Compare commits
10 Commits
51c5eed833
...
c5e1681c5e
| Author | SHA1 | Date | |
|---|---|---|---|
| c5e1681c5e | |||
| 3caef94aa2 | |||
| d1b5b53626 | |||
| 1fb05b911d | |||
| 35e46caf8e | |||
| 1488f5c3bd | |||
| 6d743b8812 | |||
| 23a5ebef45 | |||
| c904e0260a | |||
| b4adf6bfe1 |
25
argocd/templates/vault.yaml
Normal file
25
argocd/templates/vault.yaml
Normal file
@@ -0,0 +1,25 @@
|
||||
apiVersion: argoproj.io/v1alpha1
|
||||
kind: Application
|
||||
metadata:
|
||||
name: vault
|
||||
namespace: argocd
|
||||
spec:
|
||||
project: default
|
||||
source:
|
||||
repoURL: https://gitlab.com/developerdurp/homelab.git
|
||||
targetRevision: dmz
|
||||
path: vault
|
||||
destination:
|
||||
namespace: vault
|
||||
name: in-cluster
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
ignoreDifferences:
|
||||
- group: admissionregistration.k8s.io
|
||||
kind: MutatingWebhookConfiguration
|
||||
jqPathExpressions:
|
||||
- .webhooks[]?.clientConfig.caBundle
|
||||
@@ -9,10 +9,9 @@ spec:
|
||||
path: "secrets"
|
||||
version: "v2"
|
||||
auth:
|
||||
tokenSecretRef:
|
||||
name: vault-token
|
||||
key: token
|
||||
namespace: external-secrets
|
||||
kubernetes:
|
||||
mountPath: "kubernetes"
|
||||
role: "dmz-external-secrets"
|
||||
|
||||
---
|
||||
|
||||
|
||||
@@ -11,20 +11,20 @@
|
||||
# auth:
|
||||
# kubernetes:
|
||||
# mountPath: "kubernetes"
|
||||
# role: "external-secrets"
|
||||
---
|
||||
apiVersion: external-secrets.io/v1beta1
|
||||
kind: ClusterSecretStore
|
||||
metadata:
|
||||
name: vault
|
||||
spec:
|
||||
provider:
|
||||
vault:
|
||||
server: "https://vault.internal.prd.durp.info"
|
||||
path: "secrets"
|
||||
version: "v2"
|
||||
auth:
|
||||
tokenSecretRef:
|
||||
name: vault-token
|
||||
key: token
|
||||
namespace: external-secrets
|
||||
# role: "dmz-external-secrets"
|
||||
#---
|
||||
#apiVersion: external-secrets.io/v1beta1
|
||||
#kind: ClusterSecretStore
|
||||
#metadata:
|
||||
# name: vault
|
||||
#spec:
|
||||
# provider:
|
||||
# vault:
|
||||
# server: "https://vault.internal.prd.durp.info"
|
||||
# path: "secrets"
|
||||
# version: "v2"
|
||||
# auth:
|
||||
# tokenSecretRef:
|
||||
# name: vault-token
|
||||
# key: token
|
||||
# namespace: external-secrets
|
||||
|
||||
@@ -32,9 +32,3 @@ vault:
|
||||
repository: "registry.internal.durp.info/hashicorp/vault"
|
||||
tag: "1.15.2"
|
||||
|
||||
server:
|
||||
enabled: false
|
||||
|
||||
ui:
|
||||
enabled: false
|
||||
|
||||
|
||||
Reference in New Issue
Block a user