Files
k3s/argocd/apps/minio/minio.yaml
2024-10-21 14:11:57 +02:00

72 lines
2.3 KiB
YAML

apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: minio
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: 'https://charts.bitnami.com/bitnami'
targetRevision: 14.*.*
helm:
parameters:
- name: auth.rootPassword
value: '12345678'
- name: ingress.enabled
value: 'true'
- name: ingress.hostname
value: minio.innohub.local
# - name: containerSecurityContext.enabled
# value: 'false'
# - name: ingress.tls
# value: 'true'
# - name: ingress.selfSigned
# value: 'true'
# - name: ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoint
# value: websecure
- name: ingress.annotations.kubernetes\.io\/ingress\.class
value: traefik
- name: ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.tls
value: 'true'
forceString: true
# - name: apiIngress.enabled
# value: 'true'
# - name: apiIngress.hostname
# value: api-minio.innohub.local
# - name: apiIngress.tls
# value: 'true'
# - name: apiIngress.selfSigned
# value: 'true'
# - name: apiIngress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoint
# value: websecure
# - name: apiIngress.annotations.kubernetes\.io\/ingress\.class
# value: traefik
# - name: apiIngress.annotations.traefik\.ingress\.kubernetes\.io\/router\.tls
# value: 'true'
# forceString: true
# - name: containerSecurityContext.allowPrivilegeEscalation
# value: 'false'
# - name: containerSecurityContext.capabilities.drop
# value: 'ALL'
# - name: containerSecurityContext.runAsNonRoot
# value: 'true'
# - name: containerSecurityContext.seccompProfile.type
# value: 'RuntimeDefault'
chart: minio
destination:
server: 'https://kubernetes.default.svc'
namespace: minio
# labels:
# pod-security.kubernetes.io/enforce: privileged
syncPolicy:
automated:
selfHeal: true
prune: true
syncOptions:
- CreateNamespace=true
- RespectIgnoreDifferences=true
ignoreDifferences:
- kind: Secret
name: minio.innohub.local-tls