mirror of
https://github.com/outbackdingo/cozystack.git
synced 2026-02-05 00:15:51 +00:00
Compare commits
22 Commits
flux-clien
...
etcd-opera
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
9efbf5d22e | ||
|
|
662f12e0ce | ||
|
|
3439cf39dd | ||
|
|
965e1be283 | ||
|
|
9145be14c1 | ||
|
|
fca349c641 | ||
|
|
0b38599394 | ||
|
|
0a33950a40 | ||
|
|
e3376a223e | ||
|
|
dee190ad4f | ||
|
|
66f963bfd0 | ||
|
|
7cd7de73ee | ||
|
|
4f2757731a | ||
|
|
372c3cbd17 | ||
|
|
ff9ab5ba85 | ||
|
|
c7568d2312 | ||
|
|
f4778abb3f | ||
|
|
68a7cc52c3 | ||
|
|
be508fd107 | ||
|
|
a6d0f7cfd4 | ||
|
|
a95671391f | ||
|
|
20fcd25d64 |
@@ -20,9 +20,28 @@ miss_map=$(echo "$new_map" | awk 'NR==FNR { new_map[$1 " " $2] = $3; next } { if
|
|||||||
resolved_miss_map=$(
|
resolved_miss_map=$(
|
||||||
echo "$miss_map" | while read chart version commit; do
|
echo "$miss_map" | while read chart version commit; do
|
||||||
if [ "$commit" = HEAD ]; then
|
if [ "$commit" = HEAD ]; then
|
||||||
line=$(git show HEAD:"./$chart/Chart.yaml" | awk '/^version:/ {print NR; exit}')
|
line=$(awk '/^version:/ {print NR; exit}' "./$chart/Chart.yaml")
|
||||||
change_commit=$(git --no-pager blame -L"$line",+1 HEAD -- "$chart/Chart.yaml" | awk '{print $1}')
|
change_commit=$(git --no-pager blame -L"$line",+1 -- "$chart/Chart.yaml" | awk '{print $1}')
|
||||||
commit=$(git describe --always "$change_commit~1")
|
|
||||||
|
if [ "$change_commit" = "00000000" ]; then
|
||||||
|
# Not commited yet, use previus commit
|
||||||
|
line=$(git show HEAD:"./$chart/Chart.yaml" | awk '/^version:/ {print NR; exit}')
|
||||||
|
commit=$(git --no-pager blame -L"$line",+1 HEAD -- "$chart/Chart.yaml" | awk '{print $1}')
|
||||||
|
if [ $(echo $commit | cut -c1) = "^" ]; then
|
||||||
|
# Previus commit not exists
|
||||||
|
commit=$(echo $commit | cut -c2-)
|
||||||
|
fi
|
||||||
|
else
|
||||||
|
# Commited, but version_map wasn't updated
|
||||||
|
line=$(git show HEAD:"./$chart/Chart.yaml" | awk '/^version:/ {print NR; exit}')
|
||||||
|
change_commit=$(git --no-pager blame -L"$line",+1 HEAD -- "$chart/Chart.yaml" | awk '{print $1}')
|
||||||
|
if [ $(echo $change_commit | cut -c1) = "^" ]; then
|
||||||
|
# Previus commit not exists
|
||||||
|
commit=$(echo $change_commit | cut -c2-)
|
||||||
|
else
|
||||||
|
commit=$(git describe --always "$change_commit~1")
|
||||||
|
fi
|
||||||
|
fi
|
||||||
fi
|
fi
|
||||||
echo "$chart $version $commit"
|
echo "$chart $version $commit"
|
||||||
done
|
done
|
||||||
|
|||||||
@@ -1,25 +0,0 @@
|
|||||||
#!/bin/sh
|
|
||||||
set -e
|
|
||||||
|
|
||||||
if [ -e $1 ]; then
|
|
||||||
echo "Please pass version in the first argument"
|
|
||||||
echo "Example: $0 0.2.0"
|
|
||||||
exit 1
|
|
||||||
fi
|
|
||||||
|
|
||||||
version=$1
|
|
||||||
talos_version=$(awk '/^version:/ {print $2}' packages/core/installer/images/talos/profiles/installer.yaml)
|
|
||||||
|
|
||||||
set -x
|
|
||||||
|
|
||||||
sed -i "/^TAG / s|=.*|= v${version}|" \
|
|
||||||
packages/apps/http-cache/Makefile \
|
|
||||||
packages/apps/kubernetes/Makefile \
|
|
||||||
packages/core/installer/Makefile \
|
|
||||||
packages/system/dashboard/Makefile
|
|
||||||
|
|
||||||
sed -i "/^VERSION / s|=.*|= ${version}|" \
|
|
||||||
packages/core/Makefile \
|
|
||||||
packages/system/Makefile
|
|
||||||
make -C packages/core fix-chartnames
|
|
||||||
make -C packages/system fix-chartnames
|
|
||||||
@@ -63,7 +63,7 @@ spec:
|
|||||||
serviceAccountName: cozystack
|
serviceAccountName: cozystack
|
||||||
containers:
|
containers:
|
||||||
- name: cozystack
|
- name: cozystack
|
||||||
image: "ghcr.io/aenix-io/cozystack/cozystack:v0.3.1"
|
image: "ghcr.io/aenix-io/cozystack/cozystack:v0.4.0"
|
||||||
env:
|
env:
|
||||||
- name: KUBERNETES_SERVICE_HOST
|
- name: KUBERNETES_SERVICE_HOST
|
||||||
value: localhost
|
value: localhost
|
||||||
@@ -82,7 +82,7 @@ spec:
|
|||||||
fieldRef:
|
fieldRef:
|
||||||
fieldPath: metadata.name
|
fieldPath: metadata.name
|
||||||
- name: darkhttpd
|
- name: darkhttpd
|
||||||
image: "ghcr.io/aenix-io/cozystack/cozystack:v0.3.1"
|
image: "ghcr.io/aenix-io/cozystack/cozystack:v0.4.0"
|
||||||
command:
|
command:
|
||||||
- /usr/bin/darkhttpd
|
- /usr/bin/darkhttpd
|
||||||
- /cozystack/assets
|
- /cozystack/assets
|
||||||
|
|||||||
@@ -7,7 +7,7 @@ repo:
|
|||||||
awk '$$3 != "HEAD" {print "mkdir -p $(TMP)/" $$1 "-" $$2}' versions_map | sh -ex
|
awk '$$3 != "HEAD" {print "mkdir -p $(TMP)/" $$1 "-" $$2}' versions_map | sh -ex
|
||||||
awk '$$3 != "HEAD" {print "git archive " $$3 " " $$1 " | tar -xf- --strip-components=1 -C $(TMP)/" $$1 "-" $$2 }' versions_map | sh -ex
|
awk '$$3 != "HEAD" {print "git archive " $$3 " " $$1 " | tar -xf- --strip-components=1 -C $(TMP)/" $$1 "-" $$2 }' versions_map | sh -ex
|
||||||
helm package -d "$(OUT)" $$(find . $(TMP) -mindepth 2 -maxdepth 2 -name Chart.yaml | awk 'sub("/Chart.yaml", "")' | sort -V)
|
helm package -d "$(OUT)" $$(find . $(TMP) -mindepth 2 -maxdepth 2 -name Chart.yaml | awk 'sub("/Chart.yaml", "")' | sort -V)
|
||||||
cd "$(OUT)" && helm repo index .
|
cd "$(OUT)" && helm repo index . --url http://cozystack.cozy-system.svc/repos/apps
|
||||||
rm -rf "$(TMP)"
|
rm -rf "$(TMP)"
|
||||||
|
|
||||||
fix-chartnames:
|
fix-chartnames:
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "24.3.0"
|
||||||
|
|||||||
@@ -21,8 +21,8 @@ spec:
|
|||||||
clusters:
|
clusters:
|
||||||
- name: "clickhouse"
|
- name: "clickhouse"
|
||||||
layout:
|
layout:
|
||||||
shardsCount: 1
|
shardsCount: {{ .Values.shards }}
|
||||||
replicasCount: 2
|
replicasCount: {{ .Values.replicas }}
|
||||||
{{- with .Values.size }}
|
{{- with .Values.size }}
|
||||||
templates:
|
templates:
|
||||||
volumeClaimTemplates:
|
volumeClaimTemplates:
|
||||||
|
|||||||
@@ -1,4 +1,6 @@
|
|||||||
size: 10Gi
|
size: 10Gi
|
||||||
|
shards: 1
|
||||||
|
replicas: 2
|
||||||
|
|
||||||
users:
|
users:
|
||||||
user1:
|
user1:
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "1.25.3"
|
||||||
|
|||||||
@@ -1,22 +1,20 @@
|
|||||||
PUSH := 1
|
|
||||||
LOAD := 0
|
|
||||||
REGISTRY := ghcr.io/aenix-io/cozystack
|
|
||||||
NGINX_CACHE_TAG = v0.1.0
|
NGINX_CACHE_TAG = v0.1.0
|
||||||
TAG := v0.3.1
|
|
||||||
|
include ../../../scripts/common-envs.mk
|
||||||
|
|
||||||
image: image-nginx
|
image: image-nginx
|
||||||
|
|
||||||
image-nginx:
|
image-nginx:
|
||||||
docker buildx build --platform linux/amd64 --build-arg ARCH=amd64 images/nginx-cache \
|
docker buildx build --platform linux/amd64 --build-arg ARCH=amd64 images/nginx-cache \
|
||||||
--provenance false \
|
--provenance false \
|
||||||
--tag $(REGISTRY)/nginx-cache:$(NGINX_CACHE_TAG) \
|
--tag $(REGISTRY)/nginx-cache:$(call settag,$(NGINX_CACHE_TAG)) \
|
||||||
--tag $(REGISTRY)/nginx-cache:$(NGINX_CACHE_TAG)-$(TAG) \
|
--tag $(REGISTRY)/nginx-cache:$(call settag,$(NGINX_CACHE_TAG)-$(TAG)) \
|
||||||
--cache-from type=registry,ref=$(REGISTRY)/nginx-cache:$(NGINX_CACHE_TAG) \
|
--cache-from type=registry,ref=$(REGISTRY)/nginx-cache:latest \
|
||||||
--cache-to type=inline \
|
--cache-to type=inline \
|
||||||
--metadata-file images/nginx-cache.json \
|
--metadata-file images/nginx-cache.json \
|
||||||
--push=$(PUSH) \
|
--push=$(PUSH) \
|
||||||
--load=$(LOAD)
|
--load=$(LOAD)
|
||||||
echo "$(REGISTRY)/nginx-cache:$(NGINX_CACHE_TAG)" > images/nginx-cache.tag
|
echo "$(REGISTRY)/nginx-cache:$(call settag,$(NGINX_CACHE_TAG))" > images/nginx-cache.tag
|
||||||
|
|
||||||
update:
|
update:
|
||||||
tag=$$(git ls-remote --tags --sort="v:refname" https://github.com/chrislim2888/IP2Location-C-Library | awk -F'[/^]' 'END{print $$3}') && \
|
tag=$$(git ls-remote --tags --sort="v:refname" https://github.com/chrislim2888/IP2Location-C-Library | awk -F'[/^]' 'END{print $$3}') && \
|
||||||
|
|||||||
@@ -1,4 +1,4 @@
|
|||||||
{
|
{
|
||||||
"containerimage.config.digest": "sha256:e406d5ac59cc06bbab51e16ae9a520143ad4f54952ef8f8cca982dc89454d616",
|
"containerimage.config.digest": "sha256:9eb68d2d503d7e22afc6fde2635f566fd3456bbdb3caad5dc9f887be1dc2b8ab",
|
||||||
"containerimage.digest": "sha256:08e5063e65d2adc17278abee0ab43ce31cf37bc9bc7eb7988ef16f1f1c459862"
|
"containerimage.digest": "sha256:1f44274dbc2c3be2a98e6cef83d68a041ae9ef31abb8ab069a525a2a92702bdd"
|
||||||
}
|
}
|
||||||
@@ -74,7 +74,7 @@ data:
|
|||||||
option redispatch 1
|
option redispatch 1
|
||||||
default-server observe layer7 error-limit 10 on-error mark-down
|
default-server observe layer7 error-limit 10 on-error mark-down
|
||||||
|
|
||||||
{{- range $i, $e := until (int $.Values.replicas) }}
|
{{- range $i, $e := until (int $.Values.nginx.replicas) }}
|
||||||
server cache{{ $i }} {{ $.Release.Name }}-nginx-cache-{{ $i }}:80 check
|
server cache{{ $i }} {{ $.Release.Name }}-nginx-cache-{{ $i }}:80 check
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- range $i, $e := $.Values.endpoints }}
|
{{- range $i, $e := $.Values.endpoints }}
|
||||||
|
|||||||
@@ -7,7 +7,7 @@ metadata:
|
|||||||
app.kubernetes.io/instance: {{ .Release.Name }}
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
||||||
spec:
|
spec:
|
||||||
replicas: 2
|
replicas: {{ .Values.haproxy.replicas }}
|
||||||
selector:
|
selector:
|
||||||
matchLabels:
|
matchLabels:
|
||||||
app: {{ .Release.Name }}-haproxy
|
app: {{ .Release.Name }}-haproxy
|
||||||
|
|||||||
@@ -11,7 +11,7 @@ spec:
|
|||||||
selector:
|
selector:
|
||||||
matchLabels:
|
matchLabels:
|
||||||
app: {{ $.Release.Name }}-nginx-cache
|
app: {{ $.Release.Name }}-nginx-cache
|
||||||
{{- range $i := until 3 }}
|
{{- range $i := until (int $.Values.nginx.replicas) }}
|
||||||
---
|
---
|
||||||
apiVersion: apps/v1
|
apiVersion: apps/v1
|
||||||
kind: Deployment
|
kind: Deployment
|
||||||
|
|||||||
@@ -1,4 +1,10 @@
|
|||||||
external: false
|
external: false
|
||||||
|
|
||||||
|
haproxy:
|
||||||
|
replicas: 2
|
||||||
|
nginx:
|
||||||
|
replicas: 2
|
||||||
|
|
||||||
size: 10Gi
|
size: 10Gi
|
||||||
endpoints:
|
endpoints:
|
||||||
- 10.100.3.1:80
|
- 10.100.3.1:80
|
||||||
|
|||||||
@@ -22,4 +22,4 @@ version: 0.1.0
|
|||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "3.7.0"
|
||||||
|
|||||||
@@ -7,7 +7,7 @@ metadata:
|
|||||||
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
||||||
spec:
|
spec:
|
||||||
kafka:
|
kafka:
|
||||||
replicas: 3
|
