /var/www/FreshRSS/extensions
name: extensions
- command:
- /bin/sh
- -ec
- |
cd /tmp;
wget https://github.com/zimmra/xExtension-karakeep-button/archive/refs/tags/v1.1.tar.gz;
tar -xvzf *.tar.gz;
rm -rf /var/www/FreshRSS/extensions/xExtension-karakeep-button
mkdir /var/www/FreshRSS/extensions/xExtension-karakeep-button
cp -r /tmp/xExtension-karakeep-button-*/* /var/www/FreshRSS/extensions/xExtension-karakeep-button
chown -R 568:568 /var/www/FreshRSS/extensions/xExtension-karakeep-button
image: alpine:3.23.3
imagePullPolicy: IfNotPresent
name: init-download-extension-3
resources:
requests:
cpu: 10m
memory: 128Mi
securityContext:
runAsUser: 0
volumeMounts:
- mountPath: /var/www/FreshRSS/extensions
name: extensions
containers: containers:
- env: - env:
- name: PGID - name: PGID
@@ -175,22 +101,16 @@ spec:
name: freshrss-oidc-secret name: freshrss-oidc-secret
- secretRef: - secretRef:
name: freshrss-install-secret name: freshrss-install-secret
image: freshrss/freshrss:1.28.1 image: freshrss/freshrss:1.28.1@sha256:9100f649f5c946f589f54cdb9be7a65996528f48f691ef90eb262a0e06e5a522
imagePullPolicy: IfNotPresent
name: main name: main
resources: resources:
requests: requests:
cpu: 10m cpu: 1m
memory: 128Mi memory: 128Mi
volumeMounts: volumeMounts:
- mountPath: /var/www/FreshRSS/data - mountPath: /var/www/FreshRSS/data
name: data name: data
- mountPath: /var/www/FreshRSS/extensions
name: extensions
volumes: volumes:
- name: data - name: data
persistentVolumeClaim: persistentVolumeClaim:
claimName: freshrss-data claimName: freshrss-data
- name: extensions
persistentVolumeClaim:
claimName: freshrss-extensions

View File

@@ -14,22 +14,13 @@ spec:
data: data:
- secretKey: ADMIN_EMAIL - secretKey: ADMIN_EMAIL
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /cl01tl/freshrss/config key: /cl01tl/freshrss/config
metadataPolicy: None
property: ADMIN_EMAIL property: ADMIN_EMAIL
- secretKey: ADMIN_PASSWORD - secretKey: ADMIN_PASSWORD
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /cl01tl/freshrss/config key: /cl01tl/freshrss/config
metadataPolicy: None
property: ADMIN_PASSWORD property: ADMIN_PASSWORD
- secretKey: ADMIN_API_PASSWORD - secretKey: ADMIN_API_PASSWORD
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /cl01tl/freshrss/config key: /cl01tl/freshrss/config
metadataPolicy: None
property: ADMIN_API_PASSWORD property: ADMIN_API_PASSWORD

View File

@@ -14,22 +14,13 @@ spec:
data: data:
- secretKey: OIDC_CLIENT_ID - secretKey: OIDC_CLIENT_ID
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /authentik/oidc/freshrss key: /authentik/oidc/freshrss
metadataPolicy: None
property: client property: client
- secretKey: OIDC_CLIENT_SECRET - secretKey: OIDC_CLIENT_SECRET
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /authentik/oidc/freshrss key: /authentik/oidc/freshrss
metadataPolicy: None
property: secret property: secret
- secretKey: OIDC_CLIENT_CRYPTO_KEY - secretKey: OIDC_CLIENT_CRYPTO_KEY
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /authentik/oidc/freshrss key: /authentik/oidc/freshrss
metadataPolicy: None
property: crypto-key property: crypto-key

View File

@@ -7,8 +7,6 @@ metadata:
app.kubernetes.io/managed-by: Helm app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss app.kubernetes.io/name: freshrss
helm.sh/chart: freshrss-4.6.2 helm.sh/chart: freshrss-4.6.2
annotations:
helm.sh/resource-policy: keep
namespace: freshrss namespace: freshrss
spec: spec:
accessModes: accessModes:

