Skip to content

Commit 8eb9e89

Browse files
author
Your Name
committed
Bump up Version
1 parent d835c9d commit 8eb9e89

File tree

3 files changed

+44
-12
lines changed

3 files changed

+44
-12
lines changed

charts/opencloud-full/Chart.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ maintainers:
99
1010
url: https://opencloud.eu
1111
type: application
12-
version: 3.1.1
12+
version: 3.1.2
1313
# renovate: datasource=docker depName=opencloudeu/opencloud-rolling
1414
appVersion: 3.1.0
1515
kubeVersion: ""

charts/opencloud-full/deployments/timoni/opencloud.cue

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -2,17 +2,17 @@ bundle: {
22
apiVersion: "v1alpha1"
33
name: "opencloud"
44
instances: {
5-
"service-account": {
6-
module: url: "oci://ghcr.io/stefanprodan/modules/flux-tenant"
7-
namespace: "opencloud"
8-
values: {
9-
role: "namespace-admin"
10-
resourceQuota: {
11-
kustomizations: 100
12-
helmreleases: 100
13-
}
14-
}
15-
},
5+
// "service-account": {
6+
// module: url: "oci://ghcr.io/stefanprodan/modules/flux-tenant"
7+
// namespace: "opencloud"
8+
// values: {
9+
// role: "namespace-admin"
10+
// resourceQuota: {
11+
// kustomizations: 100
12+
// helmreleases: 100
13+
// }
14+
// }
15+
// },
1616
"opencloud": {
1717
module: {
1818
url: "oci://ghcr.io/stefanprodan/modules/flux-helm-release"
Lines changed: 32 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,32 @@
1+
# 1) ServiceAccount — Flux will impersonate this
2+
apiVersion: v1
3+
kind: ServiceAccount
4+
metadata:
5+
name: flux
6+
namespace: opencloud # <- target namespace
7+
---
8+
# 2) Role — full power *inside* that namespace
9+
apiVersion: rbac.authorization.k8s.io/v1
10+
kind: Role
11+
metadata:
12+
name: flux-full-access
13+
namespace: opencloud
14+
rules:
15+
- apiGroups: ["*"] # core & all groups
16+
resources: ["*"] # every namespaced resource
17+
verbs: ["*"] # get, list, create, delete, …
18+
---
19+
# 3) RoleBinding — ties the Role to the SA
20+
apiVersion: rbac.authorization.k8s.io/v1
21+
kind: RoleBinding
22+
metadata:
23+
name: flux-full-access-binding
24+
namespace: opencloud
25+
subjects:
26+
- kind: ServiceAccount
27+
name: flux
28+
namespace: opencloud
29+
roleRef:
30+
apiGroup: rbac.authorization.k8s.io
31+
kind: Role
32+
name: flux-full-access

0 commit comments

Comments
 (0)