replicas: {{ .Values.replicas }}
|
||||||
listeners:
|
listeners:
|
||||||
- name: plain
|
- name: plain
|
||||||
port: 9092
|
port: 9092
|
||||||
@@ -41,7 +41,7 @@ spec:
|
|||||||
{{- end }}
|
{{- end }}
|
||||||
deleteClaim: true
|
deleteClaim: true
|
||||||
zookeeper:
|
zookeeper:
|
||||||
replicas: 3
|
replicas: {{ .Values.replicas }}
|
||||||
storage:
|
storage:
|
||||||
type: persistent-claim
|
type: persistent-claim
|
||||||
{{- with .Values.zookeeper.size }}
|
{{- with .Values.zookeeper.size }}
|
||||||
|
|||||||
@@ -1,8 +1,10 @@
|
|||||||
external: false
|
external: false
|
||||||
kafka:
|
kafka:
|
||||||
size: 10Gi
|
size: 10Gi
|
||||||
|
replicas: 3
|
||||||
zookeeper:
|
zookeeper:
|
||||||
size: 5Gi
|
size: 5Gi
|
||||||
|
replicas: 3
|
||||||
|
|
||||||
topics:
|
topics:
|
||||||
- name: Results
|
- name: Results
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "1.19.0"
|
||||||
|
|||||||
@@ -1,19 +1,17 @@
|
|||||||
PUSH := 1
|
|
||||||
LOAD := 0
|
|
||||||
REGISTRY := ghcr.io/aenix-io/cozystack
|
|
||||||
TAG := v0.3.1
|
|
||||||
UBUNTU_CONTAINER_DISK_TAG = v1.29.1
|
UBUNTU_CONTAINER_DISK_TAG = v1.29.1
|
||||||
|
|
||||||
|
include ../../../scripts/common-envs.mk
|
||||||
|
|
||||||
image: image-ubuntu-container-disk
|
image: image-ubuntu-container-disk
|
||||||
|
|
||||||
image-ubuntu-container-disk:
|
image-ubuntu-container-disk:
|
||||||
docker buildx build --platform linux/amd64 --build-arg ARCH=amd64 images/ubuntu-container-disk \
|
docker buildx build --platform linux/amd64 --build-arg ARCH=amd64 images/ubuntu-container-disk \
|
||||||
--provenance false \
|
--provenance false \
|
||||||
--tag $(REGISTRY)/ubuntu-container-disk:$(UBUNTU_CONTAINER_DISK_TAG) \
|
--tag $(REGISTRY)/ubuntu-container-disk:$(call settag,$(UBUNTU_CONTAINER_DISK_TAG)) \
|
||||||
--tag $(REGISTRY)/ubuntu-container-disk:$(UBUNTU_CONTAINER_DISK_TAG)-$(TAG) \
|
--tag $(REGISTRY)/ubuntu-container-disk:$(call settag,$(UBUNTU_CONTAINER_DISK_TAG)-$(TAG)) \
|
||||||
--cache-from type=registry,ref=$(REGISTRY)/ubuntu-container-disk:$(UBUNTU_CONTAINER_DISK_TAG) \
|
--cache-from type=registry,ref=$(REGISTRY)/ubuntu-container-disk:latest \
|
||||||
--cache-to type=inline \
|
--cache-to type=inline \
|
||||||
--metadata-file images/ubuntu-container-disk.json \
|
--metadata-file images/ubuntu-container-disk.json \
|
||||||
--push=$(PUSH) \
|
--push=$(PUSH) \
|
||||||
--load=$(LOAD)
|
--load=$(LOAD)
|
||||||
echo "$(REGISTRY)/ubuntu-container-disk:$(UBUNTU_CONTAINER_DISK_TAG)" > images/ubuntu-container-disk.tag
|
echo "$(REGISTRY)/ubuntu-container-disk:$(call settag,$(UBUNTU_CONTAINER_DISK_TAG))" > images/ubuntu-container-disk.tag
|
||||||
|
|||||||
@@ -1,4 +1,4 @@
|
|||||||
{
|
{
|
||||||
"containerimage.config.digest": "sha256:62baab666445d76498fb14cc1d0865fc82e4bdd5cb1d7ba80475dc5024184622",
|
"containerimage.config.digest": "sha256:a7e8e6e35ac07bcf6253c9cfcf21fd3c315bd0653ad0427dd5f0cae95ffd3722",
|
||||||
"containerimage.digest": "sha256:9363d717f966f4e7927da332eaaf17401b42203a2fcb493b428f94d096dae3a5"
|
"containerimage.digest": "sha256:c03bffeeb70fe7dd680d2eca3021d2405fbcd9961dd38437f5673560c31c72cc"
|
||||||
}
|
}
|
||||||
@@ -15,6 +15,12 @@ spec:
|
|||||||
labels:
|
labels:
|
||||||
app: {{ .Release.Name }}-cluster-autoscaler
|
app: {{ .Release.Name }}-cluster-autoscaler
|
||||||
spec:
|
spec:
|
||||||
|
tolerations:
|
||||||
|
- key: CriticalAddonsOnly
|
||||||
|
operator: Exists
|
||||||
|
- key: node-role.kubernetes.io/control-plane
|
||||||
|
operator: Exists
|
||||||
|
effect: "NoSchedule"
|
||||||
containers:
|
containers:
|
||||||
- image: ghcr.io/kvaps/test:cluster-autoscaller
|
- image: ghcr.io/kvaps/test:cluster-autoscaller
|
||||||
name: cluster-autoscaler
|
name: cluster-autoscaler
|
||||||
|
|||||||
@@ -64,12 +64,13 @@ metadata:
|
|||||||
cluster.x-k8s.io/managed-by: kamaji
|
cluster.x-k8s.io/managed-by: kamaji
|
||||||
name: {{ .Release.Name }}
|
name: {{ .Release.Name }}
|
||||||
namespace: {{ .Release.Namespace }}
|
namespace: {{ .Release.Namespace }}
|
||||||
|
{{- range $groupName, $group := .Values.nodeGroups }}
|
||||||
---
|
---
|
||||||
apiVersion: bootstrap.cluster.x-k8s.io/v1beta1
|
apiVersion: bootstrap.cluster.x-k8s.io/v1beta1
|
||||||
kind: KubeadmConfigTemplate
|
kind: KubeadmConfigTemplate
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ .Release.Name }}-md-0
|
name: {{ $.Release.Name }}-{{ $groupName }}
|
||||||
namespace: {{ .Release.Namespace }}
|
namespace: {{ $.Release.Namespace }}
|
||||||
spec:
|
spec:
|
||||||
template:
|
template:
|
||||||
spec:
|
spec:
|
||||||
@@ -78,7 +79,7 @@ spec:
|
|||||||
kubeletExtraArgs: {}
|
kubeletExtraArgs: {}
|
||||||
discovery:
|
discovery:
|
||||||
bootstrapToken:
|
bootstrapToken:
|
||||||
apiServerEndpoint: {{ .Release.Name }}.{{ .Release.Namespace }}.svc:6443
|
apiServerEndpoint: {{ $.Release.Name }}.{{ $.Release.Namespace }}.svc:6443
|
||||||
initConfiguration:
|
initConfiguration:
|
||||||
skipPhases:
|
skipPhases:
|
||||||
- addon/kube-proxy
|
- addon/kube-proxy
|
||||||
@@ -86,8 +87,8 @@ spec:
|
|||||||
apiVersion: infrastructure.cluster.x-k8s.io/v1alpha1
|
apiVersion: infrastructure.cluster.x-k8s.io/v1alpha1
|
||||||
kind: KubevirtMachineTemplate
|
kind: KubevirtMachineTemplate
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ .Release.Name }}-md-0
|
name: {{ $.Release.Name }}-{{ $groupName }}
|
||||||
namespace: {{ .Release.Namespace }}
|
namespace: {{ $.Release.Namespace }}
|
||||||
spec:
|
spec:
|
||||||
template:
|
template:
|
||||||
spec:
|
spec:
|
||||||
@@ -95,7 +96,7 @@ spec:
|
|||||||
checkStrategy: ssh
|
checkStrategy: ssh
|
||||||
virtualMachineTemplate:
|
virtualMachineTemplate:
|
||||||
metadata:
|
metadata:
|
||||||
namespace: {{ .Release.Namespace }}
|
namespace: {{ $.Release.Namespace }}
|
||||||
spec:
|
spec:
|
||||||
runStrategy: Always
|
runStrategy: Always
|
||||||
template:
|
template:
|
||||||
@@ -103,7 +104,7 @@ spec:
|
|||||||
domain:
|
domain:
|
||||||
cpu:
|
cpu:
|
||||||
threads: 1
|
threads: 1
|
||||||
cores: 2
|
cores: {{ $group.resources.cpu }}
|
||||||
sockets: 1
|
sockets: 1
|
||||||
devices:
|
devices:
|
||||||
disks:
|
disks:
|
||||||
@@ -112,7 +113,7 @@ spec:
|
|||||||
name: containervolume
|
name: containervolume
|
||||||
networkInterfaceMultiqueue: true
|
networkInterfaceMultiqueue: true
|
||||||
memory:
|
memory:
|
||||||
guest: 1024Mi
|
guest: {{ $group.resources.memory }}
|
||||||
evictionStrategy: External
|
evictionStrategy: External
|
||||||
volumes:
|
volumes:
|
||||||
- containerDisk:
|
- containerDisk:
|
||||||
@@ -122,29 +123,28 @@ spec:
|
|||||||
apiVersion: cluster.x-k8s.io/v1beta1
|
apiVersion: cluster.x-k8s.io/v1beta1
|
||||||
kind: MachineDeployment
|
kind: MachineDeployment
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ .Release.Name }}-md-0
|
name: {{ $.Release.Name }}-{{ $groupName }}
|
||||||
namespace: {{ .Release.Namespace }}
|
namespace: {{ $.Release.Namespace }}
|
||||||
annotations:
|
annotations:
|
||||||
cluster.x-k8s.io/cluster-api-autoscaler-node-group-max-size: "2"
|
cluster.x-k8s.io/cluster-api-autoscaler-node-group-min-size: "{{ $group.minReplicas }}"
|
||||||
cluster.x-k8s.io/cluster-api-autoscaler-node-group-min-size: "0"
|
cluster.x-k8s.io/cluster-api-autoscaler-node-group-max-size: "{{ $group.maxReplicas }}"
|
||||||
capacity.cluster-autoscaler.kubernetes.io/memory: "1024Mi"
|
capacity.cluster-autoscaler.kubernetes.io/memory: "{{ $group.resources.memory }}"
|
||||||
capacity.cluster-autoscaler.kubernetes.io/cpu: "2"
|
capacity.cluster-autoscaler.kubernetes.io/cpu: "{{ $group.resources.cpu }}"
|
||||||
spec:
|
spec:
|
||||||
clusterName: {{ .Release.Name }}
|
clusterName: {{ $.Release.Name }}
|
||||||
selector:
|
|
||||||
matchLabels: null
|
|
||||||
template:
|
template:
|
||||||
spec:
|
spec:
|
||||||
bootstrap:
|
bootstrap:
|
||||||
configRef:
|
configRef:
|
||||||
apiVersion: bootstrap.cluster.x-k8s.io/v1beta1
|
apiVersion: bootstrap.cluster.x-k8s.io/v1beta1
|
||||||
kind: KubeadmConfigTemplate
|
kind: KubeadmConfigTemplate
|
||||||
name: {{ .Release.Name }}-md-0
|
name: {{ $.Release.Name }}-{{ $groupName }}
|
||||||
namespace: default
|
namespace: default
|
||||||
clusterName: {{ .Release.Name }}
|
clusterName: {{ $.Release.Name }}
|
||||||
infrastructureRef:
|
infrastructureRef:
|
||||||
apiVersion: infrastructure.cluster.x-k8s.io/v1alpha1
|
apiVersion: infrastructure.cluster.x-k8s.io/v1alpha1
|
||||||
kind: KubevirtMachineTemplate
|
kind: KubevirtMachineTemplate
|
||||||
name: {{ .Release.Name }}-md-0
|
name: {{ $.Release.Name }}-{{ $groupName }}
|
||||||
namespace: default
|
namespace: default
|
||||||
version: v1.23.10
|
version: v1.29.0
|
||||||
|
{{- end }}
|
||||||
|
|||||||
@@ -16,12 +16,10 @@ spec:
|
|||||||
spec:
|
spec:
|
||||||
serviceAccountName: {{ .Release.Name }}-kcsi
|
serviceAccountName: {{ .Release.Name }}-kcsi
|
||||||
priorityClassName: system-cluster-critical
|
priorityClassName: system-cluster-critical
|
||||||
nodeSelector:
|
|
||||||
node-role.kubernetes.io/control-plane: ""
|
|
||||||
tolerations:
|
tolerations:
|
||||||
- key: CriticalAddonsOnly
|
- key: CriticalAddonsOnly
|
||||||
operator: Exists
|
operator: Exists
|
||||||
- key: node-role.kubernetes.io/master
|
- key: node-role.kubernetes.io/control-plane
|
||||||
operator: Exists
|
operator: Exists
|
||||||
effect: "NoSchedule"
|
effect: "NoSchedule"
|
||||||
containers:
|
containers:
|
||||||
|
|||||||
@@ -12,6 +12,12 @@ spec:
|
|||||||
spec:
|
spec:
|
||||||
serviceAccountName: {{ .Release.Name }}-flux-teardown
|
serviceAccountName: {{ .Release.Name }}-flux-teardown
|
||||||
restartPolicy: Never
|
restartPolicy: Never
|
||||||
|
tolerations:
|
||||||
|
- key: CriticalAddonsOnly
|
||||||
|
operator: Exists
|
||||||
|
- key: node-role.kubernetes.io/control-plane
|
||||||
|
operator: Exists
|
||||||
|
effect: "NoSchedule"
|
||||||
containers:
|
containers:
|
||||||
- name: kubectl
|
- name: kubectl
|
||||||
image: docker.io/clastix/kubectl:v1.29.1
|
image: docker.io/clastix/kubectl:v1.29.1
|
||||||
|
|||||||
@@ -14,6 +14,12 @@ spec:
|
|||||||
labels:
|
labels:
|
||||||
k8s-app: {{ .Release.Name }}-kccm
|
k8s-app: {{ .Release.Name }}-kccm
|
||||||
spec:
|
spec:
|
||||||
|
tolerations:
|
||||||
|
- key: CriticalAddonsOnly
|
||||||
|
operator: Exists
|
||||||
|
- key: node-role.kubernetes.io/control-plane
