first commit
This commit is contained in:
commit
088e10a73d
3
.gitignore
vendored
Normal file
3
.gitignore
vendored
Normal file
@ -0,0 +1,3 @@
|
|||||||
|
*.tar.gz
|
||||||
|
*.tgz
|
||||||
|
*.lock
|
7
external-secrets/Chart.yaml
Normal file
7
external-secrets/Chart.yaml
Normal file
@ -0,0 +1,7 @@
|
|||||||
|
apiVersion: v2
|
||||||
|
name: external-secrets
|
||||||
|
version: 0.0.0
|
||||||
|
dependencies:
|
||||||
|
- name: external-secrets
|
||||||
|
version: 0.4.4
|
||||||
|
repository: https://charts.external-secrets.io
|
15
external-secrets/templates/clustersecretstore.yaml
Normal file
15
external-secrets/templates/clustersecretstore.yaml
Normal file
@ -0,0 +1,15 @@
|
|||||||
|
apiVersion: external-secrets.io/v1alpha1
|
||||||
|
kind: ClusterSecretStore
|
||||||
|
metadata:
|
||||||
|
name: vault
|
||||||
|
namespace: external-secrets
|
||||||
|
spec:
|
||||||
|
provider:
|
||||||
|
vault:
|
||||||
|
server: http://vault.vault.svc.cluster.local:8200
|
||||||
|
path: secret
|
||||||
|
version: "v2"
|
||||||
|
auth:
|
||||||
|
kubernetes:
|
||||||
|
mountPath: "kubernetes"
|
||||||
|
role: "vault-kubernetes"
|
4
external-secrets/templates/serviceAccount.yml
Normal file
4
external-secrets/templates/serviceAccount.yml
Normal file
@ -0,0 +1,4 @@
|
|||||||
|
apiVersion: v1
|
||||||
|
kind: ServiceAccount
|
||||||
|
metadata:
|
||||||
|
name: vault-app
|
1
external-secrets/values.yaml
Normal file
1
external-secrets/values.yaml
Normal file
@ -0,0 +1 @@
|
|||||||
|
installCRDs: true
|
1
k3s-monitoring
Submodule
1
k3s-monitoring
Submodule
@ -0,0 +1 @@
|
|||||||
|
Subproject commit c673ec8cb1898bd717837455a728282c8055641c
|
7
vault/Chart.yml
Normal file
7
vault/Chart.yml
Normal file
@ -0,0 +1,7 @@
|
|||||||
|
apiVersion: v2
|
||||||
|
name: vault
|
||||||
|
version: 0.0.0
|
||||||
|
dependencies:
|
||||||
|
- name: vault
|
||||||
|
version: 0.19.0
|
||||||
|
repository: https://helm.releases.hashicorp.com
|
8
vault/values.yml
Normal file
8
vault/values.yml
Normal file
@ -0,0 +1,8 @@
|
|||||||
|
vault:
|
||||||
|
injector:
|
||||||
|
enabled: false
|
||||||
|
server:
|
||||||
|
ingress:
|
||||||
|
enabled: true
|
||||||
|
hosts:
|
||||||
|
- host: &host vaultk3s.ducamps.win
|
7
wiki.js/Chart.yaml
Normal file
7
wiki.js/Chart.yaml
Normal file
@ -0,0 +1,7 @@
|
|||||||
|
apiVersion: v2
|
||||||
|
name: infotech
|
||||||
|
version: 0.0.0
|
||||||
|
dependencies:
|
||||||
|
- name: wiki
|
||||||
|
version: 2.2.13
|
||||||
|
repository: https://charts.js.wiki
|
166
wiki.js/values.yml
Normal file
166
wiki.js/values.yml
Normal file
@ -0,0 +1,166 @@
|
|||||||
|
# Default values for wiki.
|
||||||
|
# This is a YAML-formatted file.
|
||||||
|
# Declare variables to be passed into your templates.
|
||||||
|
|
||||||
|
replicaCount: 1
|
||||||
|
|
||||||
|
image:
|
||||||
|
repository: requarks/wiki
|
||||||
|
imagePullPolicy: IfNotPresent
|
||||||
|
|
||||||
|
imagePullSecrets: []
|
||||||
|
nameOverride: ""
|
||||||
|
fullnameOverride: ""
|
||||||
|
|
||||||
|
serviceAccount:
