-
-
Notifications
You must be signed in to change notification settings - Fork 17
Expand file tree
/
Copy pathhelmfile.yaml.gotmpl
More file actions
134 lines (130 loc) · 3.99 KB
/
Copy pathhelmfile.yaml.gotmpl
File metadata and controls
134 lines (130 loc) · 3.99 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
environments:
default:
values:
- certManager:
installed: {{ env "CERT_MANAGER_INSTALL" | default true }}
- databases:
mariadb:
installed: {{ env "MARIADB_INSTALL" | default false }}
nodePort: 30306
rootPassword: {{ env "MYSQL_PASSWORD" | default "qwertyu9"}}
imageTag: {{ env "MARIADB_VERSION" | default 12 }}
ssl:
enabled: false
skipVerify: false
postgres:
installed: {{ env "POSTGRES_INSTALL" | default false }}
username: {{ env "POSTGRES_USER" | default "db-operator" }}
password: {{ env "POSTGRES_PASSWORD" | default "qwertyu9" }}
nodePort: 30432
imageTag: {{ env "POSTGRES_VERSION" | default 18 }}
ssl:
enabled: false
skipVerify: false
---
repositories:
- name: jetstack
url: quay.io/jetstack/charts
oci: true
- name: cloudpirates
url: registry-1.docker.io/cloudpirates
oci: true
releases:
- name: cert-manager
chart: jetstack/cert-manager
namespace: cert-manager
installed: {{ .Values.certManager.installed }}
version: v1.21.2
createNamespace: true
values:
- crds:
enabled: true
- name: cluster-issuer
chart: ./test/charts/self-signed-cluster-issuer
namespace: cert-manager
installed: {{ .Values.certManager.installed }}
needs:
- cert-manager/cert-manager
- name: mariadb-instance
namespace: databases
chart: cloudpirates/mariadb
installed: {{ .Values.databases.mariadb.installed }}
{{- if .Values.certManager.installed }}
needs:
- cert-manager/cert-manager
{{- end }}
version: 0.16.15
values:
- image:
tag: {{ .Values.databases.mariadb.imageTag | quote }}
- auth:
rootPassword: {{ .Values.databases.mariadb.rootPassword }}
- service:
type: NodePort
nodePort: {{ .Values.databases.mariadb.nodePort | quote }}
strategicMergePatches:
- apiVersion: apps/v1
kind: StatefulSet
metadata:
name: mariadb-instance
namespace: databases
spec:
persistentVolumeClaimRetentionPolicy:
whenDeleted: Delete
whenScaled: Retain
- name: postgres-instance
namespace: databases
chart: cloudpirates/postgres
version: 0.20.6
{{- if .Values.certManager.installed }}
needs:
- cert-manager/cert-manager
{{- end }}
installed: {{ .Values.databases.postgres.installed }}
values:
- image:
tag: {{ .Values.databases.postgres.imageTag | quote }}
- auth:
username: {{ .Values.databases.postgres.username }}
password: {{ .Values.databases.postgres.password }}
- service:
type: NodePort
nodePort: {{ .Values.databases.postgres.nodePort }}
- persistentVolumeClaimRetentionPolicy:
enabled: true
whenDeleted: Delete
{{- if .Values.databases.postgres.ssl.enabled }}
- extraObjects:
- |-
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: postgres-secure
spec:
issuerRef:
group: cert-manager.io
kind: ClusterIssuer
name: self-signed-cluster-issuer
secretName: postgres-cert
dnsNames:
- localhost
- postgres-instance.databases.svc.cluster.local
- postgres-instance.databases.svc
- extraVolumes:
- name: certs
secret:
secretName: postgres-cert
defaultMode: 384
extraVolumeMounts:
- mountPath: /pg/certs
name: certs
- args:
- postgres
- --config_file=/etc/postgresql/postgresql.conf
- -c
- ssl=on
- -c
- ssl_cert_file=/pg/certs/tls.crt
- -c
- ssl_key_file=/pg/certs/tls.key
{{- end }}