|
||||||
|
operator: Exists
|
||||||
|
effect: "NoSchedule"
|
||||||
containers:
|
containers:
|
||||||
- name: kubevirt-cloud-controller-manager
|
- name: kubevirt-cloud-controller-manager
|
||||||
args:
|
args:
|
||||||
@@ -44,6 +50,4 @@ spec:
|
|||||||
- secret:
|
- secret:
|
||||||
secretName: {{ .Release.Name }}-admin-kubeconfig
|
secretName: {{ .Release.Name }}-admin-kubeconfig
|
||||||
name: kubeconfig
|
name: kubeconfig
|
||||||
tolerations:
|
|
||||||
- operator: Exists
|
|
||||||
serviceAccountName: {{ .Release.Name }}-kccm
|
serviceAccountName: {{ .Release.Name }}-kccm
|
||||||
|
|||||||
@@ -1,11 +0,0 @@
|
|||||||
{
|
|
||||||
"$schema": "http://json-schema.org/schema#",
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"host": {
|
|
||||||
"type": "string",
|
|
||||||
"title": "Domain name for this kubernetes cluster",
|
|
||||||
"description": "This host will be used for all apps deployed in this tenant"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1 +1,10 @@
|
|||||||
host: ""
|
host: ""
|
||||||
|
controlPlane:
|
||||||
|
replicas: 2
|
||||||
|
nodeGroups:
|
||||||
|
md0:
|
||||||
|
minReplicas: 0
|
||||||
|
maxReplicas: 10
|
||||||
|
resources:
|
||||||
|
cpu: 2
|
||||||
|
memory: 1024Mi
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.2.0
|
version: 0.3.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "11.0.2"
|
||||||
|
|||||||
@@ -12,7 +12,7 @@ spec:
|
|||||||
|
|
||||||
port: 3306
|
port: 3306
|
||||||
|
|
||||||
replicas: 2
|
replicas: {{ .Values.replicas }}
|
||||||
affinity:
|
affinity:
|
||||||
podAntiAffinity:
|
podAntiAffinity:
|
||||||
requiredDuringSchedulingIgnoredDuringExecution:
|
requiredDuringSchedulingIgnoredDuringExecution:
|
||||||
@@ -28,11 +28,13 @@ spec:
|
|||||||
- {{ .Release.Name }}
|
- {{ .Release.Name }}
|
||||||
topologyKey: "kubernetes.io/hostname"
|
topologyKey: "kubernetes.io/hostname"
|
||||||
|
|
||||||
|
{{- if gt (int .Values.replicas) 1 }}
|
||||||
replication:
|
replication:
|
||||||
enabled: true
|
enabled: true
|
||||||
#primary:
|
#primary:
|
||||||
# podIndex: 0
|
# podIndex: 0
|
||||||
# automaticFailover: true
|
# automaticFailover: true
|
||||||
|
{{- end }}
|
||||||
|
|
||||||
metrics:
|
metrics:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
|||||||
@@ -1,6 +1,8 @@
|
|||||||
external: false
|
external: false
|
||||||
size: 10Gi
|
size: 10Gi
|
||||||
|
|
||||||
|
replicas: 2
|
||||||
|
|
||||||
users:
|
users:
|
||||||
root:
|
root:
|
||||||
password: strongpassword
|
password: strongpassword
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "16.2"
|
||||||
|
|||||||
@@ -4,7 +4,7 @@ kind: Cluster
|
|||||||
metadata:
|
metadata:
|
||||||
name: {{ .Release.Name }}
|
name: {{ .Release.Name }}
|
||||||
spec:
|
spec:
|
||||||
instances: 2
|
instances: {{ .Values.replicas }}
|
||||||
enableSuperuserAccess: true
|
enableSuperuserAccess: true
|
||||||
|
|
||||||
postgresql:
|
postgresql:
|
||||||
|
|||||||
@@ -1,5 +1,6 @@
|
|||||||
external: false
|
external: false
|
||||||
size: 10Gi
|
size: 10Gi
|
||||||
|
replicas: 2
|
||||||
|
|
||||||
users:
|
users:
|
||||||
user1:
|
user1:
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "3.12.2"
|
||||||
|
|||||||
@@ -6,7 +6,7 @@ metadata:
|
|||||||
app.kubernetes.io/instance: {{ .Release.Name }}
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
||||||
spec:
|
spec:
|
||||||
replicas: 3
|
replicas: {{ .Values.replicas }}
|
||||||
{{- if .Values.external }}
|
{{- if .Values.external }}
|
||||||
service:
|
service:
|
||||||
type: LoadBalancer
|
type: LoadBalancer
|
||||||
|
|||||||
@@ -5,6 +5,10 @@
|
|||||||
"external": {
|
"external": {
|
||||||
"type": "boolean",
|
"type": "boolean",
|
||||||
"title": "Enable external Access"
|
"title": "Enable external Access"
|
||||||
|
},
|
||||||
|
"replicas": {
|
||||||
|
"type": "integer",
|
||||||
|
"title": "Replicas"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -1 +1,2 @@
|
|||||||
|
replicas: 3
|
||||||
external: false
|
external: false
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.1
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "6.2.6"
|
||||||
|
|||||||
@@ -14,7 +14,7 @@ spec:
|
|||||||
limits:
|
limits:
|
||||||
memory: 100Mi
|
memory: 100Mi
|
||||||
redis:
|
redis:
|
||||||
replicas: 3
|
replicas: {{ .Values.replicas }}
|
||||||
resources:
|
resources:
|
||||||
requests:
|
requests:
|
||||||
cpu: 150m
|
cpu: 150m
|
||||||
|
|||||||
@@ -9,6 +9,10 @@
|
|||||||
"size": {
|
"size": {
|
||||||
"type": "string",
|
"type": "string",
|
||||||
"title": "Disk Size"
|
"title": "Disk Size"
|
||||||
|
},
|
||||||
|
"replicas": {
|
||||||
|
"type": "integer",
|
||||||
|
"title": "Replicas"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
replicas: 2
|
||||||
external: false
|
external: false
|
||||||
size: 5Gi
|
size: 5Gi
|
||||||
|
|||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "2.9.7"
|
||||||
|
|||||||
@@ -7,7 +7,7 @@ metadata:
|
|||||||
app.kubernetes.io/instance: {{ .Release.Name }}
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
||||||
spec:
|
spec:
|
||||||
replicas: 2
|
replicas: {{ .Values.replicas }}
|
||||||
selector:
|
selector:
|
||||||
matchLabels:
|
matchLabels:
|
||||||
app: {{ .Release.Name }}-haproxy
|
app: {{ .Release.Name }}-haproxy
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
external: false
|
external: false
|
||||||
|
replicas: 2
|
||||||
httpAndHttps:
|
httpAndHttps:
|
||||||
mode: tcp
|
mode: tcp
|
||||||
targetPorts:
|
targetPorts:
|
||||||
|
|||||||
@@ -1,17 +1,26 @@
|
|||||||
clickhouse 0.1.0 HEAD
|
clickhouse 0.1.0 ca79f72
|
||||||
http-cache 0.1.0 HEAD
|
clickhouse 0.2.0 HEAD
|
||||||
|
http-cache 0.1.0 a956713
|
||||||
|
http-cache 0.2.0 HEAD
|
||||||
kafka 0.1.0 HEAD
|
kafka 0.1.0 HEAD
|
||||||
kubernetes 0.1.0 HEAD
|
kubernetes 0.1.0 f642698
|
||||||
|
kubernetes 0.2.0 HEAD
|
||||||
mysql 0.1.0 f642698
|
mysql 0.1.0 f642698
|
||||||
mysql 0.2.0 HEAD
|
mysql 0.2.0 8b975ff0
|
||||||
postgres 0.1.0 HEAD
|
mysql 0.3.0 HEAD
|
||||||
rabbitmq 0.1.0 HEAD
|
postgres 0.1.0 f642698
|
||||||
redis 0.1.1 HEAD
|
postgres 0.2.0 HEAD
|
||||||
tcp-balancer 0.1.0 HEAD
|
rabbitmq 0.1.0 f642698
|
||||||
|
rabbitmq 0.2.0 HEAD
|
||||||
|
redis 0.1.1 f642698
|
||||||
|
redis 0.2.0 HEAD
|
||||||
|
tcp-balancer 0.1.0 f642698
|
||||||
|
tcp-balancer 0.2.0 HEAD
|
||||||
tenant 0.1.3 3d1b86c
|
tenant 0.1.3 3d1b86c
|
||||||
tenant 0.1.4 d200480
|
tenant 0.1.4 d200480
|
||||||
tenant 0.1.5 e3ab858
|
tenant 0.1.5 e3ab858
|
||||||
tenant 1.0.0 HEAD
|
tenant 1.0.0 HEAD
|
||||||
virtual-machine 0.1.4 f2015d6
|
virtual-machine 0.1.4 f2015d6
|
||||||
virtual-machine 0.1.5 HEAD
|
virtual-machine 0.1.5 HEAD
|
||||||
vpn 0.1.0 HEAD
|
vpn 0.1.0 f642698
|
||||||
|
vpn 0.2.0 HEAD
|
||||||
|
|||||||
@@ -1,6 +1,6 @@
|
|||||||
apiVersion: v2
|
apiVersion: v2
|
||||||
name: vpn
|
name: vpn
|
||||||
description: Establish a connection from your computer
|
description: Managed VPN service
|
||||||
icon: https://upload.wikimedia.org/wikipedia/commons/thumb/6/60/Outline_VPN_icon.png/600px-Outline_VPN_icon.png
|
icon: https://upload.wikimedia.org/wikipedia/commons/thumb/6/60/Outline_VPN_icon.png/600px-Outline_VPN_icon.png
|
||||||
|
|
||||||
# A chart can be either an 'application' or a 'library' chart.
|
# A chart can be either an 'application' or a 'library' chart.
|
||||||
@@ -16,10 +16,10 @@ type: application
|
|||||||
# This is the chart version. This version number should be incremented each time you make changes
|
# This is the chart version. This version number should be incremented each time you make changes
|
||||||
# to the chart and its templates, including the app version.
|
# to the chart and its templates, including the app version.
|
||||||
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
# Versions are expected to follow Semantic Versioning (https://semver.org/)
|
||||||
version: 0.1.0
|
version: 0.2.0
|
||||||
|
|
||||||
# This is the version number of the application being deployed. This version number should be
|
# This is the version number of the application being deployed. This version number should be
|
||||||
# incremented each time you make changes to the application. Versions are not expected to
|
# incremented each time you make changes to the application. Versions are not expected to
|
||||||
# follow Semantic Versioning. They should reflect the version the application is using.
|
# follow Semantic Versioning. They should reflect the version the application is using.
|
||||||
# It is recommended to use it with quotes.
|
# It is recommended to use it with quotes.
|
||||||
appVersion: "1.16.0"
|
appVersion: "1.8.1"
|
||||||
|
|||||||
@@ -4,7 +4,7 @@ kind: Deployment
|
|||||||
metadata:
|
metadata:
|
||||||
name: {{ .Release.Name }}-vpn
|
name: {{ .Release.Name }}-vpn
|
||||||
spec:
|
spec:
|
||||||
replicas: 2
|
replicas: {{ .Values.replicas }}
|
||||||
selector:
|
selector:
|
||||||
matchLabels:
|
matchLabels:
|
||||||
app: {{ .Release.Name }}-vpn
|
app: {{ .Release.Name }}-vpn
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
external: false
|
external: false
|
||||||
|
replicas: 2
|
||||||
|
|
||||||
users:
|
users:
|
||||||
user1:
|
user1:
|
||||||
|
|||||||
@@ -1,6 +0,0 @@
|
|||||||
VERSION := 0.3.1
|
|
||||||
|
|
||||||
gen: fix-chartnames
|
|
||||||
|
|
||||||
fix-chartnames:
|
|
||||||
find . -name Chart.yaml -maxdepth 2 | awk -F/ '{print $$2}' | while read i; do printf "name: cozy-%s\nversion: $(VERSION)\n" "$$i" > "$$i/Chart.yaml"; done
|
|
||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-fluxcd
|
name: cozy-fluxcd
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-installer
|
name: cozy-installer
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,11 +1,10 @@
|
|||||||
NAME=installer
|
NAME=installer
|
||||||
NAMESPACE=cozy-system
|
NAMESPACE=cozy-system
|
||||||
PUSH := 1
|
|
||||||
LOAD := 0
|
|
||||||
REGISTRY := ghcr.io/aenix-io/cozystack
|
|
||||||
TAG := v0.3.1
|
|
||||||
TALOS_VERSION=$(shell awk '/^version:/ {print $$2}' images/talos/profiles/installer.yaml)
|
TALOS_VERSION=$(shell awk '/^version:/ {print $$2}' images/talos/profiles/installer.yaml)
|
||||||
|
|
||||||
|
include ../../../scripts/common-envs.mk
|
||||||
|
|
||||||
show:
|
show:
|
||||||
helm template -n $(NAMESPACE) $(NAME) .
|
helm template -n $(NAMESPACE) $(NAME) .
