Skip to content

Commit 7708e95

Browse files
committed
chore: add external-secrets back
1 parent fcfc0f2 commit 7708e95

File tree

6 files changed

+46
-15
lines changed

6 files changed

+46
-15
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
---
2+
# TODO
3+
# yaml-language-server: $schema=https://raw.githubusercontent.com/datreeio/CRDs-catalog/refs/heads/main/cilium.io/ciliumnetworkpolicy_v2.json

kubernetes/archive/external-secrets/external-secrets.yaml renamed to kubernetes/external-secrets/app/release.yaml

Lines changed: 14 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -1,14 +1,4 @@
11
---
2-
# yaml-language-server: $schema=https://raw.githubusercontent.com/datreeio/CRDs-catalog/refs/heads/main/source.toolkit.fluxcd.io/helmrepository_v1.json
3-
apiVersion: source.toolkit.fluxcd.io/v1beta2
4-
kind: HelmRepository
5-
metadata:
6-
namespace: external-secrets
7-
name: external-secrets
8-
spec:
9-
url: https://charts.external-secrets.io
10-
interval: 24h
11-
---
122
# yaml-language-server: $schema=https://raw.githubusercontent.com/datreeio/CRDs-catalog/refs/heads/main/helm.toolkit.fluxcd.io/helmrelease_v2.json
133
apiVersion: helm.toolkit.fluxcd.io/v2
144
kind: HelmRelease
@@ -21,26 +11,37 @@ spec:
2111
sourceRef:
2212
kind: HelmRepository
2313
name: external-secrets
24-
# disable renovate: registryUrl=https://charts.external-secrets.io
2514
chart: external-secrets
26-
version: 0.9.4
15+
version: 0.20.1
2716
install:
2817
crds: CreateReplace
2918
upgrade:
3019
crds: CreateReplace
3120
interval: 1h
3221
maxHistory: 1
22+
timeout: 1m0s
3323
values:
3424
installCRDs: true
25+
crds:
26+
createClusterExternalSecret: false
27+
createClusterSecretStore: false
28+
createClusterGenerator: false
29+
createClusterPushSecret: false
30+
createPushSecret: true
3531

3632
# -- controller
3733
replicaCount: 1
3834
processClusterExternalSecret: false
3935
processClusterStore: false
36+
processClusterPushSecret: false
37+
processClusterGenerator: false
38+
processPushSecret: true
4039
securityContext: &securityContext
4140
runAsNonRoot: true
42-
readOnlyRootFilesystem: true
41+
runAsUser: 1000
42+
runAsGroup: 1000
4343
allowPrivilegeEscalation: false
44+
readOnlyRootFilesystem: true
4445
capabilities:
4546
drop: ["ALL"]
4647
seccompProfile:
Lines changed: 10 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,10 @@
1+
---
2+
# yaml-language-server: $schema=https://raw.githubusercontent.com/datreeio/CRDs-catalog/refs/heads/main/source.toolkit.fluxcd.io/helmrepository_v1.json
3+
apiVersion: source.toolkit.fluxcd.io/v1
4+
kind: HelmRepository
5+
metadata:
6+
namespace: external-secrets
7+
name: external-secrets
8+
spec:
9+
url: https://charts.external-secrets.io
10+
interval: 24h

kubernetes/archive/external-secrets/kustomization.yaml renamed to kubernetes/external-secrets/kustomization.yaml

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,5 +3,7 @@
33
apiVersion: kustomize.config.k8s.io/v1beta1
44
kind: Kustomization
55
resources:
6-
- _namespace.yaml
7-
- external-secrets.yaml
6+
- base/ns.yaml
7+
- app/repo.yaml
8+
- app/release.yaml
9+
- app/netpol.yaml

kubernetes/flux-system/app/boostrap.yaml

Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -120,6 +120,21 @@ spec:
120120
prune: true
121121
---
122122
# yaml-language-server: $schema=https://raw.githubusercontent.com/datreeio/CRDs-catalog/refs/heads/main/kustomize.toolkit.fluxcd.io/kustomization_v1.json
123+
## external-secrets
124+
apiVersion: kustomize.toolkit.fluxcd.io/v1
125+
kind: Kustomization
126+
metadata:
127+
namespace: flux-system
128+
name: 1-external-secrets
129+
spec:
130+
sourceRef:
131+
kind: GitRepository
132+
name: homelab
133+
interval: 10m0s
134+
path: /kubernetes/external-secrets
135+
prune: true
136+
---
137+
# yaml-language-server: $schema=https://raw.githubusercontent.com/datreeio/CRDs-catalog/refs/heads/main/kustomize.toolkit.fluxcd.io/kustomization_v1.json
123138
## cloudflared
124139
apiVersion: kustomize.toolkit.fluxcd.io/v1
125140
kind: Kustomization

0 commit comments

Comments
 (0)