Skip to content

Commit 0277202

Browse files
committed
(elqui) add 2nd s3 creds to rgw lsstcam user
To start rotation of the s3 creds.
1 parent 14992dd commit 0277202

File tree

2 files changed

+46
-5
lines changed

2 files changed

+46
-5
lines changed
Lines changed: 40 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,40 @@
1+
# yamllint disable-file
2+
{{- range .Values.users_rotate_keys }}
3+
---
4+
apiVersion: ceph.rook.io/v1
5+
kind: CephObjectStoreUser
6+
metadata:
7+
name: {{ .name }}
8+
namespace: rook-ceph
9+
spec:
10+
clusterNamespace: rook-ceph
11+
{{- toYaml .spec | nindent 2 }}
12+
keys:
13+
- accessKeyRef:
14+
name: cephobjectstoreuser-{{ .name }}
15+
key: AWS_ACCESS_KEY_ID
16+
secretKeyRef:
17+
name: cephobjectstoreuser-{{ .name }}
18+
key: AWS_SECRET_ACCESS_KEY
19+
- accessKeyRef:
20+
name: cephobjectstoreuser-{{ .name }}
21+
key: AWS_ACCESS_KEY_ID_2
22+
secretKeyRef:
23+
name: cephobjectstoreuser-{{ .name }}
24+
key: AWS_SECRET_ACCESS_KEY_2
25+
---
26+
apiVersion: external-secrets.io/v1
27+
kind: ExternalSecret
28+
metadata:
29+
name: cephobjectstoreuser-{{ .name }}
30+
namespace: rook-ceph
31+
spec:
32+
secretStoreRef:
33+
kind: ClusterSecretStore
34+
name: onepassword-oods
35+
dataFrom:
36+
- find:
37+
path: {{ .name }}
38+
name:
39+
regexp: "^AWS_.*"
40+
{{ end }}

fleet/lib/rook-ceph-conf/charts/elqui/values.yaml

Lines changed: 6 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -20,11 +20,6 @@ users:
2020
store: lfa
2121
quotas:
2222
maxBuckets: 2
23-
- name: lsstcam
24-
spec:
25-
store: lfa
26-
quotas:
27-
maxBuckets: 2
2823
- name: oods-comcam
2924
spec:
3025
store: lfa
@@ -59,3 +54,9 @@ users:
5954
store: lfa
6055
quotas:
6156
maxBuckets: 1
57+
users_rotate_keys:
58+
- name: lsstcam
59+
spec:
60+
store: lfa
61+
quotas:
62+
maxBuckets: 2

0 commit comments

Comments
 (0)