|
||||||
|
|
||||||
@@ -24,33 +23,33 @@ image-cozystack:
|
|||||||
make -C ../../.. repos
|
make -C ../../.. repos
|
||||||
docker buildx build -f images/cozystack/Dockerfile ../../.. \
|
docker buildx build -f images/cozystack/Dockerfile ../../.. \
|
||||||
--provenance false \
|
--provenance false \
|
||||||
--tag $(REGISTRY)/cozystack:$(TAG) \
|
--tag $(REGISTRY)/cozystack:$(call settag,$(TAG)) \
|
||||||
--cache-from type=registry,ref=$(REGISTRY)/cozystack:$(TAG) \
|
--cache-from type=registry,ref=$(REGISTRY)/cozystack:latest \
|
||||||
--cache-to type=inline \
|
--cache-to type=inline \
|
||||||
--metadata-file images/cozystack.json \
|
--metadata-file images/cozystack.json \
|
||||||
--push=$(PUSH) \
|
--push=$(PUSH) \
|
||||||
--load=$(LOAD)
|
--load=$(LOAD)
|
||||||
echo "$(REGISTRY)/cozystack:$(TAG)" > images/cozystack.tag
|
echo "$(REGISTRY)/cozystack:$(call settag,$(TAG))" > images/cozystack.tag
|
||||||
|
|
||||||
image-talos:
|
image-talos:
|
||||||
test -f ../../../_out/assets/installer-amd64.tar || make talos-installer
|
test -f ../../../_out/assets/installer-amd64.tar || make talos-installer
|
||||||
docker load -i ../../../_out/assets/installer-amd64.tar
|
docker load -i ../../../_out/assets/installer-amd64.tar
|
||||||
docker tag ghcr.io/siderolabs/installer:$(TALOS_VERSION) ghcr.io/aenix-io/cozystack/talos:$(TALOS_VERSION)
|
docker tag ghcr.io/siderolabs/installer:$(TALOS_VERSION) ghcr.io/aenix-io/cozystack/talos:$(call settag,$(TALOS_VERSION))
|
||||||
docker push ghcr.io/aenix-io/cozystack/talos:$(TALOS_VERSION)
|
docker push ghcr.io/aenix-io/cozystack/talos:$(call settag,$(TALOS_VERSION))
|
||||||
|
|
||||||
image-matchbox:
|
image-matchbox:
|
||||||
test -f ../../../_out/assets/kernel-amd64 || make talos-kernel
|
test -f ../../../_out/assets/kernel-amd64 || make talos-kernel
|
||||||
test -f ../../../_out/assets/initramfs-metal-amd64.xz || make talos-initramfs
|
test -f ../../../_out/assets/initramfs-metal-amd64.xz || make talos-initramfs
|
||||||
docker buildx build -f images/matchbox/Dockerfile ../../.. \
|
docker buildx build -f images/matchbox/Dockerfile ../../.. \
|
||||||
--provenance false \
|
--provenance false \
|
||||||
--tag $(REGISTRY)/matchbox:$(TAG) \
|
--tag $(REGISTRY)/matchbox:$(call settag,$(TAG)) \
|
||||||
--tag $(REGISTRY)/matchbox:$(TALOS_VERSION)-$(TAG) \
|
--tag $(REGISTRY)/matchbox:$(call settag,$(TALOS_VERSION)-$(TAG)) \
|
||||||
--cache-from type=registry,ref=$(REGISTRY)/matchbox:$(TALOS_VERSION) \
|
--cache-from type=registry,ref=$(REGISTRY)/matchbox:latest \
|
||||||
--cache-to type=inline \
|
--cache-to type=inline \
|
||||||
--metadata-file images/matchbox.json \
|
--metadata-file images/matchbox.json \
|
||||||
--push=$(PUSH) \
|
--push=$(PUSH) \
|
||||||
--load=$(LOAD)
|
--load=$(LOAD)
|
||||||
echo "$(REGISTRY)/matchbox:$(TALOS_VERSION)" > images/matchbox.tag
|
echo "$(REGISTRY)/matchbox:$(call settag,$(TALOS_VERSION))" > images/matchbox.tag
|
||||||
|
|
||||||
assets: talos-iso talos-nocloud
|
assets: talos-iso talos-nocloud
|
||||||
|
|
||||||
|
|||||||
@@ -1,4 +1,4 @@
|
|||||||
{
|
{
|
||||||
"containerimage.config.digest": "sha256:29b11ecbb92bae830f2e55cd4b6f7f3ada09b2f5514c0eeee395bd2dbd12fb81",
|
"containerimage.config.digest": "sha256:aefc3ca9f56f69270d7ce6f56a1ce5b531332d5641481eb54c8e74b66b0f3341",
|
||||||
"containerimage.digest": "sha256:791df989ff37a76062c7c638dbfc93435df9ee0db48797f2045c80b6d6b937c0"
|
"containerimage.digest": "sha256:a2bf43cb7eb812166edfeb1a4fae6a76a4ddba93be2c0ba9040a804ccb53c261"
|
||||||
}
|
}
|
||||||
@@ -1 +1 @@
|
|||||||
ghcr.io/aenix-io/cozystack/cozystack:v0.3.1
|
ghcr.io/aenix-io/cozystack/cozystack:v0.4.0
|
||||||
|
|||||||
@@ -1,4 +1,4 @@
|
|||||||
{
|
{
|
||||||
"containerimage.config.digest": "sha256:d63ac434876b4e47c130e6b99f0c9657e718f9d97f522f5ccd878eab75844122",
|
"containerimage.config.digest": "sha256:68ea72fcc581352fabfd87fa6fd482968cc85ee520cab7a614f1244d7ae36eb0",
|
||||||
"containerimage.digest": "sha256:9963580a02ac4ddccafb60f2411365910bcadd73f92d1c9187a278221306a4ed"
|
"containerimage.digest": "sha256:cea915e08a19eb6892f3facf3b3648368cd4a05abefc49bc2616ba3340c27e82"
|
||||||
}
|
}
|
||||||
@@ -1 +1 @@
|
|||||||
ghcr.io/aenix-io/cozystack/matchbox:v1.6.4
|
ghcr.io/aenix-io/cozystack/matchbox:v1.7.1
|
||||||
|
|||||||
@@ -3,24 +3,25 @@
|
|||||||
arch: amd64
|
arch: amd64
|
||||||
platform: metal
|
platform: metal
|
||||||
secureboot: false
|
secureboot: false
|
||||||
version: v1.6.4
|
version: v1.7.1
|
||||||
input:
|
input:
|
||||||
kernel:
|
kernel:
|
||||||
path: /usr/install/amd64/vmlinuz
|
path: /usr/install/amd64/vmlinuz
|
||||||
initramfs:
|
initramfs:
|
||||||
path: /usr/install/amd64/initramfs.xz
|
path: /usr/install/amd64/initramfs.xz
|
||||||
baseInstaller:
|
baseInstaller:
|
||||||
imageRef: ghcr.io/siderolabs/installer:v1.6.4
|
imageRef: ghcr.io/siderolabs/installer:v1.7.1
|
||||||
systemExtensions:
|
systemExtensions:
|
||||||
- imageRef: ghcr.io/siderolabs/amd-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/amd-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240115
|
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/i915-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/i915-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ucode:20231114
|
- imageRef: ghcr.io/siderolabs/intel-ucode:20240312
|
||||||
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/drbd:9.2.6-v1.6.4
|
- imageRef: ghcr.io/siderolabs/drbd:9.2.8-v1.7.1
|
||||||
- imageRef: ghcr.io/siderolabs/zfs:2.1.14-v1.6.4
|
- imageRef: ghcr.io/siderolabs/zfs:2.2.3-v1.7.1
|
||||||
output:
|
output:
|
||||||
kind: initramfs
|
kind: initramfs
|
||||||
|
imageOptions: {}
|
||||||
outFormat: raw
|
outFormat: raw
|
||||||
|
|||||||
@@ -3,24 +3,25 @@
|
|||||||
arch: amd64
|
arch: amd64
|
||||||
platform: metal
|
platform: metal
|
||||||
secureboot: false
|
secureboot: false
|
||||||
version: v1.6.4
|
version: v1.7.1
|
||||||
input:
|
input:
|
||||||
kernel:
|
kernel:
|
||||||
path: /usr/install/amd64/vmlinuz
|
path: /usr/install/amd64/vmlinuz
|
||||||
initramfs:
|
initramfs:
|
||||||
path: /usr/install/amd64/initramfs.xz
|
path: /usr/install/amd64/initramfs.xz
|
||||||
baseInstaller:
|
baseInstaller:
|
||||||
imageRef: ghcr.io/siderolabs/installer:v1.6.4
|
imageRef: ghcr.io/siderolabs/installer:v1.7.1
|
||||||
systemExtensions:
|
systemExtensions:
|
||||||
- imageRef: ghcr.io/siderolabs/amd-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/amd-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240115
|
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/i915-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/i915-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ucode:20231114
|
- imageRef: ghcr.io/siderolabs/intel-ucode:20240312
|
||||||
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/drbd:9.2.6-v1.6.4
|
- imageRef: ghcr.io/siderolabs/drbd:9.2.8-v1.7.1
|
||||||
- imageRef: ghcr.io/siderolabs/zfs:2.1.14-v1.6.4
|
- imageRef: ghcr.io/siderolabs/zfs:2.2.3-v1.7.1
|
||||||
output:
|
output:
|
||||||
kind: installer
|
kind: installer
|
||||||
|
imageOptions: {}
|
||||||
outFormat: raw
|
outFormat: raw
|
||||||
|
|||||||
@@ -3,24 +3,25 @@
|
|||||||
arch: amd64
|
arch: amd64
|
||||||
platform: metal
|
platform: metal
|
||||||
secureboot: false
|
secureboot: false
|
||||||
version: v1.6.4
|
version: v1.7.1
|
||||||
input:
|
input:
|
||||||
kernel:
|
kernel:
|
||||||
path: /usr/install/amd64/vmlinuz
|
path: /usr/install/amd64/vmlinuz
|
||||||
initramfs:
|
initramfs:
|
||||||
path: /usr/install/amd64/initramfs.xz
|
path: /usr/install/amd64/initramfs.xz
|
||||||
baseInstaller:
|
baseInstaller:
|
||||||
imageRef: ghcr.io/siderolabs/installer:v1.6.4
|
imageRef: ghcr.io/siderolabs/installer:v1.7.1
|
||||||
systemExtensions:
|
systemExtensions:
|
||||||
- imageRef: ghcr.io/siderolabs/amd-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/amd-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240115
|
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/i915-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/i915-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ucode:20231114
|
- imageRef: ghcr.io/siderolabs/intel-ucode:20240312
|
||||||
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/drbd:9.2.6-v1.6.4
|
- imageRef: ghcr.io/siderolabs/drbd:9.2.8-v1.7.1
|
||||||
- imageRef: ghcr.io/siderolabs/zfs:2.1.14-v1.6.4
|
- imageRef: ghcr.io/siderolabs/zfs:2.2.3-v1.7.1
|
||||||
output:
|
output:
|
||||||
kind: iso
|
kind: iso
|
||||||
|
imageOptions: {}
|
||||||
outFormat: raw
|
outFormat: raw
|
||||||
|
|||||||
@@ -3,24 +3,25 @@
|
|||||||
arch: amd64
|
arch: amd64
|
||||||
platform: metal
|
platform: metal
|
||||||
secureboot: false
|
secureboot: false
|
||||||
version: v1.6.4
|
version: v1.7.1
|
||||||
input:
|
input:
|
||||||
kernel:
|
kernel:
|
||||||
path: /usr/install/amd64/vmlinuz
|
path: /usr/install/amd64/vmlinuz
|
||||||
initramfs:
|
initramfs:
|
||||||
path: /usr/install/amd64/initramfs.xz
|
path: /usr/install/amd64/initramfs.xz
|
||||||
baseInstaller:
|
baseInstaller:
|
||||||
imageRef: ghcr.io/siderolabs/installer:v1.6.4
|
imageRef: ghcr.io/siderolabs/installer:v1.7.1
|
||||||
systemExtensions:
|
systemExtensions:
|
||||||
- imageRef: ghcr.io/siderolabs/amd-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/amd-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240115
|
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/i915-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/i915-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ucode:20231114
|
- imageRef: ghcr.io/siderolabs/intel-ucode:20240312
|
||||||
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/drbd:9.2.6-v1.6.4
|
- imageRef: ghcr.io/siderolabs/drbd:9.2.8-v1.7.1
|
||||||
- imageRef: ghcr.io/siderolabs/zfs:2.1.14-v1.6.4
|
- imageRef: ghcr.io/siderolabs/zfs:2.2.3-v1.7.1
|
||||||
output:
|
output:
|
||||||
kind: kernel
|
kind: kernel
|
||||||
|
imageOptions: {}
|
||||||
outFormat: raw
|
outFormat: raw
|
||||||
|
|||||||
@@ -3,25 +3,25 @@
|
|||||||
arch: amd64
|
arch: amd64
|
||||||
platform: metal
|
platform: metal
|
||||||
secureboot: false
|
secureboot: false
|
||||||
version: v1.6.4
|
version: v1.7.1
|
||||||
input:
|
input:
|
||||||
kernel:
|
kernel:
|
||||||
path: /usr/install/amd64/vmlinuz
|
path: /usr/install/amd64/vmlinuz
|
||||||
initramfs:
|
initramfs:
|
||||||
path: /usr/install/amd64/initramfs.xz
|
path: /usr/install/amd64/initramfs.xz
|
||||||
baseInstaller:
|
baseInstaller:
|
||||||
imageRef: ghcr.io/siderolabs/installer:v1.6.4
|
imageRef: ghcr.io/siderolabs/installer:v1.7.1
|
||||||
systemExtensions:
|
systemExtensions:
|
||||||
- imageRef: ghcr.io/siderolabs/amd-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/amd-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/amdgpu-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240115
|
- imageRef: ghcr.io/siderolabs/bnx2-bnx2x:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/i915-ucode:20240115
|
- imageRef: ghcr.io/siderolabs/i915-ucode:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/intel-ice-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/intel-ucode:20231114
|
- imageRef: ghcr.io/siderolabs/intel-ucode:20240312
|
||||||
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240115
|
- imageRef: ghcr.io/siderolabs/qlogic-firmware:20240410
|
||||||
- imageRef: ghcr.io/siderolabs/drbd:9.2.6-v1.6.4
|
- imageRef: ghcr.io/siderolabs/drbd:9.2.8-v1.7.1
|
||||||
- imageRef: ghcr.io/siderolabs/zfs:2.1.14-v1.6.4
|
- imageRef: ghcr.io/siderolabs/zfs:2.2.3-v1.7.1
|
||||||
output:
|
output:
|
||||||
kind: image
|
kind: nocloud
|
||||||
imageOptions: { diskSize: 1306525696, diskFormat: raw }
|
imageOptions: { diskSize: 1306525696, diskFormat: raw }
|
||||||
outFormat: .xz
|
outFormat: .xz
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-platform
|
name: cozy-platform
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -52,6 +52,12 @@ releases:
|
|||||||
privileged: true
|
privileged: true
|
||||||
dependsOn: [cilium]
|
dependsOn: [cilium]
|
||||||
|
|
||||||
|
- name: etcd-operator
|
||||||
|
releaseName: etcd-operator
|
||||||
|
chart: cozy-etcd-operator
|
||||||
|
namespace: cozy-etcd-operator
|
||||||
|
dependsOn: [cilium,cert-manager]
|
||||||
|
|
||||||
- name: grafana-operator
|
- name: grafana-operator
|
||||||
releaseName: grafana-operator
|
releaseName: grafana-operator
|
||||||
chart: cozy-grafana-operator
|
chart: cozy-grafana-operator
|
||||||
|
|||||||
@@ -26,6 +26,12 @@ releases:
|
|||||||
privileged: true
|
privileged: true
|
||||||
dependsOn: [victoria-metrics-operator]
|
dependsOn: [victoria-metrics-operator]
|
||||||
|
|
||||||
|
- name: etcd-operator
|
||||||
|
releaseName: etcd-operator
|
||||||
|
chart: cozy-etcd-operator
|
||||||
|
namespace: cozy-etcd-operator
|
||||||
|
dependsOn: [cert-manager]
|
||||||
|
|
||||||
- name: grafana-operator
|
- name: grafana-operator
|
||||||
releaseName: grafana-operator
|
releaseName: grafana-operator
|
||||||
chart: cozy-grafana-operator
|
chart: cozy-grafana-operator
|
||||||
|
|||||||
@@ -81,6 +81,12 @@ releases:
|
|||||||
privileged: true
|
privileged: true
|
||||||
dependsOn: [cilium,kubeovn]
|
dependsOn: [cilium,kubeovn]
|
||||||
|
|
||||||
|
- name: etcd-operator
|
||||||
|
releaseName: etcd-operator
|
||||||
|
chart: cozy-etcd-operator
|
||||||
|
namespace: cozy-etcd-operator
|
||||||
|
dependsOn: [cilium,kubeovn,cert-manager]
|
||||||
|
|
||||||
- name: grafana-operator
|
- name: grafana-operator
|
||||||
releaseName: grafana-operator
|
releaseName: grafana-operator
|
||||||
chart: cozy-grafana-operator
|
chart: cozy-grafana-operator
|
||||||
|
|||||||
@@ -26,6 +26,12 @@ releases:
|
|||||||
privileged: true
|
privileged: true
|
||||||
dependsOn: [victoria-metrics-operator]
|
dependsOn: [victoria-metrics-operator]
|
||||||
|
|
||||||
|
- name: etcd-operator
|
||||||
|
releaseName: etcd-operator
|
||||||
|
chart: cozy-etcd-operator
|
||||||
|
namespace: cozy-etcd-operator
|
||||||
|
dependsOn: [cert-manager]
|
||||||
|
|
||||||
- name: grafana-operator
|
- name: grafana-operator
|
||||||
releaseName: grafana-operator
|
releaseName: grafana-operator
|
||||||
chart: cozy-grafana-operator
|
chart: cozy-grafana-operator
|
||||||
|
|||||||
@@ -23,9 +23,11 @@ spec:
|
|||||||
interval: 1m
|
interval: 1m
|
||||||
releaseName: {{ $x.releaseName | default $x.name }}
|
releaseName: {{ $x.releaseName | default $x.name }}
|
||||||
install:
|
install:
|
||||||
|
crds: CreateReplace
|
||||||
remediation:
|
remediation:
|
||||||
retries: -1
|
retries: -1
|
||||||
upgrade:
|
upgrade:
|
||||||
|
crds: CreateReplace
|
||||||
remediation:
|
remediation:
|
||||||
retries: -1
|
retries: -1
|
||||||
chart:
|
chart:
|
||||||
|
|||||||
@@ -7,7 +7,7 @@ repo:
|
|||||||
awk '$$3 != "HEAD" {print "mkdir -p $(TMP)/" $$1 "-" $$2}' versions_map | sh -ex
|
awk '$$3 != "HEAD" {print "mkdir -p $(TMP)/" $$1 "-" $$2}' versions_map | sh -ex
|
||||||
awk '$$3 != "HEAD" {print "git archive " $$3 " " $$1 " | tar -xf- --strip-components=1 -C $(TMP)/" $$1 "-" $$2 }' versions_map | sh -ex
|
awk '$$3 != "HEAD" {print "git archive " $$3 " " $$1 " | tar -xf- --strip-components=1 -C $(TMP)/" $$1 "-" $$2 }' versions_map | sh -ex
|
||||||
helm package -d "$(OUT)" $$(find . $(TMP) -mindepth 2 -maxdepth 2 -name Chart.yaml | awk 'sub("/Chart.yaml", "")' | sort -V)
|
helm package -d "$(OUT)" $$(find . $(TMP) -mindepth 2 -maxdepth 2 -name Chart.yaml | awk 'sub("/Chart.yaml", "")' | sort -V)
|
||||||
cd "$(OUT)" && helm repo index .
