Packer.Images/ansible/vars/workloadcluster.yml

48 lines
1.7 KiB
YAML
Raw Normal View History

downstream:
helm_repositories:
- name: bitnami
url: https://charts.bitnami.com/bitnami
- name: longhorn
url: https://charts.longhorn.io
- name: sealed-secrets
url: https://bitnami-labs.github.io/sealed-secrets
helm_charts:
longhorn:
version: 1.4.1
chart: longhorn/longhorn
namespace: longhorn-system
parse_logic: cat values.yaml | yq eval '.. | select(has("repository")) | .repository + ":" + .tag'
chart_values: !unsafe |
defaultSettings:
2023-04-19 06:43:34 +00:00
createDefaultDiskLabeledNodes: true
defaultDataPath: /mnt/blockstorage
2023-08-23 11:46:55 +00:00
pinniped:
2023-10-21 13:37:34 +00:00
version: 1.3.10 # (= Pinniped v0.27.0)
2023-08-23 12:04:39 +00:00
chart: bitnami/pinniped
namespace: pinniped-concierge
parse_logic: helm template . | yq --no-doc eval '.. | .image? | select(.)' | sort -u | awk '!/ /'
chart_values: !unsafe |
supervisor:
enabled: false
extra_manifests:
2023-08-23 12:04:39 +00:00
- src: jwtauthenticator.j2
_template:
name: metacluster-sso
spec: !unsafe |2
2023-08-23 12:04:39 +00:00
issuer: https://auth.{{ vapp['metacluster.fqdn'] }}/sso
audience: "{{ vapp['workloadcluster.name'] | lower }}"
2023-08-23 12:04:39 +00:00
tls:
2023-08-24 08:04:38 +00:00
certificateAuthorityData: "{{ (stepca_cm_certs.resources[0].data['intermediate_ca.crt'] ~ _newline ~ stepca_cm_certs.resources[0].data['root_ca.crt']) | b64encode }}"
2023-03-28 14:41:48 +00:00
sealed-secrets:
version: 2.8.1 # (= Sealed Secrets v0.20.2)
chart: sealed-secrets/sealed-secrets
namespace: sealed-secrets
parse_logic: helm template . | yq --no-doc eval '.. | .image? | select(.)' | sort -u | awk '!/ /'
# chart_values: !unsafe |
# # Empty