|
||||||
|
# Specifies whether a service account should be created
|
||||||
|
create: true
|
||||||
|
# Annotations to add to the service account
|
||||||
|
annotations: {}
|
||||||
|
# The name of the service account to use.
|
||||||
|
# If not set and create is true, a name is generated using the fullname template
|
||||||
|
name:
|
||||||
|
|
||||||
|
livenessProbe:
|
||||||
|
httpGet:
|
||||||
|
path: /healthz
|
||||||
|
port: http
|
||||||
|
|
||||||
|
readinessProbe:
|
||||||
|
httpGet:
|
||||||
|
path: /healthz
|
||||||
|
port: http
|
||||||
|
|
||||||
|
podSecurityContext:
|
||||||
|
{}
|
||||||
|
# fsGroup: 2000
|
||||||
|
|
||||||
|
securityContext:
|
||||||
|
{}
|
||||||
|
# capabilities:
|
||||||
|
# drop:
|
||||||
|
# - ALL
|
||||||
|
# readOnlyRootFilesystem: true
|
||||||
|
# runAsNonRoot: true
|
||||||
|
# runAsUser: 1000
|
||||||
|
|
||||||
|
service:
|
||||||
|
type: ClusterIP
|
||||||
|
port: 80
|
||||||
|
# Annotations applied for services such as externalDNS or
|
||||||
|
# service type LoadBalancer
|
||||||
|
# type: LoadBalancer
|
||||||
|
# httpsPort: 443
|
||||||
|
# annotations: {}
|
||||||
|
|
||||||
|
ingress:
|
||||||
|
enabled: true
|
||||||
|
annotations:
|
||||||
|
{}
|
||||||
|
# kubernetes.io/ingress.class: nginx
|
||||||
|
# kubernetes.io/tls-acme: "true"
|
||||||
|
hosts:
|
||||||
|
- host: infotech.kube.local
|
||||||
|
paths:
|
||||||
|
- path: "/"
|
||||||
|
pathType: Prefix
|
||||||
|
|
||||||
|
tls: []
|
||||||
|
# - secretName: chart-example-tls
|
||||||
|
# hosts:
|
||||||
|
# - chart-example.local
|
||||||
|
|
||||||
|
resources:
|
||||||
|
{}
|
||||||
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
|
# choice for the user. This also increases chances charts run on environments with little
|
||||||
|
# resources, such as Minikube. If you do want to specify resources, uncomment the following
|
||||||
|
# lines, adjust them as necessary, and remove the curly braces after 'resources:'.
|
||||||
|
# limits:
|
||||||
|
# cpu: 100m
|
||||||
|
# memory: 128Mi
|
||||||
|
# requests:
|
||||||
|
# cpu: 100m
|
||||||
|
# memory: 128Mi
|
||||||
|
|
||||||
|
nodeSelector: {}
|
||||||
|
|
||||||
|
tolerations: []
|
||||||
|
|
||||||
|
affinity: {}
|
||||||
|
|
||||||
|
volumeMounts: []
|
||||||
|
|
||||||
|
volumes: []
|
||||||
|
|
||||||
|
# This will allow us to install locales even without internet access using a initContainer & wikjs "sideloading"
|
||||||
|
sideload:
|
||||||
|
enabled: false
|
||||||
|
# Git-Repo containing all locales.json-files you need:
|
||||||
|
repoURL: https://github.com/Requarks/wiki-localization
|
||||||
|
|
||||||
|
## This can be helpfull if you have internet access over a http proxy:
|
||||||
|
env: []
|
||||||
|
# - name: HTTPS_PROXY
|
||||||
|
# value: http://my.proxy.com:3128
|
||||||
|
|
||||||
|
## Configuration values for the postgresql dependency.
|
||||||
|
## ref: https://github.com/kubernetes/charts/blob/master/stable/postgresql/README.md
|
||||||
|
##
|
||||||
|
postgresql:
|
||||||
|
## Use the PostgreSQL chart dependency.
|
||||||
|
## Set to false if bringing your own PostgreSQL, and set secret value postgresql-uri.
|
||||||
|
##
|
||||||
|
enabled: true
|
||||||
|
## ssl enforce SSL communication with PostgresSQL
|
||||||
|
## Default to false
|
||||||
|
##
|
||||||
|
# ssl: false
|
||||||
|
## ca Certificate of Authority
|
||||||
|
## Default to empty, point to location of CA
|
||||||
|
##
|
||||||
|
# ca: "path to ca"
|
||||||
|
## postgresqlHost override postgres database host
|
||||||
|
## Default to postgres
|
||||||
|
##
|
||||||
|
# postgresqlHost: postgres
|
||||||
|
## postgresqlPort port for postgres
|
||||||
|
## Default to 5432
|
||||||
|
##
|
||||||
|
# postgresqlPort: 5432
|
||||||
|
## PostgreSQL fullname Override
|
||||||
|
## Default to wiki-postgresql unless fullname override is set for Chart
|
||||||
|
##
|
||||||
|
fullnameOverride: ""
|
||||||
|
## PostgreSQL User to create.
|
||||||
|
##
|
||||||
|
postgresqlUser: postgres
|
||||||
|
## PostgreSQL Database to create.
|
||||||
|
##
|
||||||
|
postgresqlDatabase: wiki
|
||||||
|
## Persistent Volume Storage configuration.
|
||||||
|
## ref: https://kubernetes.io/docs/user-guide/persistent-volumes
|
||||||
|
##
|
||||||
|
|
||||||
|
replication:
|
||||||
|
## Enable PostgreSQL replication (primary/secondary)
|
||||||
|
##
|
||||||
|
enabled: false
|
||||||
|
persistence:
|
||||||
|
## Enable PostgreSQL persistence using Persistent Volume Claims.
|
||||||
|
##
|
||||||
|
enabled: true
|
||||||
|
## concourse data Persistent Volume Storage Class
|
||||||
|
## If defined, storageClassName: <storageClass>
|
||||||
|
## If set to "-", storageClassName: "", which disables dynamic provisioning
|
||||||
|
## If undefined (the default) or set to null, no storageClassName spec is
|
||||||
|
## set, choosing the default provisioner. (gp2 on AWS, standard on
|
||||||
|
## GKE, AWS & OpenStack)
|
||||||
|
##
|
||||||
|
# storageClass: "-"
|
||||||
|
## Persistent Volume Access Mode.
|
||||||
|
##
|
||||||
|
accessMode: ReadWriteOce
|
||||||
|
## Persistent Volume Storage Size.
|
||||||
|
##
|
||||||
|
size: 8Gi
|
Loading…
Reference in New Issue
Block a user