|
cd "$(OUT)" && helm repo index . --url http://cozystack.cozy-system.svc/repos/extra
|
||||||
rm -rf "$(TMP)"
|
rm -rf "$(TMP)"
|
||||||
|
|
||||||
fix-chartnames:
|
fix-chartnames:
|
||||||
|
|||||||
@@ -3,4 +3,4 @@ name: etcd
|
|||||||
description: Storage for Kubernetes clusters
|
description: Storage for Kubernetes clusters
|
||||||
icon: https://www.svgrepo.com/show/353714/etcd.svg
|
icon: https://www.svgrepo.com/show/353714/etcd.svg
|
||||||
type: application
|
type: application
|
||||||
version: 1.0.0
|
version: 2.0.0
|
||||||
|
|||||||
50
packages/extra/etcd/templates/datastore.yaml
Normal file
50
packages/extra/etcd/templates/datastore.yaml
Normal file
@@ -0,0 +1,50 @@
|
|||||||
|
---
|
||||||
|
apiVersion: kamaji.clastix.io/v1alpha1
|
||||||
|
kind: DataStore
|
||||||
|
metadata:
|
||||||
|
name: {{ .Release.Namespace }}
|
||||||
|
spec:
|
||||||
|
driver: etcd
|
||||||
|
endpoints:
|
||||||
|
- etcd-0.etcd-headless.{{ .Release.Namespace }}.svc:2379
|
||||||
|
- etcd-1.etcd-headless.{{ .Release.Namespace }}.svc:2379
|
||||||
|
- etcd-2.etcd-headless.{{ .Release.Namespace }}.svc:2379
|
||||||
|
tlsConfig:
|
||||||
|
certificateAuthority:
|
||||||
|
certificate:
|
||||||
|
secretReference:
|
||||||
|
keyPath: tls.crt
|
||||||
|
name: etcd-ca-tls
|
||||||
|
namespace: {{ .Release.Namespace }}
|
||||||
|
privateKey:
|
||||||
|
secretReference:
|
||||||
|
keyPath: tls.key
|
||||||
|
name: etcd-ca-tls
|
||||||
|
namespace: {{ .Release.Namespace }}
|
||||||
|
clientCertificate:
|
||||||
|
certificate:
|
||||||
|
secretReference:
|
||||||
|
keyPath: tls.crt
|
||||||
|
name: etcd-client-tls
|
||||||
|
namespace: {{ .Release.Namespace }}
|
||||||
|
privateKey:
|
||||||
|
secretReference:
|
||||||
|
keyPath: tls.key
|
||||||
|
name: etcd-client-tls
|
||||||
|
namespace: {{ .Release.Namespace }}
|
||||||
|
---
|
||||||
|
apiVersion: v1
|
||||||
|
kind: Secret
|
||||||
|
metadata:
|
||||||
|
name: etcd-ca-tls
|
||||||
|
annotations:
|
||||||
|
helm.sh/hook: pre-install
|
||||||
|
helm.sh/resource-policy: keep
|
||||||
|
---
|
||||||
|
apiVersion: v1
|
||||||
|
kind: Secret
|
||||||
|
metadata:
|
||||||
|
name: etcd-client-tls
|
||||||
|
annotations:
|
||||||
|
helm.sh/hook: pre-install
|
||||||
|
helm.sh/resource-policy: keep
|
||||||
176
packages/extra/etcd/templates/etcd-cluster.yaml
Normal file
176
packages/extra/etcd/templates/etcd-cluster.yaml
Normal file
@@ -0,0 +1,176 @@
|
|||||||
|
---
|
||||||
|
apiVersion: etcd.aenix.io/v1alpha1
|
||||||
|
kind: EtcdCluster
|
||||||
|
metadata:
|
||||||
|
name: etcd
|
||||||
|
spec:
|
||||||
|
storage: {}
|
||||||
|
security:
|
||||||
|
tls:
|
||||||
|
peerTrustedCASecret: etcd-peer-ca-tls
|
||||||
|
peerSecret: etcd-peer-tls
|
||||||
|
serverSecret: etcd-server-tls
|
||||||
|
clientTrustedCASecret: etcd-ca-tls
|
||||||
|
clientSecret: etcd-client-tls
|
||||||
|
podTemplate:
|
||||||
|
spec:
|
||||||
|
topologySpreadConstraints:
|
||||||
|
- maxSkew: 1
|
||||||
|
topologyKey: "kubernetes.io/hostname"
|
||||||
|
whenUnsatisfiable: ScheduleAnyway
|
||||||
|
labelSelector:
|
||||||
|
matchLabels:
|
||||||
|
app.kubernetes.io/instance: etcd
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Issuer
|
||||||
|
metadata:
|
||||||
|
name: etcd-selfsigning-issuer
|
||||||
|
spec:
|
||||||
|
selfSigned: {}
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Certificate
|
||||||
|
metadata:
|
||||||
|
name: etcd-peer-ca
|
||||||
|
spec:
|
||||||
|
isCA: true
|
||||||
|
usages:
|
||||||
|
- "signing"
|
||||||
|
- "key encipherment"
|
||||||
|
- "cert sign"
|
||||||
|
commonName: etcd-peer-ca
|
||||||
|
subject:
|
||||||
|
organizations:
|
||||||
|
- ACME Inc.
|
||||||
|
organizationalUnits:
|
||||||
|
- Widgets
|
||||||
|
secretName: etcd-peer-ca-tls
|
||||||
|
privateKey:
|
||||||
|
algorithm: RSA
|
||||||
|
size: 4096
|
||||||
|
issuerRef:
|
||||||
|
name: etcd-selfsigning-issuer
|
||||||
|
kind: Issuer
|
||||||
|
group: cert-manager.io
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Certificate
|
||||||
|
metadata:
|
||||||
|
name: etcd-ca
|
||||||
|
spec:
|
||||||
|
isCA: true
|
||||||
|
usages:
|
||||||
|
- "signing"
|
||||||
|
- "key encipherment"
|
||||||
|
- "cert sign"
|
||||||
|
commonName: etcd-ca
|
||||||
|
subject:
|
||||||
|
organizations:
|
||||||
|
- ACME Inc.
|
||||||
|
organizationalUnits:
|
||||||
|
- Widgets
|
||||||
|
secretName: etcd-ca-tls
|
||||||
|
privateKey:
|
||||||
|
algorithm: RSA
|
||||||
|
size: 4096
|
||||||
|
issuerRef:
|
||||||
|
name: etcd-selfsigning-issuer
|
||||||
|
kind: Issuer
|
||||||
|
group: cert-manager.io
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Issuer
|
||||||
|
metadata:
|
||||||
|
name: etcd-peer-issuer
|
||||||
|
spec:
|
||||||
|
ca:
|
||||||
|
secretName: etcd-peer-ca-tls
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Issuer
|
||||||
|
metadata:
|
||||||
|
name: etcd-issuer
|
||||||
|
spec:
|
||||||
|
ca:
|
||||||
|
secretName: etcd-ca-tls
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Certificate
|
||||||
|
metadata:
|
||||||
|
name: etcd-server
|
||||||
|
spec:
|
||||||
|
secretName: etcd-server-tls
|
||||||
|
isCA: false
|
||||||
|
usages:
|
||||||
|
- "server auth"
|
||||||
|
- "signing"
|
||||||
|
- "key encipherment"
|
||||||
|
dnsNames:
|
||||||
|
- etcd-0
|
||||||
|
- etcd-0.etcd-headless
|
||||||
|
- etcd-0.etcd-headless.{{ .Release.Namespace }}.svc
|
||||||
|
- etcd-1
|
||||||
|
- etcd-1.etcd-headless
|
||||||
|
- etcd-1.etcd-headless.{{ .Release.Namespace }}.svc
|
||||||
|
- etcd-2
|
||||||
|
- etcd-2.etcd-headless
|
||||||
|
- etcd-2.etcd-headless.{{ .Release.Namespace }}.svc
|
||||||
|
- localhost
|
||||||
|
- "127.0.0.1"
|
||||||
|
privateKey:
|
||||||
|
rotationPolicy: Always
|
||||||
|
algorithm: RSA
|
||||||
|
size: 4096
|
||||||
|
issuerRef:
|
||||||
|
name: etcd-issuer
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Certificate
|
||||||
|
metadata:
|
||||||
|
name: etcd-peer
|
||||||
|
spec:
|
||||||
|
secretName: etcd-peer-tls
|
||||||
|
isCA: false
|
||||||
|
usages:
|
||||||
|
- "server auth"
|
||||||
|
- "client auth"
|
||||||
|
- "signing"
|
||||||
|
- "key encipherment"
|
||||||
|
dnsNames:
|
||||||
|
- etcd-0
|
||||||
|
- etcd-0.etcd-headless
|
||||||
|
- etcd-0.etcd-headless.{{ .Release.Namespace }}.svc
|
||||||
|
- etcd-1
|
||||||
|
- etcd-1.etcd-headless
|
||||||
|
- etcd-1.etcd-headless.{{ .Release.Namespace }}.svc
|
||||||
|
- etcd-2
|
||||||
|
- etcd-2.etcd-headless
|
||||||
|
- etcd-2.etcd-headless.{{ .Release.Namespace }}.svc
|
||||||
|
- localhost
|
||||||
|
- "127.0.0.1"
|
||||||
|
privateKey:
|
||||||
|
rotationPolicy: Always
|
||||||
|
algorithm: RSA
|
||||||
|
size: 4096
|
||||||
|
issuerRef:
|
||||||
|
name: etcd-peer-issuer
|
||||||
|
---
|
||||||
|
apiVersion: cert-manager.io/v1
|
||||||
|
kind: Certificate
|
||||||
|
metadata:
|
||||||
|
name: etcd-client
|
||||||
|
spec:
|
||||||
|
commonName: root
|
||||||
|
secretName: etcd-client-tls
|
||||||
|
usages:
|
||||||
|
- "signing"
|
||||||
|
- "key encipherment"
|
||||||
|
- "client auth"
|
||||||
|
privateKey:
|
||||||
|
rotationPolicy: Always
|
||||||
|
algorithm: RSA
|
||||||
|
size: 4096
|
||||||
|
issuerRef:
|
||||||
|
name: etcd-issuer
|
||||||
|
kind: Issuer
|
||||||
@@ -1,19 +0,0 @@
|
|||||||
apiVersion: helm.toolkit.fluxcd.io/v2beta1
|
|
||||||
kind: HelmRelease
|
|
||||||
metadata:
|
|
||||||
name: kamaji-etcd
|
|
||||||
spec:
|
|
||||||
chart:
|
|
||||||
spec:
|
|
||||||
chart: cozy-kamaji-etcd
|
|
||||||
reconcileStrategy: Revision
|
|
||||||
sourceRef:
|
|
||||||
kind: HelmRepository
|
|
||||||
name: cozystack-system
|
|
||||||
namespace: cozy-system
|
|
||||||
version: '*'
|
|
||||||
interval: 1m0s
|
|
||||||
timeout: 5m0s
|
|
||||||
values:
|
|
||||||
kamaji-etcd:
|
|
||||||
fullnameOverride: etcd
|
|
||||||
@@ -1,3 +1,4 @@
|
|||||||
etcd 1.0.0 HEAD
|
etcd 1.0.0 f7eaab0
|
||||||
|
etcd 2.0.0 HEAD
|
||||||
ingress 1.0.0 HEAD
|
ingress 1.0.0 HEAD
|
||||||
monitoring 1.0.0 HEAD
|
monitoring 1.0.0 HEAD
|
||||||
|
|||||||
@@ -1,13 +1,12 @@
|
|||||||
OUT=../../_out/repos/system
|
OUT=../../_out/repos/system
|
||||||
VERSION := 0.3.1
|
|
||||||
|
|
||||||
gen: fix-chartnames
|
include ../../scripts/common-envs.mk
|
||||||
|
|
||||||
repo: fix-chartnames
|
repo:
|
||||||
rm -rf "$(OUT)"
|
rm -rf "$(OUT)"
|
||||||
mkdir -p "$(OUT)"
|
mkdir -p "$(OUT)"
|
||||||
helm package -d "$(OUT)" $$(find . -mindepth 2 -maxdepth 2 -name Chart.yaml | awk 'sub("/Chart.yaml", "")')
|
helm package -d "$(OUT)" $$(find . -mindepth 2 -maxdepth 2 -name Chart.yaml | awk 'sub("/Chart.yaml", "")') --version $(VERSION)
|
||||||
cd "$(OUT)" && helm repo index .
