File tree Expand file tree Collapse file tree 11 files changed +55
-44
lines changed Expand file tree Collapse file tree 11 files changed +55
-44
lines changed Original file line number Diff line number Diff line change @@ -8,7 +8,7 @@ metadata:
8
8
name : wiz-broker
9
9
namespace : " wiz"
10
10
labels :
11
- helm.sh/chart : wiz-broker-2.1.0
11
+ helm.sh/chart : wiz-broker-2.3.8
12
12
application : " wiz"
13
13
component : " connector"
14
14
---
@@ -19,7 +19,7 @@ metadata:
19
19
name : wiz-cluster-reader
20
20
namespace : " wiz"
21
21
labels :
22
- helm.sh/chart : wiz-broker-2.1.0
22
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
23
23
application : " wiz"
24
24
component : " connector"
25
25
{{end}}
Original file line number Diff line number Diff line change @@ -7,7 +7,7 @@ metadata:
7
7
name : wiz-auto-modify-connector
8
8
namespace : " wiz"
9
9
labels :
10
- helm.sh/chart : wiz-broker-2.1.0
10
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
11
11
application : " wiz"
12
12
component : " connector"
13
- {{ end }}
13
+ {{ end }}
Original file line number Diff line number Diff line change @@ -7,7 +7,7 @@ metadata:
7
7
name : wiz-sensor
8
8
namespace : wiz
9
9
labels :
10
- helm.sh/chart : wiz-sensor-1.0.4760
10
+ helm.sh/chart : wiz-sensor-1.0.6440
11
11
application : " wiz"
12
12
component : " connector"
13
13
{{end}}
Original file line number Diff line number Diff line change @@ -8,7 +8,7 @@ kind: ClusterRoleBinding
8
8
metadata :
9
9
name : wiz-cluster-reader
10
10
labels :
11
- helm.sh/chart : wiz-broker-2.1.0
11
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
12
12
application : " wiz"
13
13
component : " connector"
14
14
roleRef :
Original file line number Diff line number Diff line change @@ -7,7 +7,7 @@ metadata:
7
7
name : wiz-auto-modify-connector
8
8
namespace : " wiz"
9
9
labels :
10
- helm.sh/chart : wiz-broker-2.1.0
10
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
11
11
application : " wiz"
12
12
component : " connector"
13
13
rules :
@@ -29,7 +29,7 @@ metadata:
29
29
name : wiz-auto-modify-connector
30
30
namespace : " wiz"
31
31
labels :
32
- helm.sh/chart : wiz-broker-2.1.0
32
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
33
33
application : " wiz"
34
34
component : " connector"
35
35
roleRef :
Original file line number Diff line number Diff line change @@ -6,7 +6,7 @@ kind: ClusterRole
6
6
metadata :
7
7
name : wiz-sensor
8
8
labels :
9
- helm.sh/chart : wiz-sensor-1.0.4760
9
+ helm.sh/chart : wiz-sensor-1.0.6440
10
10
application : " wiz"
11
11
component : " sensor"
12
12
rules :
@@ -28,7 +28,7 @@ kind: ClusterRoleBinding
28
28
metadata :
29
29
name : wiz-sensor
30
30
labels :
31
- helm.sh/chart : wiz-sensor-1.0.4760
31
+ helm.sh/chart : wiz-sensor-1.0.6440
32
32
application : " wiz"
33
33
component : " sensor"
34
34
subjects :
Original file line number Diff line number Diff line change @@ -9,7 +9,7 @@ metadata:
9
9
name : wiz-connector-connector
10
10
namespace : " wiz"
11
11
labels :
12
- helm.sh/chart : wiz-broker-2.1.0
12
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
13
13
application : " wiz"
14
14
component : " connector"
15
15
type : Opaque
@@ -25,21 +25,21 @@ metadata:
25
25
name : wiz-cluster-reader-token
26
26
namespace : " wiz"
27
27
labels :
28
- helm.sh/chart : wiz-broker-2.1.0
28
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
29
29
application : " wiz"
30
30
component : " connector"
31
31
annotations :
32
32
kubernetes.io/service-account.name : wiz-cluster-reader
33
33
type : kubernetes.io/service-account-token
34
34
---
35
- # Source: wiz-sensor/templates/apikeysecret .yaml
35
+ # Source: wiz-sensor/templates/secrets-wiz-api-token .yaml
36
36
apiVersion : v1
37
37
kind : Secret
38
38
metadata :
39
39
name : wiz-api-token
40
40
namespace : wiz
41
41
labels :
42
- helm.sh/chart : wiz-broker-2.1.0
42
+ helm.sh/chart : wiz-kubernetes-integration-0.2.91
