headlamp for dev and prod
This commit is contained in:
@@ -13,8 +13,13 @@ spec:
|
||||
helm:
|
||||
values: |
|
||||
config:
|
||||
inCluster: true
|
||||
inCluster: false # ❗ deaktiviert die in-Cluster-Verbindung
|
||||
extraArgs: []
|
||||
|
||||
env:
|
||||
- name: KUBECONFIG
|
||||
value: /config/kubeconfig
|
||||
|
||||
serviceAccount:
|
||||
create: false
|
||||
name: headlamp-admin
|
||||
@@ -22,19 +27,23 @@ spec:
|
||||
clusterRoleBinding:
|
||||
create: false
|
||||
|
||||
# Deaktiviere das automatische Token-Mounting
|
||||
automountServiceAccountToken: false
|
||||
|
||||
# Mounte stattdessen unser langlebiges Token
|
||||
|
||||
volumes:
|
||||
- name: sa-token
|
||||
secret:
|
||||
secretName: headlamp-admin-token
|
||||
|
||||
- name: kubeconfig
|
||||
secret:
|
||||
secretName: headlamp-kubeconfig
|
||||
|
||||
volumeMounts:
|
||||
- name: sa-token
|
||||
mountPath: /var/run/secrets/kubernetes.io/serviceaccount
|
||||
readOnly: true
|
||||
- name: kubeconfig
|
||||
mountPath: /config
|
||||
readOnly: true
|
||||
|
||||
ingress:
|
||||
enabled: true
|
||||
@@ -46,11 +55,9 @@ spec:
|
||||
paths:
|
||||
- path: /
|
||||
type: ImplementationSpecific
|
||||
|
||||
destination:
|
||||
server: 'https://kubernetes.default.svc'
|
||||
namespace: kube-system
|
||||
|
||||
syncPolicy:
|
||||
automated:
|
||||
selfHeal: true
|
||||
|
||||
Reference in New Issue
Block a user