View File

@@ -1,19 +0,0 @@
kind: PersistentVolumeClaim
apiVersion: v1
metadata:
name: freshrss-extensions
labels:
app.kubernetes.io/instance: freshrss
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: freshrss
helm.sh/chart: freshrss-4.6.2
annotations:
helm.sh/resource-policy: keep
namespace: freshrss
spec:
accessModes:
- "ReadWriteOnce"
resources:
requests:
storage: "1Gi"
storageClassName: "ceph-block"

View File

@@ -28,11 +28,6 @@ spec:
fsGroupChangePolicy: OnRootMismatch fsGroupChangePolicy: OnRootMismatch
runAsGroup: 568 runAsGroup: 568
runAsUser: 568 runAsUser: 568
supplementalGroups:
- 44
- 100
- 109
- 65539
copyMethod: Snapshot copyMethod: Snapshot
storageClassName: ceph-block storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot volumeSnapshotClassName: ceph-blockpool-snapshot

View File

@@ -28,11 +28,6 @@ spec:
fsGroupChangePolicy: OnRootMismatch fsGroupChangePolicy: OnRootMismatch
runAsGroup: 568 runAsGroup: 568
runAsUser: 568 runAsUser: 568
supplementalGroups:
- 44
- 100
- 109
- 65539
copyMethod: Snapshot copyMethod: Snapshot
storageClassName: ceph-block storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot volumeSnapshotClassName: ceph-blockpool-snapshot

View File

@@ -28,11 +28,6 @@ spec:
fsGroupChangePolicy: OnRootMismatch fsGroupChangePolicy: OnRootMismatch
runAsGroup: 568 runAsGroup: 568
runAsUser: 568 runAsUser: 568
supplementalGroups:
- 44
- 100
- 109
- 65539
copyMethod: Snapshot copyMethod: Snapshot
storageClassName: ceph-block storageClassName: ceph-block
volumeSnapshotClassName: ceph-blockpool-snapshot volumeSnapshotClassName: ceph-blockpool-snapshot

View File

@@ -47,36 +47,15 @@ spec:
- server - server
topologyKey: kubernetes.io/hostname topologyKey: kubernetes.io/hostname
containers: containers:
- command:
- sleep
- infinity
image: ubuntu:resolute-20260312
imagePullPolicy: IfNotPresent
name: debug
resources:
requests:
cpu: 10m
memory: 32Mi
volumeMounts:
- mountPath: /etc/garage.toml
mountPropagation: None
name: config
readOnly: true
subPath: garage-1.toml
- mountPath: /var/lib/garage/data
name: data-1
- mountPath: /var/lib/garage/meta
name: db-1
- envFrom: - envFrom:
- secretRef: - secretRef:
name: garage-token-secret name: garage-token-secret
image: dxflrs/garage:v2.2.0 image: dxflrs/garage:v2.2.0@sha256:45a61ce3f7c9c24fc23d9ed2b09b27ed560ab87b34605d175d5c588f539c24e4
imagePullPolicy: IfNotPresent
name: main name: main
resources: resources:
requests: requests:
cpu: 10m cpu: 10m
memory: 128Mi memory: 400Mi
volumeMounts: volumeMounts:
- mountPath: /etc/garage.toml - mountPath: /etc/garage.toml
mountPropagation: None mountPropagation: None

View File

@@ -50,13 +50,12 @@ spec:
- envFrom: - envFrom:
- secretRef: - secretRef:
name: garage-token-secret name: garage-token-secret
image: dxflrs/garage:v2.2.0 image: dxflrs/garage:v2.2.0@sha256:45a61ce3f7c9c24fc23d9ed2b09b27ed560ab87b34605d175d5c588f539c24e4
imagePullPolicy: IfNotPresent
name: main name: main
resources: resources:
requests: requests:
cpu: 10m cpu: 10m
memory: 128Mi memory: 400Mi
volumeMounts: volumeMounts:
- mountPath: /etc/garage.toml - mountPath: /etc/garage.toml
mountPropagation: None mountPropagation: None