|
cd "$(OUT)" && helm repo index .
|
||||||
|
|
||||||
fix-chartnames:
|
fix-chartnames:
|
||||||
find . -name Chart.yaml -maxdepth 2 | awk -F/ '{print $$2}' | while read i; do printf "name: cozy-%s\nversion: $(VERSION)\n" "$$i" > "$$i/Chart.yaml"; done
|
find . -name Chart.yaml -maxdepth 2 | awk -F/ '{print $$2}' | while read i; do sed -i "s/^name: .*/name: cozy-$$i/" "$$i/Chart.yaml"; done
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-capi-operator
|
name: cozy-capi-operator
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-capi-providers
|
name: cozy-capi-providers
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -13,7 +13,7 @@ spec:
|
|||||||
deployment:
|
deployment:
|
||||||
containers:
|
containers:
|
||||||
- name: manager
|
- name: manager
|
||||||
imageUrl: ghcr.io/kvaps/test:cluster-api-control-plane-provider-kamaji-v0.6.0-fix7
|
imageUrl: ghcr.io/kvaps/test:cluster-api-control-plane-provider-kamaji-v0.7.1-fix
|
||||||
---
|
---
|
||||||
apiVersion: operator.cluster.x-k8s.io/v1alpha2
|
apiVersion: operator.cluster.x-k8s.io/v1alpha2
|
||||||
kind: BootstrapProvider
|
kind: BootstrapProvider
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-cert-manager-issuers
|
name: cozy-cert-manager-issuers
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-cert-manager
|
name: cozy-cert-manager
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-cilium
|
name: cozy-cilium
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-clickhouse-operator
|
name: cozy-clickhouse-operator
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,2 +1,3 @@
|
|||||||
|
apiVersion: v2
|
||||||
name: cozy-dashboard
|
name: cozy-dashboard
|
||||||
version: 0.3.1
|
version: 0.0.0 # Placeholder, the actual version will be automatically set during the build process
|
||||||
|
|||||||
@@ -1,10 +1,7 @@
|
|||||||
NAME=dashboard
|
NAME=dashboard
|
||||||
NAMESPACE=cozy-$(NAME)
|
NAMESPACE=cozy-$(NAME)
|
||||||
PUSH := 1
|
|
||||||
LOAD := 0
|
|
||||||
REPOSITORY := ghcr.io/aenix-io/cozystack
|
|
||||||
TAG := v0.3.1
|
|
||||||
|
|
||||||
|
include ../../../scripts/common-envs.mk
|
||||||
include ../../../scripts/package-system.mk
|
include ../../../scripts/package-system.mk
|
||||||
|
|
||||||
update: update-chart update-dockerfiles
|
update: update-chart update-dockerfiles
|
||||||
@@ -30,21 +27,21 @@ update-dockerfiles:
|
|||||||
image-dashboard:
|
image-dashboard:
|
||||||
docker buildx build images/dashboard \
|
docker buildx build images/dashboard \
|
||||||
--provenance false \
|
--provenance false \
|
||||||
--tag $(REPOSITORY)/dashboard:$(TAG) \
|
--tag $(REGISTRY)/dashboard:$(call settag,$(TAG)) \
|
||||||
--cache-from type=registry,ref=$(REPOSITORY)/dashboard:$(TAG) \
|
--cache-from type=registry,ref=$(REGISTRY)/dashboard:latest \
|
||||||
--cache-to type=inline \
|
--cache-to type=inline \
|
||||||
--metadata-file images/dashboard.json \
|
--metadata-file images/dashboard.json \
|
||||||
--push=$(PUSH) \
|
--push=$(PUSH) \
|
||||||
--load=$(LOAD)
|
--load=$(LOAD)
|
||||||
echo "$(REPOSITORY)/dashboard:$(TAG)" > images/dashboard.tag
|
echo "$(REGISTRY)/dashboard:$(call settag,$(TAG))" > images/dashboard.tag
|
||||||
|
|
||||||
image-kubeapps-apis:
|
image-kubeapps-apis:
|
||||||
docker buildx build images/kubeapps-apis \
|
docker buildx build images/kubeapps-apis \
|
||||||
--provenance false \
|
--provenance false \
|
||||||
--tag $(REPOSITORY)/kubeapps-apis:$(TAG) \
|
--tag $(REGISTRY)/kubeapps-apis:$(call settag,$(TAG)) \
|
||||||
--cache-from type=registry,ref=$(REPOSITORY)/kubeapps-apis:$(TAG) \
|
--cache-from type=registry,ref=$(REGISTRY)/kubeapps-apis:latest \
|
||||||
--cache-to type=inline \
|
--cache-to type=inline \
|
||||||
--metadata-file images/kubeapps-apis.json \
|
--metadata-file images/kubeapps-apis.json \
|
||||||
--push=$(PUSH) \
|
--push=$(PUSH) \
|
||||||
--load=$(LOAD)
|
--load=$(LOAD)
|
||||||
echo "$(REPOSITORY)/kubeapps-apis:$(TAG)" > images/kubeapps-apis.tag
|
echo "$(REGISTRY)/kubeapps-apis:$(call settag,$(TAG))" > images/kubeapps-apis.tag
|
||||||
|
|||||||
@@ -1,12 +1,12 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: redis
|
- name: redis
|
||||||
repository: oci://registry-1.docker.io/bitnamicharts
|
repository: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 18.19.2
|
version: 19.0.2
|
||||||
- name: postgresql
|
- name: postgresql
|
||||||
repository: oci://registry-1.docker.io/bitnamicharts
|
repository: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 13.4.6
|
version: 15.2.4
|
||||||
- name: common
|
- name: common
|
||||||
repository: oci://registry-1.docker.io/bitnamicharts
|
repository: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 2.19.0
|
version: 2.19.1
|
||||||
digest: sha256:b4965a22517e61212e78abb8d1cbe86e800c8664b3139e2047f4bd62b3e55b24
|
digest: sha256:2ff034d67cb1b9c11f0243b3ab9a6a8642bf12142df2f86043f9006adf6dbba1
|
||||||
generated: "2024-03-13T11:51:34.216594+01:00"
|
generated: "2024-04-08T09:01:34.727544997Z"
|
||||||
|
|||||||
@@ -2,33 +2,33 @@ annotations:
|
|||||||
category: Infrastructure
|
category: Infrastructure
|
||||||
images: |
|
images: |
|
||||||
- name: kubeapps-apis
|
- name: kubeapps-apis
|
||||||
image: docker.io/bitnami/kubeapps-apis:2.9.0-debian-12-r19
|
image: docker.io/bitnami/kubeapps-apis:2.10.0-debian-12-r0
|
||||||
- name: kubeapps-apprepository-controller
|
- name: kubeapps-apprepository-controller
|
||||||
image: docker.io/bitnami/kubeapps-apprepository-controller:2.9.0-debian-12-r18
|
image: docker.io/bitnami/kubeapps-apprepository-controller:2.10.0-debian-12-r0
|
||||||
- name: kubeapps-asset-syncer
|
- name: kubeapps-asset-syncer
|
||||||
image: docker.io/bitnami/kubeapps-asset-syncer:2.9.0-debian-12-r19
|
image: docker.io/bitnami/kubeapps-asset-syncer:2.10.0-debian-12-r0
|
||||||
- name: kubeapps-dashboard
|
- name: kubeapps-dashboard
|
||||||
image: docker.io/bitnami/kubeapps-dashboard:2.9.0-debian-12-r18
|
image: docker.io/bitnami/kubeapps-dashboard:2.10.0-debian-12-r0
|
||||||
- name: kubeapps-oci-catalog
|
- name: kubeapps-oci-catalog
|
||||||
image: docker.io/bitnami/kubeapps-oci-catalog:2.9.0-debian-12-r17
|
image: docker.io/bitnami/kubeapps-oci-catalog:2.10.0-debian-12-r0
|
||||||
- name: kubeapps-pinniped-proxy
|
- name: kubeapps-pinniped-proxy
|
||||||
image: docker.io/bitnami/kubeapps-pinniped-proxy:2.9.0-debian-12-r17
|
image: docker.io/bitnami/kubeapps-pinniped-proxy:2.10.0-debian-12-r0
|
||||||
- name: nginx
|
- name: nginx
|
||||||
image: docker.io/bitnami/nginx:1.25.4-debian-12-r3
|
image: docker.io/bitnami/nginx:1.25.4-debian-12-r7
|
||||||
- name: oauth2-proxy
|
- name: oauth2-proxy
|
||||||
image: docker.io/bitnami/oauth2-proxy:7.6.0-debian-12-r4
|
image: docker.io/bitnami/oauth2-proxy:7.6.0-debian-12-r7
|
||||||
licenses: Apache-2.0
|
licenses: Apache-2.0
|
||||||
apiVersion: v2
|
apiVersion: v2
|
||||||
appVersion: 2.9.0
|
appVersion: 2.10.0
|
||||||
dependencies:
|
dependencies:
|
||||||
- condition: packaging.flux.enabled
|
- condition: packaging.flux.enabled
|
||||||
name: redis
|
name: redis
|
||||||
repository: oci://registry-1.docker.io/bitnamicharts
|
repository: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 18.x.x
|
version: 19.x.x
|
||||||
- condition: packaging.helm.enabled
|
- condition: packaging.helm.enabled
|
||||||
name: postgresql
|
name: postgresql
|
||||||
repository: oci://registry-1.docker.io/bitnamicharts
|
repository: oci://registry-1.docker.io/bitnamicharts
|
||||||
version: 13.x.x
|
version: 15.x.x
|
||||||
- name: common
|
- name: common
|
||||||
repository: oci://registry-1.docker.io/bitnamicharts
|
repository: oci://registry-1.docker.io/bitnamicharts
|
||||||
tags:
|
tags:
|
||||||
@@ -51,4 +51,4 @@ maintainers:
|
|||||||
name: kubeapps
|
name: kubeapps
|
||||||
sources:
|
sources:
|
||||||
- https://github.com/bitnami/charts/tree/main/bitnami/kubeapps
|
- https://github.com/bitnami/charts/tree/main/bitnami/kubeapps
|
||||||
version: 14.7.2
|
version: 15.0.2
|
||||||
|
|||||||
File diff suppressed because it is too large
Load Diff
@@ -2,7 +2,7 @@ annotations:
|
|||||||
category: Infrastructure
|
category: Infrastructure
|
||||||
licenses: Apache-2.0
|
licenses: Apache-2.0
|
||||||
apiVersion: v2
|
apiVersion: v2
|
||||||
appVersion: 2.19.0
|
appVersion: 2.19.1
|
||||||
description: A Library Helm Chart for grouping common logic between bitnami charts.
|
description: A Library Helm Chart for grouping common logic between bitnami charts.
|
||||||
This chart is not deployable by itself.
|
This chart is not deployable by itself.
