Files
k3s/argocd/apps/anyllm/anyllm.yaml
titusvermesan 8d652174f8 pod-security
2024-11-06 08:48:15 +01:00

49 lines
1.5 KiB
YAML

apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: anyllm
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: 'https://la-cc.github.io/anything-llm-helm-chart'
targetRevision: 1.*.*
helm:
parameters:
- name: ingress.enabled
value: 'true'
- name: 'endpoint'
value: 'anyllm.innovation-hub-niedersachsen.de'
# - name: 'ingress.hosts[0]'
# value: 'anyllm.innovation-hub-niedersachsen.de'
# - name: 'global.networkPolicy.create'
# value: 'true'
# - name: 'crds.keep'
# value: 'false'
- name: 'ingress.tls[0].hosts[0]'
value: anyllm.innovation-hub-niedersachsen.de
- name: 'ingress.tls[0].secretName'
value: anyllm-tls
- name: ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoints
value: websecure
- name: ingress.annotations.kubernetes\.io\/ingress\.class
value: traefik
- name: ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.tls
value: 'true'
forceString: true
- name: ingress.annotations.cert-manager\.io\/cluster-issuer
value: lets-encrypt
chart: anything-llm
destination:
server: 'https://kubernetes.default.svc'
namespace: anyllm
syncPolicy:
managedNamespaceMetadata:
labels:
pod-security.kubernetes.io/enforce: "privileged"
automated:
selfHeal: true
prune: true
syncOptions:
- CreateNamespace=true