diff --git a/kong/templates/secrets.yaml b/kong/templates/secrets.yaml index 72e7d2a..37e9246 100644 --- a/kong/templates/secrets.yaml +++ b/kong/templates/secrets.yaml @@ -52,7 +52,7 @@ spec: property: kong_admin_password - secretKey: password remoteRef: - key: secrets/kong/config + key: secrets/kong/postgres property: password - secretKey: pg_host remoteRef: @@ -78,4 +78,31 @@ spec: auth: kubernetes: mountPath: "kubernetes" - role: "external-secrets" \ No newline at end of file + role: "external-secrets" + +--- + +apiVersion: external-secrets.io/v1beta1 +kind: ExternalSecret +metadata: + name: kong-postgresql +type: Opaque +data: + secretStoreRef: + name: vault-kong + kind: SecretStore + target: + name: kong-postgresql + data: + - secretKey: postgres-username + remoteRef: + key: secrets/kong/postgres + property: username + - secretKey: postgres-password + remoteRef: + key: secrets/kong/postgres + property: password + - secretKey: postgres-username + remoteRef: + key: secrets/kong/database + property: database \ No newline at end of file