Skip to content

Commit f307a66

Browse files
add further payloads
1 parent 774585c commit f307a66

22 files changed

+381
-2
lines changed
File renamed without changes.
File renamed without changes.
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
---
2+
apiVersion: kustomize.config.k8s.io/v1beta1
3+
kind: Kustomization
4+
namespace: acmevault
5+
resources:
6+
- namespace.yaml
7+
- ../../../common/acmevault
8+
patches:
9+
- target:
10+
kind: Deployment
11+
name: acmevault
12+
patch: |-
13+
- op: add
14+
path: /spec/template/spec/containers/0/env/-
15+
value:
16+
name: ACMEVAULT_VAULT_K8S_MOUNT
17+
value: svc.dd.soeren.cloud
Lines changed: 7 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,7 @@
1+
---
2+
kind: Namespace
3+
apiVersion: v1
4+
metadata:
5+
name: acmevault
6+
labels:
7+
name: acmevault
Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
---
2+
apiVersion: external-secrets.io/v1
3+
kind: ExternalSecret
4+
metadata:
5+
name: hermes-tokens
6+
spec:
7+
refreshInterval: 12h
8+
secretStoreRef:
9+
name: "vault"
10+
kind: "ClusterSecretStore"
11+
target:
12+
name: "hermes-tokens"
13+
creationPolicy: "Owner"
14+
data:
15+
- secretKey: "gotify"
16+
remoteRef:
17+
key: "secret/soeren.cloud/env/prod/hermes"
18+
property: "gotify"
Lines changed: 21 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,21 @@
1+
---
2+
http:
3+
address: "0.0.0.0:8080"
4+
metrics_addr: "0.0.0.0:9223"
5+
events_impl: [http]
6+
7+
db:
8+
type: sqlite
9+
name: "/data/sqlite.db"
10+
11+
awtrix:
12+
- uri: "awtrix-office"
13+
addr: "http://awtrix-office.dd.soeren.cloud"
14+
- uri: "awtrix-livingroom"
15+
addr: "http://awtrix-livingroom.dd.soeren.cloud"
16+
17+
dead_letter_queue: "gotify"
18+
gotify:
19+
- uri: "gotify"
20+
token_file: "/etc/hermes/gotify"
21+
addr: "http://gotify.gotify"
Lines changed: 25 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,25 @@
1+
---
2+
apiVersion: "kustomize.config.k8s.io/v1beta1"
3+
kind: "Kustomization"
4+
namespace: "hermes"
5+
components:
6+
- "../../../../apps/hermes/components/istio"
7+
- "../../../../apps/hermes/components/secret"
8+
- "../../../../apps/hermes/components/pvc"
9+
resources:
10+
- "namespace.yaml"
11+
- "external-secret-hermes.yaml"
12+
- "../../../../apps/hermes"
13+
configMapGenerator:
14+
- name: "hermes-config"
15+
files:
16+
- "hermes-config.yaml"
17+
patches:
18+
- target:
19+
kind: "VirtualService"
20+
name: "hermes"
21+
patch: |-
22+
- op: "replace"
23+
path: "/spec/hosts"
24+
value:
25+
- "hermes.svc.dd.soeren.cloud"
Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
---
2+
kind: Namespace
3+
apiVersion: v1
4+
metadata:
5+
name: hermes
6+
labels:
7+
name: hermes
8+
pod-security.kubernetes.io/enforce: baseline
9+
pod-security.kubernetes.io/enforce-version: latest
Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,22 @@
1+
---
2+
apiVersion: "external-secrets.io/v1"
3+
kind: "ExternalSecret"
4+
metadata:
5+
name: "microbin"
6+
spec:
7+
refreshInterval: "1h"
8+
secretStoreRef:
9+
name: "vault"
10+
kind: "ClusterSecretStore"
11+
target:
12+
name: "microbin"
13+
creationPolicy: "Owner"
14+
data:
15+
- secretKey: "MICROBIN_ADMIN_USERNAME"
16+
remoteRef:
17+
key: "secret/soeren.cloud/env/prod/microbin"
18+
property: "MICROBIN_ADMIN_USERNAME"
19+
- secretKey: "MICROBIN_ADMIN_PASSWORD"
20+
remoteRef:
21+
key: "secret/soeren.cloud/env/prod/microbin"
22+
property: "MICROBIN_ADMIN_PASSWORD"
Lines changed: 25 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,25 @@
1+
---
2+
apiVersion: kustomize.config.k8s.io/v1beta1
3+
kind: Kustomization
4+
namespace: microbin
5+
resources:
6+
- namespace.yaml
7+
- external-secret-microbin.yaml
8+
- ../../../../apps/microbin
9+
components:
10+
- ../../../../apps/microbin/components/istio
11+
- ../../../../apps/microbin/components/pvc
12+
patches:
13+
- target:
14+
kind: VirtualService
15+
name: microbin
16+
patch: |-
17+
- op: replace
18+
path: /spec/hosts
19+
value:
20+
- microbin.svc.dd.soeren.cloud
21+
configMapGenerator:
22+
- name: microbin-config
23+
behavior: merge
24+
literals:
25+
- MICROBIN_PUBLIC_PATH=https://microbin.svc.dd.soeren.cloud

0 commit comments

Comments
 (0)