seaweedfs filer.s3

This commit is contained in:
titver968
2025-09-03 14:50:33 +02:00
parent bc3e840a92
commit 2c4cc2f992

View File

@@ -1,107 +1,43 @@
#apiVersion: argoproj.io/v1alpha1 apiVersion: argoproj.io/v1alpha1
#kind: Application kind: Application
#metadata: metadata:
# name: seaweedfs name: seaweedfs
# finalizers: finalizers:
# - resources-finalizer.argocd.argoproj.io - resources-finalizer.argocd.argoproj.io
#spec: spec:
# project: default project: default
# source: source:
# repoURL: 'https://seaweedfs.github.io/seaweedfs/helm' repoURL: 'https://seaweedfs.github.io/seaweedfs/helm'
# chart: seaweedfs chart: seaweedfs
# targetRevision: 4.*.* targetRevision: 4.*.*
# helm: helm:
# valueFiles: valueFiles:
# - values.yaml - values.yaml
# values: | values: |
# # Global Konfiguration # Global Konfiguration
# global: global:
# imagePullPolicy: IfNotPresent imagePullPolicy: IfNotPresent
# enableSecurity: true enableSecurity: true
# jwtSecretName: seaweedfs-jwt jwtSecretName: seaweedfs-jwt
# monitoring: monitoring:
# enabled: true enabled: true
#
# master: master:
# enabled: true enabled: true
# replicas: 1 replicas: 1
# data: data:
# type: "persistentVolumeClaim" type: "persistentVolumeClaim"
# size: "25Gi" size: "25Gi"
# storageClass: "" storageClass: ""
# logs: logs:
# type: "persistentVolumeClaim" type: "persistentVolumeClaim"
# size: "5Gi" size: "5Gi"
# storageClass: "" storageClass: ""
#
# ingress: ingress:
# enabled: false enabled: false
# # className: "traefik"
# # host: "seaweed.innovation-hub-niedersachsen.de"
# # annotations:
# # kubernetes.io/ingress.class: "traefik"
# # traefik.ingress.kubernetes.io/router.entrypoints: "websecure"
# # traefik.ingress.kubernetes.io/router.tls: "true"
# # cert-manager.io/cluster-issuer: "lets-encrypt"
# # traefik.ingress.kubernetes.io/headers.customRequestHeaders: |
# # X-Forwarded-Proto = https
# # traefik.ingress.kubernetes.io/headers.customResponseHeaders: |
# # Access-Control-Allow-Origin: "*"
# # Access-Control-Allow-Methods: "GET, OPTIONS, PUT, POST, DELETE"
# # Access-Control-Allow-Headers: "DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range"
# # Access-Control-Expose-Headers: "Content-Length,Content-Range"
# # Referrer-Policy: no-referrer-when-downgrade
# # hosts:
# # - host: "seaweed.innovation-hub-niedersachsen.de"
# # tls:
# # - secretName: "seaweed.innovation-hub-niedersachsen.de-tls"
# # hosts:
# # - "seaweed.innovation-hub-niedersachsen.de"
#
# volume:
# enabled: true
# replicas: 1
# dataDirs:
# - name: data
# type: "persistentVolumeClaim"
# storageClass: ""
# size: "100Gi"
# idx:
# type: "persistentVolumeClaim"
# size: "10Gi"
# storageClass: ""
# max: 100
#
# filer:
# enabled: true
# data:
# type: "persistentVolumeClaim"
# size: "25Gi"
# storageClass: ""
# logs:
# type: "persistentVolumeClaim"
# size: "5Gi"
# storageClass: ""
#
# s3:
# enabled: true
# replicas: 1
# bindAddress: 0.0.0.0
# port: 8333
# # add additional https port
# httpsPort: 8433
# metricsPort: 9327
# loggingOverrideLevel: null
# # allow empty folders
# allowEmptyFolder: true
# enableAuth: "true"
# existingConfigSecret: "admin-s3-secret"
#
# ingress:
# enabled: true
# className: "traefik" # className: "traefik"
# host: "sws3.innovation-hub-niedersachsen.de" # host: "seaweed.innovation-hub-niedersachsen.de"
# # additional ingress annotations for the s3 endpoint
# annotations: # annotations:
# kubernetes.io/ingress.class: "traefik" # kubernetes.io/ingress.class: "traefik"
# traefik.ingress.kubernetes.io/router.entrypoints: "websecure" # traefik.ingress.kubernetes.io/router.entrypoints: "websecure"
@@ -116,29 +52,98 @@
