Compare commits
10 Commits
7054c2506d
...
4386eca8c5
| Author | SHA1 | Date | |
|---|---|---|---|
| 4386eca8c5 | |||
| 76658cb38e | |||
| a7bb9f70b3 | |||
| f7541dce54 | |||
| e8fdf7a0b7 | |||
| 2abd06a152 | |||
| cf318dd886 | |||
| b29ae2f613 | |||
| 81a8851ec1 | |||
| 4520178421 |
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: argocd
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -16,5 +18,8 @@ spec:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: argocd
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: minio-bitnami
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -15,3 +17,8 @@ spec:
|
||||
destination:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: infra
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: caretta
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -16,5 +18,8 @@ spec:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: caretta
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: cert-manager
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -16,5 +18,8 @@ spec:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: cert-manager
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: cloudflared
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
destination:
|
||||
@ -14,4 +16,10 @@ spec:
|
||||
path: charts/cloudflare-tunnel
|
||||
helm:
|
||||
valueFiles:
|
||||
- ../../manifests/cloudflared/values.yaml
|
||||
- ../../manifests/cloudflared/values.yaml
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: headlamp
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -15,3 +17,8 @@ spec:
|
||||
destination:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: infra
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: keycloak
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -14,4 +16,8 @@ spec:
|
||||
- ../../manifests/keycloak/values.yaml
|
||||
destination:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: infra
|
||||
namespace: infra
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: local-path-provisioner
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
destination:
|
||||
@ -16,5 +18,7 @@ spec:
|
||||
valueFiles:
|
||||
- ../../manifests/local-path-provisioner/values.yaml
|
||||
syncPolicy:
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: metallb-base
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -23,3 +25,9 @@ spec:
|
||||
kind: CustomResourceDefinition
|
||||
jsonPointers:
|
||||
- /spec/conversion/webhook/clientConfig/caBundle
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: metallb-config
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -12,3 +14,9 @@ spec:
|
||||
destination:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: metallb-system
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: nfs-subdir
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -15,3 +17,8 @@ spec:
|
||||
destination:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: infra
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: nvidia-device-plugin
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -13,5 +15,6 @@ spec:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: kube-system
|
||||
syncPolicy:
|
||||
syncOptions:
|
||||
- CreateNamespace=false
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: radar
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -15,3 +17,8 @@ spec:
|
||||
destination:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: infra
|
||||
syncPolicy:
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
|
||||
@ -3,6 +3,8 @@ kind: Application
|
||||
metadata:
|
||||
name: raw-resources
|
||||
namespace: argocd
|
||||
labels:
|
||||
env: infra
|
||||
spec:
|
||||
project: infra
|
||||
source:
|
||||
@ -15,8 +17,6 @@ spec:
|
||||
server: https://kubernetes.default.svc
|
||||
namespace: infra
|
||||
syncPolicy:
|
||||
syncOptions:
|
||||
- CreateNamespace=true
|
||||
automated:
|
||||
prune: true
|
||||
selfHeal: true
|
||||
|
||||
@ -7,13 +7,14 @@ image:
|
||||
tag: "v0.40.1"
|
||||
|
||||
config:
|
||||
baseURL: ""
|
||||
inCluster: true
|
||||
oidc:
|
||||
clientID: headlamp
|
||||
clientSecret: lPpiDSlF74VGLhbxCfW7cFpRfcUGjxv7
|
||||
clientSecret: ""
|
||||
issuerURL: https://keycloak.dvirlabs.com/realms/lab
|
||||
scopes: openid,profile,email,groups
|
||||
scopes: profile,email
|
||||
callbackURL: https://headlamp.dvirlabs.com/oidc-callback
|
||||
usePKCE: true
|
||||
|
||||
serviceAccount:
|
||||
create: true
|
||||
|
||||
18
manifests/raw/keycloak/headlamp/headlamp-admin.yaml
Normal file
18
manifests/raw/keycloak/headlamp/headlamp-admin.yaml
Normal file
@ -0,0 +1,18 @@
|
||||
apiVersion: v1
|
||||
kind: ServiceAccount
|
||||
metadata:
|
||||
name: headlamp-sa
|
||||
namespace: kube-system
|
||||
---
|
||||
apiVersion: rbac.authorization.k8s.io/v1
|
||||
kind: ClusterRoleBinding
|
||||
metadata:
|
||||
name: headlamp-sa-binding
|
||||
subjects:
|
||||
- kind: ServiceAccount
|
||||
name: headlamp-sa
|
||||
namespace: kube-system
|
||||
roleRef:
|
||||
kind: ClusterRole
|
||||
name: cluster-admin
|
||||
apiGroup: rbac.authorization.k8s.io
|
||||
Loading…
x
Reference in New Issue
Block a user