headlamp for dev and prod
This commit is contained in:
@@ -13,8 +13,13 @@ spec:
|
|||||||
helm:
|
helm:
|
||||||
values: |
|
values: |
|
||||||
config:
|
config:
|
||||||
inCluster: true
|
inCluster: false # ❗ deaktiviert die in-Cluster-Verbindung
|
||||||
|
extraArgs: []
|
||||||
|
|
||||||
|
env:
|
||||||
|
- name: KUBECONFIG
|
||||||
|
value: /config/kubeconfig
|
||||||
|
|
||||||
serviceAccount:
|
serviceAccount:
|
||||||
create: false
|
create: false
|
||||||
name: headlamp-admin
|
name: headlamp-admin
|
||||||
@@ -22,19 +27,23 @@ spec:
|
|||||||
clusterRoleBinding:
|
clusterRoleBinding:
|
||||||
create: false
|
create: false
|
||||||
|
|
||||||
# Deaktiviere das automatische Token-Mounting
|
|
||||||
automountServiceAccountToken: false
|
automountServiceAccountToken: false
|
||||||
|
|
||||||
# Mounte stattdessen unser langlebiges Token
|
|
||||||
volumes:
|
volumes:
|
||||||
- name: sa-token
|
- name: sa-token
|
||||||
secret:
|
secret:
|
||||||
secretName: headlamp-admin-token
|
secretName: headlamp-admin-token
|
||||||
|
- name: kubeconfig
|
||||||
|
secret:
|
||||||
|
secretName: headlamp-kubeconfig
|
||||||
|
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- name: sa-token
|
- name: sa-token
|
||||||
mountPath: /var/run/secrets/kubernetes.io/serviceaccount
|
mountPath: /var/run/secrets/kubernetes.io/serviceaccount
|
||||||
readOnly: true
|
readOnly: true
|
||||||
|
- name: kubeconfig
|
||||||
|
mountPath: /config
|
||||||
|
readOnly: true
|
||||||
|
|
||||||
ingress:
|
ingress:
|
||||||
enabled: true
|
enabled: true
|
||||||
@@ -46,11 +55,9 @@ spec:
|
|||||||
paths:
|
paths:
|
||||||
- path: /
|
- path: /
|
||||||
type: ImplementationSpecific
|
type: ImplementationSpecific
|
||||||
|
|
||||||
destination:
|
destination:
|
||||||
server: 'https://kubernetes.default.svc'
|
server: 'https://kubernetes.default.svc'
|
||||||
namespace: kube-system
|
namespace: kube-system
|
||||||
|
|
||||||
syncPolicy:
|
syncPolicy:
|
||||||
automated:
|
automated:
|
||||||
selfHeal: true
|
selfHeal: true
|
||||||
|
|||||||
Reference in New Issue
Block a user