found a bug or got stuck at authentik
This commit is contained in:
parent
e633a233e5
commit
a70307111d
14 changed files with 19 additions and 81 deletions
|
@ -1 +0,0 @@
|
|||
password=
|
|
@ -1 +0,0 @@
|
|||
key=
|
4
.gitignore
vendored
4
.gitignore
vendored
|
@ -1,2 +1,2 @@
|
|||
.envs/.*/.*
|
||||
!.envs/.*/.*.template
|
||||
**/*/.envs/.*
|
||||
!**/*/.envs/.*.template
|
|
@ -10,11 +10,11 @@ resources:
|
|||
secretGenerator:
|
||||
- name: cert-manager-cloudflare
|
||||
envs:
|
||||
- ../../.envs/.cloudflare
|
||||
- .envs/.cloudflare
|
||||
namespace: cert-manager
|
||||
- name: pihole-admin
|
||||
envs:
|
||||
- ../../.envs/.pihole
|
||||
- .envs/.pihole
|
||||
namespace: pihole
|
||||
options:
|
||||
disableNameSuffixHash: true
|
||||
|
|
|
@ -1,33 +0,0 @@
|
|||
global:
|
||||
domain: argo.kropcloud.net
|
||||
|
||||
configs:
|
||||
params:
|
||||
server.insecure: true
|
||||
|
||||
redis-ha:
|
||||
enabled: true
|
||||
|
||||
controller:
|
||||
replicas: 1
|
||||
|
||||
server:
|
||||
replicas: 2
|
||||
ingress:
|
||||
enabled: true
|
||||
ingressClassName: nginx
|
||||
annotations:
|
||||
nginx.ingress.kubernetes.io/force-ssl-redirect: "true"
|
||||
nginx.ingress.kubernetes.io/backend-protocol: "HTTP"
|
||||
cert-manager.io/cluster-issuer: cloudflare-issuer
|
||||
extraTls:
|
||||
- hosts:
|
||||
- argo.kropcloud.net
|
||||
secretName: argocd-tls
|
||||
|
||||
|
||||
repoServer:
|
||||
replicas: 2
|
||||
|
||||
applicationSet:
|
||||
replicas: 2
|
|
@ -7,4 +7,4 @@ pihole:
|
|||
secretName: pihole-admin
|
||||
|
||||
ingressClassFilters:
|
||||
- ingress-nginx
|
||||
- nginx
|
||||
|
|
|
@ -11,3 +11,4 @@ releases:
|
|||
version: 7.7.21
|
||||
values:
|
||||
- ./values/argocd.values.yaml
|
||||
installed: false
|
1
stages/identity/.envs/.authentik-postgresql.template
Normal file
1
stages/identity/.envs/.authentik-postgresql.template
Normal file
|
@ -0,0 +1 @@
|
|||
{{ pw "bdf24fa1-8638-4cd1-a17a-df5f0bc8adee" }}
|
1
stages/identity/.envs/.authentik-secret-key.template
Normal file
1
stages/identity/.envs/.authentik-secret-key.template
Normal file
|
@ -0,0 +1 @@
|
|||
{{ pw "0e694c6c-9b5c-48c5-b884-6f7274c74832" }}
|
|
@ -4,8 +4,9 @@ repositories:
|
|||
---
|
||||
releases:
|
||||
- name: authentik
|
||||
namespace: identity--authentik
|
||||
namespace: authentik
|
||||
chart: authentik/authentik
|
||||
version: 2024.12.3
|
||||
values:
|
||||
- ./values/authentik.values.yaml
|
||||
- ./values/authentik.values.yaml.gotmpl
|
||||
installed: false
|
|
@ -1,23 +0,0 @@
|
|||
apiVersion: kustomize.config.k8s.io/v1beta1
|
||||
kind: Kustomization
|
||||
|
||||
|
||||
secretGenerator:
|
||||
- name: authentik-db-password
|
||||
namespace: identity--authentik
|
||||
envs:
|
||||
- ../../.envs/.identity/.authentik-postgresql
|
||||
options:
|
||||
disableNameSuffixHash: true
|
||||
- name: authentik-secret-key
|
||||
namespace: identity--authentik
|
||||
envs:
|
||||
- ../../.envs/.identity/.authentik-secret-key
|
||||
options:
|
||||
disableNameSuffixHash: true
|
||||
|
||||
|
||||
labels:
|
||||
- includeSelectors: true
|
||||
pairs:
|
||||
app.kubernetes.io/managed-by: Kustomize
|
|
@ -1,28 +1,20 @@
|
|||
postgresql:
|
||||
enabled: true
|
||||
auth:
|
||||
existingSecret: authentik-db-password
|
||||
secretKeys:
|
||||
userPasswordKey: password
|
||||
password: {{ readFile "../.envs/.authentik-postgresql" }}
|
||||
|
||||
global:
|
||||
env:
|
||||
- name: AUTHENTIK_POSTGRESQL__PASSWORD
|
||||
valueFrom:
|
||||
secretKeyRef:
|
||||
name: authentik-db-password
|
||||
key: password
|
||||
- name: AUTHENTIK_SECRET_KEY
|
||||
valueFrom:
|
||||
secretKeyRef:
|
||||
name: authentik-secret-key
|
||||
key: key
|
||||
authentik:
|
||||
secret_key: {{ readFile "../.envs/.authentik-secret-key" }}
|
||||
|
||||
postgresql:
|
||||
password: {{ readFile "../.envs/.authentik-postgresql" }}
|
||||
|
||||
redis:
|
||||
enabled: true
|
||||
|
||||
server:
|
||||
ingress:
|
||||
ingressClassName: nginx
|
||||
enabled: true
|
||||
hosts:
|
||||
- idp.kropcloud.net
|
Loading…
Reference in a new issue