# Access-Control-Expose-Headers: "Content-Length,Content-Range" # Access-Control-Expose-Headers: "Content-Length,Content-Range"
# Referrer-Policy: no-referrer-when-downgrade # Referrer-Policy: no-referrer-when-downgrade
# hosts: # hosts:
# - host: "sws3.innovation-hub-niedersachsen.de" # - host: "seaweed.innovation-hub-niedersachsen.de"
# tls: # tls:
# - secretName: "sws3.innovation-hub-niedersachsen.de-tls" # - secretName: "seaweed.innovation-hub-niedersachsen.de-tls"
# hosts: # hosts:
# - "sws3.innovation-hub-niedersachsen.de" # - "seaweed.innovation-hub-niedersachsen.de"
# # Resource management
# resources: volume:
# limits: enabled: true
# cpu: "2" replicas: 1
# memory: "2Gi" dataDirs:
# requests: - name: data
# cpu: "500m" type: "persistentVolumeClaim"
# memory: "1Gi" storageClass: ""
# size: "100Gi"
# destination: idx:
# server: 'https://kubernetes.default.svc' type: "persistentVolumeClaim"
# namespace: seaweedfs size: "10Gi"
# syncPolicy: storageClass: ""
# managedNamespaceMetadata: max: 100
# labels:
# pod-security.kubernetes.io/enforce: "privileged" filer:
# automated: enabled: true
# selfHeal: true redirectOnRead: false
# prune: true enablePVC: true
# syncOptions: storage: 30Gi
# - CreateNamespace=true storageClass: ""
data:
type: "hostPath"
size: "25Gi"
storageClass: ""
hostPathPrefix: /storage
logs:
type: "hostPath"
size: "5Gi"
storageClass: ""
hostPathPrefix: /storage
ingress:
enabled: true
className: "traefik"
host: "sws3.innovation-hub-niedersachsen.de"
# additional ingress annotations for the s3 endpoint
annotations:
kubernetes.io/ingress.class: "traefik"
traefik.ingress.kubernetes.io/router.entrypoints: "websecure"
traefik.ingress.kubernetes.io/router.tls: "true"
cert-manager.io/cluster-issuer: "lets-encrypt"
traefik.ingress.kubernetes.io/headers.customRequestHeaders: |
X-Forwarded-Proto = https
traefik.ingress.kubernetes.io/headers.customResponseHeaders: |
Access-Control-Allow-Origin: "*"
Access-Control-Allow-Methods: "GET, OPTIONS, PUT, POST, DELETE"
Access-Control-Allow-Headers: "DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range"
Access-Control-Expose-Headers: "Content-Length,Content-Range"
Referrer-Policy: no-referrer-when-downgrade
hosts:
- host: "sws3.innovation-hub-niedersachsen.de"
tls:
- secretName: "sws3.innovation-hub-niedersachsen.de-tls"
hosts:
- "sws3.innovation-hub-niedersachsen.de"
s3:
enabled: true
replicas: 1
bindAddress: 0.0.0.0
port: 8333
# add additional https port
httpsPort: 8433
metricsPort: 9327
loggingOverrideLevel: null
# allow empty folders
allowEmptyFolder: true
enableAuth: "true"
existingConfigSecret: "admin-s3-secret"
# Resource management
resources:
limits:
cpu: "2"
memory: "2Gi"
requests:
cpu: "500m"
memory: "1Gi"
destination:
server: 'https://kubernetes.default.svc'
namespace: seaweedfs
syncPolicy:
managedNamespaceMetadata:
labels:
pod-security.kubernetes.io/enforce: "privileged"
automated:
selfHeal: true
prune: true
syncOptions:
- CreateNamespace=true