new config Version

This commit is contained in:
titver968
2025-10-06 17:51:16 +02:00
parent 7dab86e7b1
commit 905f418f06

View File

@@ -3,7 +3,7 @@ kind: Application
metadata: metadata:
name: openproject name: openproject
finalizers: finalizers:
- resources-finalizer.argocd.argoproj.io - resources-finalizer.argocd.argoproj.io
spec: spec:
project: default project: default
source: source:
@@ -13,10 +13,11 @@ spec:
helm: helm:
values: | values: |
develop: false develop: false
ingress: ingress:
enabled: true enabled: true
ingressClassName: traefik ingressClassName: traefik
annotations: annotations:
kubernetes.io/ingress.class: traefik kubernetes.io/ingress.class: traefik
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.tls: "true" traefik.ingress.kubernetes.io/router.tls: "true"
@@ -27,6 +28,7 @@ spec:
tls: tls:
enabled: true enabled: true
secretName: openproject-tls secretName: openproject-tls
openproject: openproject:
https: true https: true
hsts: true hsts: true
@@ -37,41 +39,51 @@ spec:
password_reset: true password_reset: true
name: "OpenProject Admin" name: "OpenProject Admin"
mail: "inno-netz@innovation-hub-niedersachsen.de" mail: "inno-netz@innovation-hub-niedersachsen.de"
openproject.useTmpVolumes: "false"
memcached: memcached:
global: global:
readOnlyRootFilesystem: false readOnlyRootFilesystem: false
containerSecurityContext: containerSecurityContext:
readOnlyRootFilesystem: false readOnlyRootFilesystem: false
persistence: persistence:
enabled: false enabled: enabled
accessModes: accessModes:
- "ReadWriteOnce" - "ReadWriteOnce"
s3: s3:
enabled: true enabled: disabled
auth: auth:
accessKeyId: "K7mNpQ2vRxL9wYtH3Zc8" accessKeyId: "aKey"
secretAccessKey: "jX9fK2mP5nQ8rT1vW4yZ7bN0cM3hL6gF9dS2aE5k" secretAccessKey: "sKey"
host: "https://sws3.innovation-hub-niedersachsen.de" host: "https://sws3.innovation-hub-niedersachsen.de"
port: 443 port: 443
bucket: "openproject"
# Add region if required by your S3 provider
# region: "us-east-1"
postgresql: postgresql:
bundled: true bundled: true
auth: auth:
existingSecret: "postgresql-secrets" existingSecret: "postgresql-secrets"
global: global:
readOnlyRootFilesystem: false readOnlyRootFilesystem: false
options: primary:
pool: persistence:
maxConnections: 30 enabled: true
size: 8Gi
destination: destination:
server: 'https://kubernetes.default.svc' server: 'https://kubernetes.default.svc'
namespace: openproject namespace: openproject
syncPolicy: syncPolicy:
managedNamespaceMetadata: managedNamespaceMetadata:
labels: labels:
pod-security.kubernetes.io/enforce: "privileged" pod-security.kubernetes.io/enforce: "privileged"
automated: automated:
selfHeal: true selfHeal: true
prune: true prune: true
syncOptions: syncOptions:
- CreateNamespace=true - CreateNamespace=true