43
43
application : " wiz"
44
44
component : " connector"
45
45
type : Opaque
Original file line number Diff line number Diff line change 1
1
{{ if eq .Cluster.ConfigItems.wiz_enable_runtime_sensor "true"}}
2
2
---
3
- # Source: wiz-sensor/templates/apikeysecret .yaml
3
+ # Source: wiz-sensor/templates/secrets-wiz-api-token .yaml
4
4
apiVersion : v1
5
5
kind : Secret
6
6
metadata :
7
7
name : wiz-sensor-apikey
8
8
namespace : wiz
9
9
labels :
10
- helm.sh/chart : wiz-sensor-1.0.4760
10
+ helm.sh/chart : wiz-kubernetes-integration-0.2.91
11
11
application : " wiz"
12
12
component : " sensor"
13
13
type : Opaque
Original file line number Diff line number Diff line change @@ -7,7 +7,7 @@ metadata:
7
7
name : wiz-kubernetes-connector-create-connector
8
8
namespace : " wiz"
9
9
labels :
10
- helm.sh/chart : wiz-broker-2.1.0
10
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
11
11
application : " wiz"
12
12
component : " connector"
13
13
job : " wiz-connector-agent"
21
21
template :
22
22
metadata :
23
23
labels :
24
- helm.sh/chart : wiz-broker-2.1.0
24
+ helm.sh/chart : wiz-kubernetes-connector-3.3.11
25
25
application : " wiz"
26
26
component : " connector"
27
27
job : " wiz-connector-agent"
31
31
securityContext :
32
32
runAsNonRoot : true
33
33
runAsUser : 1000
34
+ volumes :
35
+ - name : api-client
36
+ secret :
37
+ secretName : wiz-api-token
34
38
containers :
35
39
- name : wiz-connector-creator
36
40
securityContext :
@@ -58,20 +62,10 @@ spec:
58
62
- --connector-name
59
63
- {{.Cluster.Alias}}
60
64
env :
65
+ - name : CLI_FILES_AS_ARGS
66
+ value : " /var/api-client/clientToken,/var/api-client/clientId"
61
67
- name : LOG_LEVEL
62
68
value : info
63
- - name : WIZ_CLIENT_ID
64
- valueFrom :
65
- secretKeyRef :
66
- name : wiz-api-token
67
- key : clientId
68
- optional : false
69
- - name : WIZ_CLIENT_TOKEN
70
- valueFrom :
71
- secretKeyRef :
72
- name : wiz-api-token
73
- key : clientToken
74
- optional : false
75
69
- name : WIZ_ENV
76
70
value :
77
71
resources :
81
75
requests :
82
76
cpu : {{ .Cluster.ConfigItems.wiz_connector_cpu }}
83
77
memory : {{ .Cluster.ConfigItems.wiz_connector_memory }}
78
+ volumeMounts :
79
+ - name : api-client
80
+ mountPath : /var/api-client
81
+ readOnly : true
84
82
{{end}}
Original file line number Diff line number Diff line change @@ -7,7 +7,7 @@ metadata:
7
7
name : wiz-connector-agent
8
8
namespace : " wiz"
9
9
labels :
10
- helm.sh/chart : wiz-broker-2.1.0
10
+ helm.sh/chart : wiz-broker-2.3.8
11
11
application : " wiz"
12
12
component : " connector"
13
13
deployment : " wiz-connector-agent"
19
19
template :
20
20
metadata :
21
21
labels :
22
- helm.sh/chart : wiz-broker-2.1.0
22
+ helm.sh/chart : wiz-broker-2.3.8
23
23
application : " wiz"
24
24
component : " connector"
25
25
deployment : " wiz-connector-agent"
29
29
runAsNonRoot : true
30
30
runAsUser : 1000
31
31
volumes :
32
+ - name : api-client
33
+ secret :
34
+ secretName : wiz-api-token
32
35
- name : connector-data
33
36
secret :
34
37
secretName : wiz-connector-connector
44
47
image : " container-registry.zalando.net/secops-systems/wiz-broker:2.7-main-4"
45
48
imagePullPolicy : IfNotPresent
46
49
volumeMounts :
50
+ - name : api-client
51
+ mountPath : /var/api-client
52
+ readOnly : true
47
53
- name : connector-data
48
54
mountPath : /etc/connectorData
49
55
readOnly : true
54
60
value : info
55
61
- name : WIZ_ENV
56
62
value :
57
- - name : WIZ_CLIENT_ID
58
- valueFrom :
59
- secretKeyRef :
60
- name : wiz-api-token
61
- key : clientId
62
- - name : WIZ_CLIENT_TOKEN
63
- valueFrom :
64
- secretKeyRef :
65
- name : wiz-api-token
66
- key : clientToken
63
+ - name : CLI_FILES_AS_ARGS
64
+ value : " /var/api-client/clientToken,/var/api-client/clientId"
67
65
- name : TARGET_IP
68
66
value : kubernetes.default.svc.cluster.local
69
67
- name : TARGET_PORT
You can’t perform that action at this time.
0 commit comments