added argocd config
This commit is contained in:
parent
a2119dee6e
commit
85ad668497
2 changed files with 26 additions and 2 deletions
1
stages/delivery/.envs/.argocd-oidc-secret.template
Normal file
1
stages/delivery/.envs/.argocd-oidc-secret.template
Normal file
|
@ -0,0 +1 @@
|
||||||
|
{{ pw "46289080-39de-4e5e-bae5-6be41b08e25b" }}
|
|
@ -1,9 +1,32 @@
|
||||||
global:
|
global:
|
||||||
domain: argo.kropcloud.net
|
domain: argo.kropcloud.net
|
||||||
|
|
||||||
|
secret:
|
||||||
|
extra:
|
||||||
|
dex.kropcloud-idp.clientSecret: {{ readFile ../.envs}}
|
||||||
|
|
||||||
configs:
|
configs:
|
||||||
params:
|
params:
|
||||||
server.insecure: true
|
server.insecure: true
|
||||||
|
cm:
|
||||||
|
dex.config: |
|
||||||
|
connectors:
|
||||||
|
- id: authentik
|
||||||
|
type: oidc
|
||||||
|
name: KropCloud IDP
|
||||||
|
config:
|
||||||
|
issuer: https://idp.kropcloud.net/application/o/argocd/
|
||||||
|
clientID: R6KnCiwgsevzTkWhB9dopV80sHxL8kS4QjVlMmqI
|
||||||
|
clientSecret: $oidc.kropcloud-idp.clientSecret
|
||||||
|
insecureEnableGroups: true
|
||||||
|
scopes:
|
||||||
|
- openid
|
||||||
|
- profile
|
||||||
|
- email
|
||||||
|
- groups
|
||||||
|
rbac:
|
||||||
|
policy.csv: |
|
||||||
|
g, ArgoCD Admins, role:admin
|
||||||
|
|
||||||
redis-ha:
|
redis-ha:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
@ -18,9 +41,9 @@ server:
|
||||||
ingressClassName: nginx
|
ingressClassName: nginx
|
||||||
annotations:
|
annotations:
|
||||||
nginx.ingress.kubernetes.io/force-ssl-redirect: "true"
|
nginx.ingress.kubernetes.io/force-ssl-redirect: "true"
|
||||||
nginx.ingress.kubernetes.io/backend-protocol: "HTTP"
|
nginx.ingress.kubernetes.io/ssl-passthrough: "true"
|
||||||
cert-manager.io/cluster-issuer: cloudflare-issuer
|
cert-manager.io/cluster-issuer: cloudflare-issuer
|
||||||
extraTls:
|
tls:
|
||||||
- hosts:
|
- hosts:
|
||||||
- argo.kropcloud.net
|
- argo.kropcloud.net
|
||||||
secretName: argocd-tls
|
secretName: argocd-tls
|
||||||
|
|
Loading…
Reference in a new issue