diff --git a/argocd/apps/openproject/values-openproject.yaml b/argocd/apps/openproject/values-openproject.yaml index 0a44960..2e9d27c 100644 --- a/argocd/apps/openproject/values-openproject.yaml +++ b/argocd/apps/openproject/values-openproject.yaml @@ -3,7 +3,7 @@ kind: Application metadata: name: openproject finalizers: - - resources-finalizer.argocd.argoproj.io + - resources-finalizer.argocd.argoproj.io spec: project: default source: @@ -13,10 +13,11 @@ spec: helm: values: | develop: false + ingress: enabled: true ingressClassName: traefik - annotations: + annotations: kubernetes.io/ingress.class: traefik traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.tls: "true" @@ -27,6 +28,7 @@ spec: tls: enabled: true secretName: openproject-tls + openproject: https: true hsts: true @@ -37,41 +39,51 @@ spec: password_reset: true name: "OpenProject Admin" mail: "inno-netz@innovation-hub-niedersachsen.de" - openproject.useTmpVolumes: "false" + memcached: global: readOnlyRootFilesystem: false + containerSecurityContext: - readOnlyRootFilesystem: false + readOnlyRootFilesystem: false + persistence: - enabled: false - accessModes: + enabled: enabled + accessModes: - "ReadWriteOnce" + s3: - enabled: true + enabled: disabled auth: - accessKeyId: "K7mNpQ2vRxL9wYtH3Zc8" - secretAccessKey: "jX9fK2mP5nQ8rT1vW4yZ7bN0cM3hL6gF9dS2aE5k" - host: "https://sws3.innovation-hub-niedersachsen.de" - port: 443 + accessKeyId: "aKey" + secretAccessKey: "sKey" + host: "https://sws3.innovation-hub-niedersachsen.de" + port: 443 + bucket: "openproject" + # Add region if required by your S3 provider + # region: "us-east-1" + postgresql: bundled: true auth: existingSecret: "postgresql-secrets" global: - readOnlyRootFilesystem: false - options: - pool: - maxConnections: 30 + readOnlyRootFilesystem: false + primary: + persistence: + enabled: true + size: 8Gi + destination: server: 'https://kubernetes.default.svc' namespace: openproject + syncPolicy: managedNamespaceMetadata: - labels: + labels: pod-security.kubernetes.io/enforce: "privileged" automated: selfHeal: true prune: true syncOptions: - - CreateNamespace=true + - CreateNamespace=true \ No newline at end of file