This commit is contained in:
2023-07-25 09:26:42 -05:00
parent f6ab77153a
commit 752efb3e8a
4 changed files with 22 additions and 56 deletions

View File

@@ -1,11 +1,11 @@
apiVersion: external-secrets.io/v1beta1 apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret kind: ExternalSecret
metadata: metadata:
name: vault-authentik name: authentik-secret
spec: spec:
secretStoreRef: secretStoreRef:
name: vault-authentik name: vault
kind: SecretStore kind: ClusterSecretStore
target: target:
name: db-pass name: db-pass
data: data:
@@ -26,20 +26,3 @@ spec:
key: secrets/authentik/database key: secrets/authentik/database
property: dbpass property: dbpass
---
apiVersion: external-secrets.io/v1beta1
kind: SecretStore
metadata:
name: vault-authentik
spec:
provider:
vault:
server: "http://vault.vault.svc.cluster.local:8200"
path: "secrets"
version: "v2"
auth:
kubernetes:
mountPath: "kubernetes"
role: "external-secrets"

View File

@@ -4,8 +4,8 @@ metadata:
name: bitwarden-secret name: bitwarden-secret
spec: spec:
secretStoreRef: secretStoreRef:
name: vault-bitwarden name: vault
kind: SecretStore kind: ClusterSecretStore
target: target:
name: bitwarden-secret name: bitwarden-secret
data: data:
@@ -14,20 +14,3 @@ spec:
key: secrets/bitwarden/admin key: secrets/bitwarden/admin
property: ADMIN_TOKEN property: ADMIN_TOKEN
---
apiVersion: external-secrets.io/v1beta1
kind: SecretStore
metadata:
name: vault-bitwarden
spec:
provider:
vault:
server: "http://vault.vault.svc.cluster.local:8200"
path: "secrets"
version: "v2"
auth:
kubernetes:
mountPath: "kubernetes"
role: "external-secrets"

View File

@@ -13,4 +13,21 @@ spec:
creationTimestamp: null creationTimestamp: null
name: cloudflare-api-token-secret name: cloudflare-api-token-secret
namespace: cert-manager namespace: cert-manager
---
apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret
metadata:
name: cloudflare-api-token-secret
spec:
secretStoreRef:
name: vault
kind: ClusterSecretStore
target:
name: cloudflare-api-token-secret
data:
- secretKey: cloudflare-api-token-secret
remoteRef:
key: secrets/cloudflare
property: cloudflare-api-token-secret

View File

@@ -45,20 +45,3 @@ spec:
remoteRef: remoteRef:
key: secrets/durpapi/postgres key: secrets/durpapi/postgres
property: db_name property: db_name
#---
#
#apiVersion: external-secrets.io/v1beta1
#kind: SecretStore
#metadata:
# name: vault-durpapi
#spec:
# provider:
# vault:
# server: "http://vault.vault.svc.cluster.local:8200"
# path: "secrets"
# version: "v2"
# auth:
# kubernetes:
# mountPath: "kubernetes"
# role: "external-secrets"