View File

@@ -50,13 +50,12 @@ spec:
- envFrom: - envFrom:
- secretRef: - secretRef:
name: garage-token-secret name: garage-token-secret
image: dxflrs/garage:v2.2.0 image: dxflrs/garage:v2.2.0@sha256:45a61ce3f7c9c24fc23d9ed2b09b27ed560ab87b34605d175d5c588f539c24e4
imagePullPolicy: IfNotPresent
name: main name: main
resources: resources:
requests: requests:
cpu: 10m cpu: 10m
memory: 128Mi memory: 400Mi
volumeMounts: volumeMounts:
- mountPath: /etc/garage.toml - mountPath: /etc/garage.toml
mountPropagation: None mountPropagation: None

View File

@@ -46,13 +46,12 @@ spec:
secretKeyRef: secretKeyRef:
key: GARAGE_ADMIN_TOKEN key: GARAGE_ADMIN_TOKEN
name: garage-token-secret name: garage-token-secret
image: khairul169/garage-webui:1.1.0 image: khairul169/garage-webui:1.1.0@sha256:17c793551873155065bf9a022dabcde874de808a1f26e648d4b82e168806439c
imagePullPolicy: IfNotPresent
name: main name: main
resources: resources:
requests: requests:
cpu: 10m cpu: 1m
memory: 128Mi memory: 10Mi
volumeMounts: volumeMounts:
- mountPath: /etc/garage.toml - mountPath: /etc/garage.toml
mountPropagation: None mountPropagation: None

View File

@@ -14,22 +14,13 @@ spec:
data: data:
- secretKey: GARAGE_RPC_SECRET - secretKey: GARAGE_RPC_SECRET
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /cl01tl/garage/token key: /cl01tl/garage/token
metadataPolicy: None
property: rpc property: rpc
- secretKey: GARAGE_ADMIN_TOKEN - secretKey: GARAGE_ADMIN_TOKEN
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /cl01tl/garage/token key: /cl01tl/garage/token
metadataPolicy: None
property: admin property: admin
- secretKey: GARAGE_METRICS_TOKEN - secretKey: GARAGE_METRICS_TOKEN
remoteRef: remoteRef:
conversionStrategy: Default
decodingStrategy: None
key: /cl01tl/garage/token key: /cl01tl/garage/token
metadataPolicy: None
property: metric property: metric

View File

@@ -23,7 +23,7 @@ spec:
name: garage-main name: garage-main
namespace: garage namespace: garage
port: 3900 port: 3900
weight: 100 weight: 1
matches: matches:
- path: - path:
type: PathPrefix type: PathPrefix

View File

@@ -23,7 +23,7 @@ spec:
name: garage-webui name: garage-webui
namespace: garage namespace: garage
port: 3909 port: 3909
weight: 100 weight: 1
matches: matches:
- path: - path:
type: PathPrefix type: PathPrefix

View File

@@ -7,8 +7,6 @@ metadata:
app.kubernetes.io/managed-by: Helm app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage app.kubernetes.io/name: garage
helm.sh/chart: garage-4.6.2 helm.sh/chart: garage-4.6.2
annotations:
helm.sh/resource-policy: keep
namespace: garage namespace: garage
spec: spec:
accessModes: accessModes:

View File

@@ -7,8 +7,6 @@ metadata:
app.kubernetes.io/managed-by: Helm app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage app.kubernetes.io/name: garage
helm.sh/chart: garage-4.6.2 helm.sh/chart: garage-4.6.2
annotations:
helm.sh/resource-policy: keep
namespace: garage namespace: garage
spec: spec:
accessModes: accessModes:

View File

@@ -7,8 +7,6 @@ metadata:
app.kubernetes.io/managed-by: Helm app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage app.kubernetes.io/name: garage
helm.sh/chart: garage-4.6.2 helm.sh/chart: garage-4.6.2
annotations:
helm.sh/resource-policy: keep
namespace: garage namespace: garage
spec: spec:
accessModes: accessModes:

View File

@@ -7,8 +7,6 @@ metadata:
app.kubernetes.io/managed-by: Helm app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: garage app.kubernetes.io/name: garage
helm.sh/chart: garage-4.6.2 helm.sh/chart: garage-4.6.2
annotations:
helm.sh/resource-policy: keep
namespace: garage namespace: garage
spec: spec:
accessModes: accessModes: