seaweedfs auf seaweedfs artifact
This commit is contained in:
@@ -7,79 +7,203 @@ metadata:
|
|||||||
spec:
|
spec:
|
||||||
project: default
|
project: default
|
||||||
source:
|
source:
|
||||||
repoURL: 'registry-1.docker.io/bitnamicharts'
|
repoURL: 'https://seaweedfs.github.io/seaweedfs/helm'
|
||||||
path: 'seaweedfs'
|
|
||||||
targetRevision: 5.*.*
|
|
||||||
chart: seaweedfs
|
chart: seaweedfs
|
||||||
|
targetRevision: 4.*.*
|
||||||
helm:
|
helm:
|
||||||
parameters:
|
values: |
|
||||||
- name: master.ingress.enabled
|
# Global Konfiguration
|
||||||
value: 'true'
|
global:
|
||||||
- name: master.ingress.hostname
|
enableSecurity: true
|
||||||
value: 'seaweed.innovation-hub-niedersachsen.de'
|
monitoring:
|
||||||
- name: master.ingress.tls
|
enabled: true
|
||||||
value: 'true'
|
imagePullPolicy: IfNotPresent
|
||||||
- name: master.ingress.annotations.kubernetes\.io\/ingress\.class
|
|
||||||
value: traefik
|
# Master Konfiguration
|
||||||
- name: master.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.tls
|
master:
|
||||||
value: 'true'
|
replicas: 3
|
||||||
forceString: true
|
data:
|
||||||
- name: master.ingress.annotations.cert-manager\.io\/cluster-issuer
|
type: "persistentVolumeClaim"
|
||||||
value: 'lets-encrypt'
|
size: "25Gi"
|
||||||
- name: master.ingress.annotations.ingress\.secrets
|
storageClass: ""
|
||||||
value: 'seaweed.innovation-hub-niedersachsen.de-tls'
|
logs:
|
||||||
- name: master.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoints
|
type: "persistentVolumeClaim"
|
||||||
value: websecure
|
size: "5Gi"
|
||||||
- name: master.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.middlewares
|
|
||||||
value: seaweedfs-seaweedfs-cors@kubernetescrd
|
# Master Service
|
||||||
- name: security.enabled
|
service:
|
||||||
value: 'true'
|
type: ClusterIP
|
||||||
- name: security.corsAllowedOrigins
|
ports:
|
||||||
value: '*'
|
http: 9333
|
||||||
- name: s3.enabled
|
grpc: 19333
|
||||||
value: 'true'
|
|
||||||
- name: s3.logLevel
|
# Master Ingress
|
||||||
value: '4'
|
ingress:
|
||||||
- name: s3.auth.enabled
|
enabled: true
|
||||||
value: 'true'
|
className: "traefik"
|
||||||
- name: s3.auth.adminAccessKeyId
|
annotations:
|
||||||
value: 'wjpKrmaqXra99rX3D61H'
|
traefik.ingress.kubernetes.io/router.tls: "true"
|
||||||
- name: s3.auth.adminSecretAccessKey
|
cert-manager.io/cluster-issuer: "lets-encrypt"
|
||||||
value: 'fTPi0u0FR6Lv9Y9IKydWv6WM0EA5XrsK008HCt9u'
|
traefik.ingress.kubernetes.io/router.entrypoints: "websecure"
|
||||||
- name: s3.ingress.enabled
|
traefik.ingress.kubernetes.io/router.middlewares: "seaweedfs-cors@kubernetescrd"
|
||||||
value: 'true'
|
hosts:
|
||||||
- name: s3.ingress.hostname
|
- host: "seaweed.innovation-hub-niedersachsen.de"
|
||||||
value: 'sws3.innovation-hub-niedersachsen.de'
|
paths:
|
||||||
- name: s3.ingress.tls
|
- path: "/"
|
||||||
value: 'true'
|
pathType: "Prefix"
|
||||||
- name: s3.ingress.annotations.kubernetes\.io\/ingress\.class
|
tls:
|
||||||
value: traefik
|
- secretName: "seaweed.innovation-hub-niedersachsen.de-tls"
|
||||||
- name: s3.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.tls
|
hosts:
|
||||||
value: 'true'
|
- "seaweed.innovation-hub-niedersachsen.de"
|
||||||
forceString: true
|
|
||||||
- name: s3.ingress.annotations.cert-manager\.io\/cluster-issuer
|
# Volume Server Konfiguration
|
||||||
value: 'lets-encrypt'
|
volume:
|
||||||
- name: s3.ingress.annotations.ingress\.secrets
|
replicas: 3
|
||||||
value: 'sws3.innovation-hub-niedersachsen.de-tls'
|
data:
|
||||||
- name: s3.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoints
|
type: "persistentVolumeClaim"
|
||||||
value: websecure
|
size: "100Gi"
|
||||||
- name: s3.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.middlewares
|
storageClass: ""
|
||||||
value: seaweedfs-seaweedfs-cors@kubernetescrd,seaweedfs-stripprefix@kubernetescrd
|
idx:
|
||||||
- name: mariadb.auth.rootPassword
|
type: "persistentVolumeClaim"
|
||||||
value: 'InnoHubSEAWEEDFS_2024!'
|
size: "10Gi"
|
||||||
- name: mariadb.auth.username
|
storageClass: ""
|
||||||
value: 'bn_seaweedfs'
|
|
||||||
- name: mariadb.auth.password
|
service:
|
||||||
value: 'bn_seaweedfsUSER'
|
type: ClusterIP
|
||||||
|
ports:
|
||||||
|
http: 8080
|
||||||
|
grpc: 18080
|
||||||
|
|
||||||
|
# Filer Konfiguration
|
||||||
|
filer:
|
||||||
|
replicas: 2
|
||||||
|
data:
|
||||||
|
type: "persistentVolumeClaim"
|
||||||
|
size: "25Gi"
|
||||||
|
storageClass: ""
|
||||||
|
logs:
|
||||||
|
type: "persistentVolumeClaim"
|
||||||
|
size: "5Gi"
|
||||||
|
|
||||||
|
# Filer Service
|
||||||
|
service:
|
||||||
|
type: ClusterIP
|
||||||
|
ports:
|
||||||
|
http: 8888
|
||||||
|
grpc: 18888
|
||||||
|
|
||||||
|
# Optional: Filer Ingress (für Web UI)
|
||||||
|
ingress:
|
||||||
|
enabled: false
|
||||||
|
|
||||||
|
# S3 Gateway Konfiguration
|
||||||
|
s3:
|
||||||
|
enabled: true
|
||||||
|
replicas: 2
|
||||||
|
|
||||||
|
# S3 Authentifizierung
|
||||||
|
auth:
|
||||||
|
enabled: true
|
||||||
|
adminUser: "wjpKrmaqXra99rX3D61H"
|
||||||
|
adminPassword: "fTPi0u0FR6Lv9Y9IKydWv6WM0EA5XrsK008HCt9u"
|
||||||
|
|
||||||
|
# S3 Service
|
||||||
|
service:
|
||||||
|
type: ClusterIP
|
||||||
|
ports:
|
||||||
|
http: 8333
|
||||||
|
|
||||||
|
# S3 Konfiguration
|
||||||
|
config:
|
||||||
|
logLevel: 4
|
||||||
|
|
||||||
|
# S3 Ingress
|
||||||
|
ingress:
|
||||||
|
enabled: true
|
||||||
|
className: "traefik"
|
||||||
|
annotations:
|
||||||
|
traefik.ingress.kubernetes.io/router.tls: "true"
|
||||||
|
cert-manager.io/cluster-issuer: "lets-encrypt"
|
||||||
|
traefik.ingress.kubernetes.io/router.entrypoints: "websecure"
|
||||||
|
traefik.ingress.kubernetes.io/router.middlewares: "seaweedfs-cors@kubernetescrd,seaweedfs-stripprefix@kubernetescrd"
|
||||||
|
hosts:
|
||||||
|
- host: "sws3.innovation-hub-niedersachsen.de"
|
||||||
|
paths:
|
||||||
|
- path: "/"
|
||||||
|
pathType: "Prefix"
|
||||||
|
tls:
|
||||||
|
- secretName: "sws3.innovation-hub-niedersachsen.de-tls"
|
||||||
|
hosts:
|
||||||
|
- "sws3.innovation-hub-niedersachsen.de"
|
||||||
|
|
||||||
|
# WebDAV (optional - standardmäßig deaktiviert)
|
||||||
|
webdav:
|
||||||
|
enabled: false
|
||||||
|
|
||||||
|
# Mount (optional - für FUSE Mount)
|
||||||
|
mount:
|
||||||
|
enabled: false
|
||||||
|
|
||||||
|
# CORS Konfiguration
|
||||||
|
cors:
|
||||||
|
enabled: true
|
||||||
|
allowedOrigins:
|
||||||
|
- "*"
|
||||||
|
allowedMethods:
|
||||||
|
- "GET"
|
||||||
|
- "POST"
|
||||||
|
- "PUT"
|
||||||
|
- "DELETE"
|
||||||
|
- "HEAD"
|
||||||
|
- "OPTIONS"
|
||||||
|
allowedHeaders:
|
||||||
|
- "*"
|
||||||
|
|
||||||
|
# Resource Limits (optional)
|
||||||
|
resources:
|
||||||
|
master:
|
||||||
|
limits:
|
||||||
|
cpu: 500m
|
||||||
|
memory: 512Mi
|
||||||
|
requests:
|
||||||
|
cpu: 100m
|
||||||
|
memory: 128Mi
|
||||||
|
volume:
|
||||||
|
limits:
|
||||||
|
cpu: 1000m
|
||||||
|
memory: 1Gi
|
||||||
|
requests:
|
||||||
|
cpu: 200m
|
||||||
|
memory: 256Mi
|
||||||
|
filer:
|
||||||
|
limits:
|
||||||
|
cpu: 500m
|
||||||
|
memory: 512Mi
|
||||||
|
requests:
|
||||||
|
cpu: 100m
|
||||||
|
memory: 128Mi
|
||||||
|
s3:
|
||||||
|
limits:
|
||||||
|
cpu: 500m
|
||||||
|
memory: 512Mi
|
||||||
|
requests:
|
||||||
|
cpu: 100m
|
||||||
|
memory: 128Mi
|
||||||
|
|
||||||
|
# Node Affinity (optional)
|
||||||
|
nodeSelector: {}
|
||||||
|
tolerations: []
|
||||||
|
affinity: {}
|
||||||
|
|
||||||
destination:
|
destination:
|
||||||
server: 'https://kubernetes.default.svc'
|
server: 'https://kubernetes.default.svc'
|
||||||
namespace: seaweedfs
|
namespace: seaweedfs
|
||||||
syncPolicy:
|
syncPolicy:
|
||||||
managedNamespaceMetadata:
|
managedNamespaceMetadata:
|
||||||
labels:
|
labels:
|
||||||
pod-security.kubernetes.io/enforce: "privileged"
|
pod-security.kubernetes.io/enforce: "privileged"
|
||||||
automated:
|
automated:
|
||||||
selfHeal: true
|
selfHeal: true
|
||||||
prune: true
|
prune: true
|
||||||
syncOptions:
|
syncOptions:
|
||||||
- CreateNamespace=true
|
- CreateNamespace=true
|
||||||
Reference in New Issue
Block a user