found a bug or got stuck at authentik
This commit is contained in:
parent
e633a233e5
commit
a70307111d
14 changed files with 19 additions and 81 deletions
|
@ -1 +0,0 @@
|
||||||
password=
|
|
|
@ -1 +0,0 @@
|
||||||
key=
|
|
4
.gitignore
vendored
4
.gitignore
vendored
|
@ -1,2 +1,2 @@
|
||||||
.envs/.*/.*
|
**/*/.envs/.*
|
||||||
!.envs/.*/.*.template
|
!**/*/.envs/.*.template
|
|
@ -10,11 +10,11 @@ resources:
|
||||||
secretGenerator:
|
secretGenerator:
|
||||||
- name: cert-manager-cloudflare
|
- name: cert-manager-cloudflare
|
||||||
envs:
|
envs:
|
||||||
- ../../.envs/.cloudflare
|
- .envs/.cloudflare
|
||||||
namespace: cert-manager
|
namespace: cert-manager
|
||||||
- name: pihole-admin
|
- name: pihole-admin
|
||||||
envs:
|
envs:
|
||||||
- ../../.envs/.pihole
|
- .envs/.pihole
|
||||||
namespace: pihole
|
namespace: pihole
|
||||||
options:
|
options:
|
||||||
disableNameSuffixHash: true
|
disableNameSuffixHash: true
|
||||||
|
|
|
@ -1,33 +0,0 @@
|
||||||
global:
|
|
||||||
domain: argo.kropcloud.net
|
|
||||||
|
|
||||||
configs:
|
|
||||||
params:
|
|
||||||
server.insecure: true
|
|
||||||
|
|
||||||
redis-ha:
|
|
||||||
enabled: true
|
|
||||||
|
|
||||||
controller:
|
|
||||||
replicas: 1
|
|
||||||
|
|
||||||
server:
|
|
||||||
replicas: 2
|
|
||||||
ingress:
|
|
||||||
enabled: true
|
|
||||||
ingressClassName: nginx
|
|
||||||
annotations:
|
|
||||||
nginx.ingress.kubernetes.io/force-ssl-redirect: "true"
|
|
||||||
nginx.ingress.kubernetes.io/backend-protocol: "HTTP"
|
|
||||||
cert-manager.io/cluster-issuer: cloudflare-issuer
|
|
||||||
extraTls:
|
|
||||||
- hosts:
|
|
||||||
- argo.kropcloud.net
|
|
||||||
secretName: argocd-tls
|
|
||||||
|
|
||||||
|
|
||||||
repoServer:
|
|
||||||
replicas: 2
|
|
||||||
|
|
||||||
applicationSet:
|
|
||||||
replicas: 2
|
|
|
@ -7,4 +7,4 @@ pihole:
|
||||||
secretName: pihole-admin
|
secretName: pihole-admin
|
||||||
|
|
||||||
ingressClassFilters:
|
ingressClassFilters:
|
||||||
- ingress-nginx
|
- nginx
|
||||||
|
|
|
@ -10,4 +10,5 @@ releases:
|
||||||
chart: argocd/argo-cd
|
chart: argocd/argo-cd
|
||||||
version: 7.7.21
|
version: 7.7.21
|
||||||
values:
|
values:
|
||||||
- ./values/argocd.values.yaml
|
- ./values/argocd.values.yaml
|
||||||
|
installed: false
|
1
stages/identity/.envs/.authentik-postgresql.template
Normal file
1
stages/identity/.envs/.authentik-postgresql.template
Normal file
|
@ -0,0 +1 @@
|
||||||
|
{{ pw "bdf24fa1-8638-4cd1-a17a-df5f0bc8adee" }}
|
1
stages/identity/.envs/.authentik-secret-key.template
Normal file
1
stages/identity/.envs/.authentik-secret-key.template
Normal file
|
@ -0,0 +1 @@
|
||||||
|
{{ pw "0e694c6c-9b5c-48c5-b884-6f7274c74832" }}
|
|
@ -4,8 +4,9 @@ repositories:
|
||||||
---
|
---
|
||||||
releases:
|
releases:
|
||||||
- name: authentik
|
- name: authentik
|
||||||
namespace: identity--authentik
|
namespace: authentik
|
||||||
chart: authentik/authentik
|
chart: authentik/authentik
|
||||||
version: 2024.12.3
|
version: 2024.12.3
|
||||||
values:
|
values:
|
||||||
- ./values/authentik.values.yaml
|
- ./values/authentik.values.yaml.gotmpl
|
||||||
|
installed: false
|
|
@ -1,23 +0,0 @@
|
||||||
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
||||||
kind: Kustomization
|
|
||||||
|
|
||||||
|
|
||||||
secretGenerator:
|
|
||||||
- name: authentik-db-password
|
|
||||||
namespace: identity--authentik
|
|
||||||
envs:
|
|
||||||
- ../../.envs/.identity/.authentik-postgresql
|
|
||||||
options:
|
|
||||||
disableNameSuffixHash: true
|
|
||||||
- name: authentik-secret-key
|
|
||||||
namespace: identity--authentik
|
|
||||||
envs:
|
|
||||||
- ../../.envs/.identity/.authentik-secret-key
|
|
||||||
options:
|
|
||||||
disableNameSuffixHash: true
|
|
||||||
|
|
||||||
|
|
||||||
labels:
|
|
||||||
- includeSelectors: true
|
|
||||||
pairs:
|
|
||||||
app.kubernetes.io/managed-by: Kustomize
|
|
|
@ -1,28 +1,20 @@
|
||||||
postgresql:
|
postgresql:
|
||||||
enabled: true
|
enabled: true
|
||||||
auth:
|
auth:
|
||||||
existingSecret: authentik-db-password
|
password: {{ readFile "../.envs/.authentik-postgresql" }}
|
||||||
secretKeys:
|
|
||||||
userPasswordKey: password
|
|
||||||
|
|
||||||
global:
|
authentik:
|
||||||
env:
|
secret_key: {{ readFile "../.envs/.authentik-secret-key" }}
|
||||||
- name: AUTHENTIK_POSTGRESQL__PASSWORD
|
|
||||||
valueFrom:
|
postgresql:
|
||||||
secretKeyRef:
|
password: {{ readFile "../.envs/.authentik-postgresql" }}
|
||||||
name: authentik-db-password
|
|
||||||
key: password
|
|
||||||
- name: AUTHENTIK_SECRET_KEY
|
|
||||||
valueFrom:
|
|
||||||
secretKeyRef:
|
|
||||||
name: authentik-secret-key
|
|
||||||
key: key
|
|
||||||
|
|
||||||
redis:
|
redis:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
|
||||||
server:
|
server:
|
||||||
ingress:
|
ingress:
|
||||||
|
ingressClassName: nginx
|
||||||
enabled: true
|
enabled: true
|
||||||
hosts:
|
hosts:
|
||||||
- idp.kropcloud.net
|
- idp.kropcloud.net
|
Loading…
Reference in a new issue