Skip to content

Commit f5a13cf

Browse files
author
Andreas Mautsch
committed
secrets
1 parent 8a1add0 commit f5a13cf

File tree

7 files changed

+3
-88
lines changed

7 files changed

+3
-88
lines changed

terraform/data/secrets.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ resource "random_password" "oidc_session_secret" {
2020

2121
variable "namespaces" {
2222
type = list(string)
23-
default = ["data", "core", "event", "invoice"]
23+
default = ["data", "core", "event", "invoice", "example"]
2424
}
2525

2626
resource "kubernetes_secret" "postgresql_secret" {

terraform/tenant-prov/core.tf

Lines changed: 0 additions & 17 deletions
Original file line numberDiff line numberDiff line change
@@ -14,23 +14,6 @@ resource "helm_release" "core-provisioning" {
1414
name = "ingress.hosts"
1515
value = var.hostname
1616
}
17-
18-
19-
# secrets
20-
set {
21-
name = "messageBroker.password"
22-
value = "supersecret"
23-
}
24-
25-
set_sensitive {
26-
name = "database.password"
27-
value = data.kubernetes_secret.postgresql_secret.data["password"]
28-
}
29-
30-
set_sensitive {
31-
name = "s3.password"
32-
value = data.kubernetes_secret.s3_secret.data["password"]
33-
}
3417

3518
}
3619

terraform/tenant-prov/person-service.tf

Lines changed: 0 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -20,23 +20,11 @@ resource "helm_release" "person-service-provisioning" {
2020
value = local.oidc_enabled
2121
}
2222

23-
24-
set_sensitive {
25-
name = "oidc.session.secret"
26-
value = random_password.oidc_session_secret.result
27-
}
28-
29-
set_sensitive {
30-
name = "database.password"
31-
value = data.kubernetes_secret.postgresql_secret.data["password"]
32-
}
33-
3423
set {
3524
name = "postgresql.host"
3625
value = "postgresql.data"
3726
}
3827

39-
4028
}
4129

4230

terraform/tenant-prov/secrets.tf

Lines changed: 0 additions & 18 deletions
This file was deleted.

xargocd/tenant-prov/core.tf

Lines changed: 1 addition & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -33,18 +33,7 @@ resource "kubernetes_manifest" "core-provisioning" {
3333
value = local.oidc_enabled
3434
},
3535

36-
{
37-
name = "oidc.session.secret"
38-
value = random_password.oidc_session_secret.result
39-
},
40-
{
41-
name = "database.password"
42-
value = data.kubernetes_secret.postgresql_secret.data["password"]
43-
},
44-
{
45-
name = "s3.password"
46-
value = data.kubernetes_secret.s3_secret.data["password"]
47-
},
36+
4837
{
4938
name = "messageBroker.password"
5039
value = "supersecret"

xargocd/tenant-prov/person-service.tf

Lines changed: 1 addition & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -28,16 +28,7 @@ resource "kubernetes_manifest" "person-service-provisioning" {
2828
{
2929
name = "oidc.enabled"
3030
value = local.oidc_enabled
31-
},
32-
{
33-
name = "oidc.session.secret"
34-
value = random_password.oidc_session_secret.result
35-
},
36-
{
37-
name = "database.password"
38-
value = data.kubernetes_secret.postgresql_secret.data["password"]
39-
},
40-
31+
}
4132

4233
{
4334
name = "postgresql.host"

xargocd/tenant-prov/secrets.tf

Lines changed: 0 additions & 18 deletions
This file was deleted.

0 commit comments

Comments
 (0)