|
||||||
home: https://bitnami.com
|
home: https://bitnami.com
|
||||||
@@ -20,4 +20,4 @@ name: common
|
|||||||
sources:
|
sources:
|
||||||
- https://github.com/bitnami/charts
|
- https://github.com/bitnami/charts
|
||||||
type: library
|
type: library
|
||||||
version: 2.19.0
|
version: 2.19.1
|
||||||
|
|||||||
@@ -11,7 +11,7 @@ These presets are for basic testing and not meant to be used in production
|
|||||||
{{ include "common.resources.preset" (dict "type" "nano") -}}
|
{{ include "common.resources.preset" (dict "type" "nano") -}}
|
||||||
*/}}
|
*/}}
|
||||||
{{- define "common.resources.preset" -}}
|
{{- define "common.resources.preset" -}}
|
||||||
{{/* The limits are the requests increased by 50% (except ephemeral-storage)*/}}
|
{{/* The limits are the requests increased by 50% (except ephemeral-storage and xlarge/2xlarge sizes)*/}}
|
||||||
{{- $presets := dict
|
{{- $presets := dict
|
||||||
"nano" (dict
|
"nano" (dict
|
||||||
"requests" (dict "cpu" "100m" "memory" "128Mi" "ephemeral-storage" "50Mi")
|
"requests" (dict "cpu" "100m" "memory" "128Mi" "ephemeral-storage" "50Mi")
|
||||||
@@ -34,11 +34,11 @@ These presets are for basic testing and not meant to be used in production
|
|||||||
"limits" (dict "cpu" "1.5" "memory" "3072Mi" "ephemeral-storage" "1024Mi")
|
"limits" (dict "cpu" "1.5" "memory" "3072Mi" "ephemeral-storage" "1024Mi")
|
||||||
)
|
)
|
||||||
"xlarge" (dict
|
"xlarge" (dict
|
||||||
"requests" (dict "cpu" "2.0" "memory" "4096Mi" "ephemeral-storage" "50Mi")
|
"requests" (dict "cpu" "1.5" "memory" "4096Mi" "ephemeral-storage" "50Mi")
|
||||||
"limits" (dict "cpu" "3.0" "memory" "6144Mi" "ephemeral-storage" "1024Mi")
|
"limits" (dict "cpu" "3.0" "memory" "6144Mi" "ephemeral-storage" "1024Mi")
|
||||||
)
|
)
|
||||||
"2xlarge" (dict
|
"2xlarge" (dict
|
||||||
"requests" (dict "cpu" "4.0" "memory" "8192Mi" "ephemeral-storage" "50Mi")
|
"requests" (dict "cpu" "1.5" "memory" "4096Mi" "ephemeral-storage" "50Mi")
|
||||||
"limits" (dict "cpu" "6.0" "memory" "12288Mi" "ephemeral-storage" "1024Mi")
|
"limits" (dict "cpu" "6.0" "memory" "12288Mi" "ephemeral-storage" "1024Mi")
|
||||||
)
|
)
|
||||||
}}
|
}}
|
||||||
@@ -47,4 +47,4 @@ These presets are for basic testing and not meant to be used in production
|
|||||||
{{- else -}}
|
{{- else -}}
|
||||||
{{- printf "ERROR: Preset key '%s' invalid. Allowed values are %s" .type (join "," (keys $presets)) | fail -}}
|
{{- printf "ERROR: Preset key '%s' invalid. Allowed values are %s" .type (join "," (keys $presets)) | fail -}}
|
||||||
{{- end -}}
|
{{- end -}}
|
||||||
{{- end -}}
|
{{- end -}}
|
||||||
|
|||||||
@@ -35,4 +35,4 @@ maintainers:
|
|||||||
name: redis
|
name: redis
|
||||||
sources:
|
sources:
|
||||||
- https://github.com/bitnami/charts/tree/main/bitnami/redis
|
- https://github.com/bitnami/charts/tree/main/bitnami/redis
|
||||||
version: 18.19.2
|
version: 19.0.2
|
||||||
|
|||||||
File diff suppressed because it is too large
Load Diff
@@ -28,8 +28,8 @@ spec:
|
|||||||
{{- if .Values.metrics.podMonitor.honorLabels }}
|
{{- if .Values.metrics.podMonitor.honorLabels }}
|
||||||
honorLabels: {{ .Values.metrics.podMonitor.honorLabels }}
|
honorLabels: {{ .Values.metrics.podMonitor.honorLabels }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .Values.metrics.podMonitor.relabellings }}
|
{{- with concat .Values.metrics.podMonitor.relabelings .Values.metrics.podMonitor.relabellings }}
|
||||||
relabelings: {{- toYaml .Values.metrics.podMonitor.relabellings | nindent 6 }}
|
relabelings: {{- toYaml . | nindent 6 }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .Values.metrics.podMonitor.metricRelabelings }}
|
{{- if .Values.metrics.podMonitor.metricRelabelings }}
|
||||||
metricRelabelings: {{- toYaml .Values.metrics.podMonitor.metricRelabelings | nindent 6 }}
|
metricRelabelings: {{- toYaml .Values.metrics.podMonitor.metricRelabelings | nindent 6 }}
|
||||||
@@ -45,8 +45,8 @@ spec:
|
|||||||
{{- if .honorLabels }}
|
{{- if .honorLabels }}
|
||||||
honorLabels: {{ .honorLabels }}
|
honorLabels: {{ .honorLabels }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .relabellings }}
|
{{- with concat .Values.metrics.podMonitor.relabelings .Values.metrics.podMonitor.relabellings }}
|
||||||
relabelings: {{- toYaml .relabellings | nindent 6 }}
|
relabelings: {{- toYaml . | nindent 6 }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .metricRelabelings }}
|
{{- if .metricRelabelings }}
|
||||||
metricRelabelings: {{- toYaml .metricRelabelings | nindent 6 }}
|
metricRelabelings: {{- toYaml .metricRelabelings | nindent 6 }}
|
||||||
|
|||||||
@@ -598,8 +598,9 @@ spec:
|
|||||||
image: {{ template "redis.kubectl.image" . }}
|
image: {{ template "redis.kubectl.image" . }}
|
||||||
imagePullPolicy: {{ .Values.kubectl.image.pullPolicy | quote }}
|
imagePullPolicy: {{ .Values.kubectl.image.pullPolicy | quote }}
|
||||||
command: {{- toYaml .Values.kubectl.command | nindent 12 }}
|
command: {{- toYaml .Values.kubectl.command | nindent 12 }}
|
||||||
securityContext:
|
{{- if .Values.kubectl.containerSecurityContext.enabled }}
|
||||||
runAsUser: 0
|
securityContext: {{- include "common.compatibility.renderSecurityContext" (dict "secContext" .Values.kubectl.containerSecurityContext "context" $) | nindent 12 }}
|
||||||
|
{{- end }}
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- name: kubectl-shared
|
- name: kubectl-shared
|
||||||
mountPath: /etc/shared
|
mountPath: /etc/shared
|
||||||
|
|||||||
@@ -28,8 +28,8 @@ spec:
|
|||||||
{{- if .Values.metrics.serviceMonitor.honorLabels }}
|
{{- if .Values.metrics.serviceMonitor.honorLabels }}
|
||||||
honorLabels: {{ .Values.metrics.serviceMonitor.honorLabels }}
|
honorLabels: {{ .Values.metrics.serviceMonitor.honorLabels }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .Values.metrics.serviceMonitor.relabellings }}
|
{{- with concat .Values.metrics.serviceMonitor.relabelings .Values.metrics.serviceMonitor.relabellings }}
|
||||||
relabelings: {{- toYaml .Values.metrics.serviceMonitor.relabellings | nindent 6 }}
|
relabelings: {{- toYaml . | nindent 6 }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .Values.metrics.serviceMonitor.metricRelabelings }}
|
{{- if .Values.metrics.serviceMonitor.metricRelabelings }}
|
||||||
metricRelabelings: {{- toYaml .Values.metrics.serviceMonitor.metricRelabelings | nindent 6 }}
|
metricRelabelings: {{- toYaml .Values.metrics.serviceMonitor.metricRelabelings | nindent 6 }}
|
||||||
@@ -45,8 +45,8 @@ spec:
|
|||||||
{{- if .honorLabels }}
|
{{- if .honorLabels }}
|
||||||
honorLabels: {{ .honorLabels }}
|
honorLabels: {{ .honorLabels }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .relabellings }}
|
{{- with concat .Values.metrics.serviceMonitor.relabelings .Values.metrics.serviceMonitor.relabellings }}
|
||||||
relabelings: {{- toYaml .relabellings | nindent 6 }}
|
relabelings: {{- toYaml . | nindent 6 }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- if .metricRelabelings }}
|
{{- if .metricRelabelings }}
|
||||||
metricRelabelings: {{- toYaml .metricRelabelings | nindent 6 }}
|
metricRelabelings: {{- toYaml .metricRelabelings | nindent 6 }}
|
||||||
|
|||||||
@@ -30,7 +30,7 @@ global:
|
|||||||
openshift:
|
openshift:
|
||||||
## @param global.compatibility.openshift.adaptSecurityContext Adapt the securityContext sections of the deployment to make them compatible with Openshift restricted-v2 SCC: remove runAsUser, runAsGroup and fsGroup and let the platform use their allowed default IDs. Possible values: auto (apply if the detected running cluster is Openshift), force (perform the adaptation always), disabled (do not perform adaptation)
|
## @param global.compatibility.openshift.adaptSecurityContext Adapt the securityContext sections of the deployment to make them compatible with Openshift restricted-v2 SCC: remove runAsUser, runAsGroup and fsGroup and let the platform use their allowed default IDs. Possible values: auto (apply if the detected running cluster is Openshift), force (perform the adaptation always), disabled (do not perform adaptation)
|
||||||
##
|
##
|
||||||
adaptSecurityContext: disabled
|
adaptSecurityContext: auto
|
||||||
## @section Common parameters
|
## @section Common parameters
|
||||||
##
|
##
|
||||||
|
|
||||||
@@ -275,7 +275,7 @@ master:
|
|||||||
## @param master.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if master.resources is set (master.resources is recommended for production).
|
## @param master.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if master.resources is set (master.resources is recommended for production).
|
||||||
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
||||||
##
|
##
|
||||||
resourcesPreset: "none"
|
resourcesPreset: "nano"
|
||||||
## @param master.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
## @param master.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
||||||
## Example:
|
## Example:
|
||||||
## resources:
|
## resources:
|
||||||
@@ -315,12 +315,12 @@ master:
|
|||||||
##
|
##
|
||||||
containerSecurityContext:
|
containerSecurityContext:
|
||||||
enabled: true
|
enabled: true
|
||||||
seLinuxOptions: null
|
seLinuxOptions: {}
|
||||||
runAsUser: 1001
|
runAsUser: 1001
|
||||||
runAsGroup: 0
|
runAsGroup: 1001
|
||||||
runAsNonRoot: true
|
runAsNonRoot: true
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
readOnlyRootFilesystem: false
|
readOnlyRootFilesystem: true
|
||||||
seccompProfile:
|
seccompProfile:
|
||||||
type: RuntimeDefault
|
type: RuntimeDefault
|
||||||
capabilities:
|
capabilities:
|
||||||
@@ -737,7 +737,7 @@ replica:
|
|||||||
## @param replica.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if replica.resources is set (replica.resources is recommended for production).
|
## @param replica.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if replica.resources is set (replica.resources is recommended for production).
|
||||||
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
||||||
##
|
##
|
||||||
resourcesPreset: "none"
|
resourcesPreset: "nano"
|
||||||
## @param replica.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
## @param replica.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
||||||
## Example:
|
## Example:
|
||||||
## resources:
|
## resources:
|
||||||
@@ -777,12 +777,12 @@ replica:
|
|||||||
##
|
##
|
||||||
containerSecurityContext:
|
containerSecurityContext:
|
||||||
enabled: true
|
enabled: true
|
||||||
seLinuxOptions: null
|
seLinuxOptions: {}
|
||||||
runAsUser: 1001
|
runAsUser: 1001
|
||||||
runAsGroup: 0
|
runAsGroup: 1001
|
||||||
runAsNonRoot: true
|
runAsNonRoot: true
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
readOnlyRootFilesystem: false
|
readOnlyRootFilesystem: true
|
||||||
seccompProfile:
|
seccompProfile:
|
||||||
type: RuntimeDefault
|
type: RuntimeDefault
|
||||||
capabilities:
|
capabilities:
|
||||||
@@ -1306,7 +1306,7 @@ sentinel:
|
|||||||
## @param sentinel.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if sentinel.resources is set (sentinel.resources is recommended for production).
|
## @param sentinel.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if sentinel.resources is set (sentinel.resources is recommended for production).
|
||||||
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
||||||
##
|
##
|
||||||
resourcesPreset: "none"
|
resourcesPreset: "nano"
|
||||||
## @param sentinel.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
## @param sentinel.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
||||||
## Example:
|
## Example:
|
||||||
## resources:
|
## resources:
|
||||||
@@ -1332,12 +1332,12 @@ sentinel:
|
|||||||
##
|
##
|
||||||
containerSecurityContext:
|
containerSecurityContext:
|
||||||
enabled: true
|
enabled: true
|
||||||
seLinuxOptions: null
|
seLinuxOptions: {}
|
||||||
runAsUser: 1001
|
runAsUser: 1001
|
||||||
runAsGroup: 0
|
runAsGroup: 1001
|
||||||
runAsNonRoot: true
|
runAsNonRoot: true
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
readOnlyRootFilesystem: false
|
readOnlyRootFilesystem: true
|
||||||
seccompProfile:
|
seccompProfile:
|
||||||
type: RuntimeDefault
|
type: RuntimeDefault
|
||||||
capabilities:
|
capabilities:
|
||||||
@@ -1708,12 +1708,12 @@ metrics:
|
|||||||
##
|
##
|
||||||
containerSecurityContext:
|
containerSecurityContext:
|
||||||
enabled: true
|
enabled: true
|
||||||
seLinuxOptions: null
|
seLinuxOptions: {}
|
||||||
runAsUser: 1001
|
runAsUser: 1001
|
||||||
runAsGroup: 0
|
runAsGroup: 1001
|
||||||
runAsNonRoot: true
|
runAsNonRoot: true
|
||||||
allowPrivilegeEscalation: false
|
allowPrivilegeEscalation: false
|
||||||
readOnlyRootFilesystem: false
|
readOnlyRootFilesystem: true
|
||||||
seccompProfile:
|
seccompProfile:
|
||||||
type: RuntimeDefault
|
type: RuntimeDefault
|
||||||
capabilities:
|
capabilities:
|
||||||
@@ -1729,7 +1729,7 @@ metrics:
|
|||||||
## @param metrics.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if metrics.resources is set (metrics.resources is recommended for production).
|
## @param metrics.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if metrics.resources is set (metrics.resources is recommended for production).
