Compare commits

...

10 Commits

4 changed files with 64 additions and 34 deletions

View File

@ -1,31 +1,31 @@
apiVersion: argoproj.io/v1alpha1 # apiVersion: argoproj.io/v1alpha1
kind: ApplicationSet # kind: ApplicationSet
metadata: # metadata:
name: cluster-secretstores # name: cluster-secretstores
namespace: argocd # namespace: argocd
spec: # spec:
generators: # generators:
- git: # - git:
repoURL: https://git.dvirlabs.com/dvirlabs/secrets-gitops.git # repoURL: https://git.dvirlabs.com/dvirlabs/secrets-gitops.git
revision: master # revision: master
files: # files:
- path: cluster-secretstores/*.yaml # - path: cluster-secretstores/*.yaml
template: # template:
metadata: # metadata:
name: cluster-secretstore-{{path.basename}} # name: cluster-secretstore-{{path.filename}} # <-- FIXED
spec: # spec:
project: dev-tools # project: dev-tools
source: # source:
repoURL: https://git.dvirlabs.com/dvirlabs/secrets-gitops.git # repoURL: https://git.dvirlabs.com/dvirlabs/secrets-gitops.git
targetRevision: master # targetRevision: master
path: cluster-secretstores # path: cluster-secretstores
directory: # directory:
recurse: false # recurse: false
include: '{{path.basename}}.yaml' # include: '{{path.filename}}'
destination: # destination:
server: https://kubernetes.default.svc # server: https://kubernetes.default.svc
namespace: monitoring # namespace: dev-tools
syncPolicy: # syncPolicy:
automated: # automated:
prune: true # prune: true
selfHeal: true # selfHeal: true

View File

@ -0,0 +1,15 @@
apiVersion: external-secrets.io/v1beta1
kind: ClusterSecretStore
metadata:
name: vault-general-secrets
spec:
provider:
vault:
server: "http://vault.dev-tools.svc.cluster.local:8200"
path: "general-secrets"
version: "v2"
auth:
tokenSecretRef:
name: vault-eso-token
key: token
namespace: dev-tools

View File

@ -0,0 +1,15 @@
apiVersion: external-secrets.io/v1beta1
kind: ClusterSecretStore
metadata:
name: vault-internal-users
spec:
provider:
vault:
server: "http://vault.dev-tools.svc.cluster.local:8200"
path: "internal-users"
version: "v2"
auth:
tokenSecretRef:
name: vault-eso-token
key: token
namespace: dev-tools

View File

@ -6,10 +6,10 @@ spec:
provider: provider:
vault: vault:
server: "http://vault.dev-tools.svc.cluster.local:8200" server: "http://vault.dev-tools.svc.cluster.local:8200"
path: "oidc-cliets" path: "oidc-clients"
version: "v2" version: "v2"
auth: auth:
tokenSecretRef: tokenSecretRef:
name: vault-init name: vault-eso-token
key: root-token key: token
namespace: dev-tools namespace: dev-tools