|
||||||
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
||||||
##
|
##
|
||||||
resourcesPreset: "none"
|
resourcesPreset: "nano"
|
||||||
## @param metrics.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
## @param metrics.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
||||||
## Example:
|
## Example:
|
||||||
## resources:
|
## resources:
|
||||||
@@ -1812,7 +1812,10 @@ metrics:
|
|||||||
## @param metrics.serviceMonitor.scrapeTimeout The timeout after which the scrape is ended
|
## @param metrics.serviceMonitor.scrapeTimeout The timeout after which the scrape is ended
|
||||||
##
|
##
|
||||||
scrapeTimeout: ""
|
scrapeTimeout: ""
|
||||||
## @param metrics.serviceMonitor.relabellings Metrics RelabelConfigs to apply to samples before scraping.
|
## @param metrics.serviceMonitor.relabelings Metrics RelabelConfigs to apply to samples before scraping.
|
||||||
|
##
|
||||||
|
relabelings: []
|
||||||
|
## @skip metrics.serviceMonitor.relabellings DEPRECATED: Use `metrics.serviceMonitor.relabelings` instead.
|
||||||
##
|
##
|
||||||
relabellings: []
|
relabellings: []
|
||||||
## @param metrics.serviceMonitor.metricRelabelings Metrics RelabelConfigs to apply to samples before ingestion.
|
## @param metrics.serviceMonitor.metricRelabelings Metrics RelabelConfigs to apply to samples before ingestion.
|
||||||
@@ -1866,7 +1869,10 @@ metrics:
|
|||||||
## @param metrics.podMonitor.scrapeTimeout The timeout after which the scrape is ended
|
## @param metrics.podMonitor.scrapeTimeout The timeout after which the scrape is ended
|
||||||
##
|
##
|
||||||
scrapeTimeout: ""
|
scrapeTimeout: ""
|
||||||
## @param metrics.podMonitor.relabellings Metrics RelabelConfigs to apply to samples before scraping.
|
## @param metrics.podMonitor.relabelings Metrics RelabelConfigs to apply to samples before scraping.
|
||||||
|
##
|
||||||
|
relabelings: []
|
||||||
|
## @skip metrics.podMonitor.relabellings DEPRECATED: Use `metrics.podMonitor.relabelings` instead.
|
||||||
##
|
##
|
||||||
relabellings: []
|
relabellings: []
|
||||||
## @param metrics.podMonitor.metricRelabelings Metrics RelabelConfigs to apply to samples before ingestion.
|
## @param metrics.podMonitor.metricRelabelings Metrics RelabelConfigs to apply to samples before ingestion.
|
||||||
@@ -1988,7 +1994,7 @@ volumePermissions:
|
|||||||
## @param volumePermissions.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if volumePermissions.resources is set (volumePermissions.resources is recommended for production).
|
## @param volumePermissions.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if volumePermissions.resources is set (volumePermissions.resources is recommended for production).
|
||||||
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
||||||
##
|
##
|
||||||
resourcesPreset: "none"
|
resourcesPreset: "nano"
|
||||||
## @param volumePermissions.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
## @param volumePermissions.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
||||||
## Example:
|
## Example:
|
||||||
## resources:
|
## resources:
|
||||||
@@ -2009,7 +2015,7 @@ volumePermissions:
|
|||||||
## "auto" is especially useful for OpenShift which has scc with dynamic user ids (and 0 is not allowed)
|
## "auto" is especially useful for OpenShift which has scc with dynamic user ids (and 0 is not allowed)
|
||||||
##
|
##
|
||||||
containerSecurityContext:
|
containerSecurityContext:
|
||||||
seLinuxOptions: null
|
seLinuxOptions: {}
|
||||||
runAsUser: 0
|
runAsUser: 0
|
||||||
|
|
||||||
## Kubectl InitContainer
|
## Kubectl InitContainer
|
||||||
@@ -2046,6 +2052,30 @@ kubectl:
|
|||||||
## @param kubectl.command kubectl command to execute
|
## @param kubectl.command kubectl command to execute
|
||||||
##
|
##
|
||||||
command: ["/opt/bitnami/scripts/kubectl-scripts/update-master-label.sh"]
|
command: ["/opt/bitnami/scripts/kubectl-scripts/update-master-label.sh"]
|
||||||
|
## Configure Container Security Context
|
||||||
|
## ref: https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#set-the-security-context-for-a-pod
|
||||||
|
## @param kubectl.containerSecurityContext.enabled Enabled kubectl containers' Security Context
|
||||||
|
## @param kubectl.containerSecurityContext.seLinuxOptions [object,nullable] Set SELinux options in container
|
||||||
|
## @param kubectl.containerSecurityContext.runAsUser Set kubectl containers' Security Context runAsUser
|
||||||
|
## @param kubectl.containerSecurityContext.runAsGroup Set kubectl containers' Security Context runAsGroup
|
||||||
|
## @param kubectl.containerSecurityContext.runAsNonRoot Set kubectl containers' Security Context runAsNonRoot
|
||||||
|
## @param kubectl.containerSecurityContext.allowPrivilegeEscalation Set kubectl containers' Security Context allowPrivilegeEscalation
|
||||||
|
## @param kubectl.containerSecurityContext.readOnlyRootFilesystem Set container's Security Context read-only root filesystem
|
||||||
|
## @param kubectl.containerSecurityContext.seccompProfile.type Set kubectl containers' Security Context seccompProfile
|
||||||
|
## @param kubectl.containerSecurityContext.capabilities.drop Set kubectl containers' Security Context capabilities to drop
|
||||||
|
##
|
||||||
|
containerSecurityContext:
|
||||||
|
enabled: true
|
||||||
|
seLinuxOptions: {}
|
||||||
|
runAsUser: 1001
|
||||||
|
runAsGroup: 1001
|
||||||
|
runAsNonRoot: true
|
||||||
|
allowPrivilegeEscalation: false
|
||||||
|
readOnlyRootFilesystem: true
|
||||||
|
seccompProfile:
|
||||||
|
type: RuntimeDefault
|
||||||
|
capabilities:
|
||||||
|
drop: ["ALL"]
|
||||||
## Bitnami Kubectl resource requests and limits
|
## Bitnami Kubectl resource requests and limits
|
||||||
## ref: https://kubernetes.io/docs/concepts/configuration/manage-compute-resources-container/
|
## ref: https://kubernetes.io/docs/concepts/configuration/manage-compute-resources-container/
|
||||||
## @param kubectl.resources.limits The resources limits for the kubectl containers
|
## @param kubectl.resources.limits The resources limits for the kubectl containers
|
||||||
@@ -2096,7 +2126,7 @@ sysctl:
|
|||||||
## @param sysctl.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if sysctl.resources is set (sysctl.resources is recommended for production).
|
## @param sysctl.resourcesPreset Set container resources according to one common preset (allowed values: none, nano, small, medium, large, xlarge, 2xlarge). This is ignored if sysctl.resources is set (sysctl.resources is recommended for production).
|
||||||
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
## More information: https://github.com/bitnami/charts/blob/main/bitnami/common/templates/_resources.tpl#L15
|
||||||
##
|
##
|
||||||
resourcesPreset: "none"
|
resourcesPreset: "nano"
|
||||||
## @param sysctl.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
## @param sysctl.resources Set container requests and limits for different resources like CPU or memory (essential for production workloads)
|
||||||
## Example:
|
## Example:
|
||||||
## resources:
|
## resources:
|
||||||
|
|||||||
@@ -8,7 +8,7 @@ apiVersion: {{ include "common.capabilities.deployment.apiVersion" . }}
|
|||||||
kind: Deployment
|
kind: Deployment
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ template "kubeapps.apprepository.fullname" . }}
|
name: {{ template "kubeapps.apprepository.fullname" . }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.apprepository.image "chart" .Chart ) ) }}
|
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.apprepository.image "chart" .Chart ) ) }}
|
||||||
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
|
|||||||
@@ -0,0 +1,59 @@
|
|||||||
|
{{- /*
|
||||||
|
Copyright VMware, Inc.
|
||||||
|
SPDX-License-Identifier: APACHE-2.0
|
||||||
|
*/}}
|
||||||
|
|
||||||
|
{{- if and .Values.packaging.helm.enabled .Values.apprepository.networkPolicy.enabled }}
|
||||||
|
kind: NetworkPolicy
|
||||||
|
apiVersion: {{ include "common.capabilities.networkPolicy.apiVersion" . }}
|
||||||
|
metadata:
|
||||||
|
name: {{ include "kubeapps.apprepository.fullname" . }}
|
||||||
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
|
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.apprepository.image "chart" .Chart ) ) }}
|
||||||
|
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
||||||
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
|
app.kubernetes.io/component: apprepository
|
||||||
|
{{- if .Values.commonAnnotations }}
|
||||||
|
annotations: {{- include "common.tplvalues.render" ( dict "value" .Values.commonAnnotations "context" $ ) | nindent 4 }}
|
||||||
|
{{- end }}
|
||||||
|
spec:
|
||||||
|
policyTypes:
|
||||||
|
- Ingress
|
||||||
|
- Egress
|
||||||
|
{{- $podLabels := include "common.tplvalues.merge" ( dict "values" ( list .Values.apprepository.podLabels .Values.commonLabels ) "context" . ) }}
|
||||||
|
podSelector:
|
||||||
|
matchLabels: {{- include "common.labels.matchLabels" ( dict "customLabels" $podLabels "context" $ ) | nindent 6 }}
|
||||||
|
app.kubernetes.io/component: apprepository
|
||||||
|
{{- if .Values.apprepository.networkPolicy.allowExternalEgress }}
|
||||||
|
egress:
|
||||||
|
- {}
|
||||||
|
{{- else }}
|
||||||
|
egress:
|
||||||
|
# Allow dns resolution
|
||||||
|
- ports:
|
||||||
|
- port: 53
|
||||||
|
protocol: UDP
|
||||||
|
- port: 53
|
||||||
|
protocol: TCP
|
||||||
|
{{- range $port := .Values.apprepository.networkPolicy.kubeAPIServerPorts }}
|
||||||
|
- port: {{ $port }}
|
||||||
|
{{- end }}
|
||||||
|
# Allow connection to PostgreSQL
|
||||||
|
- ports:
|
||||||
|
- port: {{ include "kubeapps.postgresql.port" . }}
|
||||||
|
{{- if .Values.postgresql.enabled }}
|
||||||
|
to:
|
||||||
|
- podSelector:
|
||||||
|
matchLabels:
|
||||||
|
app.kubernetes.io/name: postgresql
|
||||||
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
|
{{- end }}
|
||||||
|
{{- if .Values.apprepository.networkPolicy.extraEgress }}
|
||||||
|
{{- include "common.tplvalues.render" ( dict "value" .Values.apprepository.networkPolicy.extraEgress "context" $ ) | nindent 4 }}
|
||||||
|
{{- end }}
|
||||||
|
{{- end }}
|
||||||
|
ingress:
|
||||||
|
{{- if .Values.apprepository.networkPolicy.extraIngress }}
|
||||||
|
{{- include "common.tplvalues.render" ( dict "value" .Values.apprepository.networkPolicy.extraIngress "context" $ ) | nindent 4 }}
|
||||||
|
{{- end }}
|
||||||
|
{{- end }}
|
||||||
@@ -12,7 +12,7 @@ apiVersion: {{ include "common.capabilities.rbac.apiVersion" . }}
|
|||||||
kind: Role
|
kind: Role
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ template "kubeapps.apprepository.fullname" . }}
|
name: {{ template "kubeapps.apprepository.fullname" . }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
app.kubernetes.io/component: apprepository
|
app.kubernetes.io/component: apprepository
|
||||||
{{- if .Values.commonAnnotations }}
|
{{- if .Values.commonAnnotations }}
|
||||||
@@ -73,7 +73,7 @@ apiVersion: {{ include "common.capabilities.rbac.apiVersion" . }}
|
|||||||
kind: RoleBinding
|
kind: RoleBinding
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ template "kubeapps.apprepository.fullname" . }}
|
name: {{ template "kubeapps.apprepository.fullname" . }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
app.kubernetes.io/component: apprepository
|
app.kubernetes.io/component: apprepository
|
||||||
{{- if .Values.commonAnnotations }}
|
{{- if .Values.commonAnnotations }}
|
||||||
@@ -112,7 +112,7 @@ apiVersion: {{ include "common.capabilities.rbac.apiVersion" . }}
|
|||||||
kind: Role
|
kind: Role
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ printf "%s-repositories-read" .Release.Name }}
|
name: {{ printf "%s-repositories-read" .Release.Name }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
app.kubernetes.io/component: apprepository
|
app.kubernetes.io/component: apprepository
|
||||||
{{- if .Values.commonAnnotations }}
|
{{- if .Values.commonAnnotations }}
|
||||||
@@ -132,7 +132,7 @@ apiVersion: {{ include "common.capabilities.rbac.apiVersion" . }}
|
|||||||
kind: Role
|
kind: Role
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ printf "%s-repositories-write" .Release.Name }}
|
name: {{ printf "%s-repositories-write" .Release.Name }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
app.kubernetes.io/component: apprepository
|
app.kubernetes.io/component: apprepository
|
||||||
{{- if .Values.commonAnnotations }}
|
{{- if .Values.commonAnnotations }}
|
||||||
|
|||||||
@@ -8,7 +8,7 @@ apiVersion: v1
|
|||||||
kind: ServiceAccount
|
kind: ServiceAccount
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ template "kubeapps.apprepository.serviceAccountName" . }}
|
name: {{ template "kubeapps.apprepository.serviceAccountName" . }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.apprepository.image "chart" .Chart ) ) }}
|
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.apprepository.image "chart" .Chart ) ) }}
|
||||||
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
|
|||||||
@@ -8,7 +8,7 @@ apiVersion: v1
|
|||||||
kind: ConfigMap
|
kind: ConfigMap
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ template "kubeapps.dashboard-config.fullname" . }}
|
name: {{ template "kubeapps.dashboard-config.fullname" . }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.dashboard.image "chart" .Chart ) ) }}
|
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.dashboard.image "chart" .Chart ) ) }}
|
||||||
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
|
|||||||
@@ -3,12 +3,12 @@ Copyright VMware, Inc.
|
|||||||
SPDX-License-Identifier: APACHE-2.0
|
SPDX-License-Identifier: APACHE-2.0
|
||||||
*/}}
|
*/}}
|
||||||
|
|
||||||
{{- if .Values.dashboard.enabled -}}
|
{{- if .Values.dashboard.enabled }}
|
||||||
apiVersion: {{ include "common.capabilities.deployment.apiVersion" . }}
|
apiVersion: {{ include "common.capabilities.deployment.apiVersion" . }}
|
||||||
kind: Deployment
|
kind: Deployment
|
||||||
metadata:
|
metadata:
|
||||||
name: {{ template "kubeapps.dashboard.fullname" . }}
|
name: {{ template "kubeapps.dashboard.fullname" . }}
|
||||||
namespace: {{ .Release.Namespace | quote }}
|
namespace: {{ include "common.names.namespace" . | quote }}
|
||||||
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.dashboard.image "chart" .Chart ) ) }}
|
{{- $versionLabel := dict "app.kubernetes.io/version" ( include "common.images.version" ( dict "imageRoot" .Values.dashboard.image "chart" .Chart ) ) }}
|
||||||
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
{{- $labels := include "common.tplvalues.merge" ( dict "values" ( list .Values.commonLabels $versionLabel ) "context" . ) }}
|
||||||
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
labels: {{- include "common.labels.standard" ( dict "customLabels" $labels "context" $ ) | nindent 4 }}
|
||||||
|
|||||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user