Files
k3s/argocd/apps/seaweedfs/seaweedfs.yaml
titver968 9aa02a8c3e filer
2025-06-11 16:06:45 +02:00

138 lines
5.3 KiB
YAML

apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: seaweedfs
finalizers:
- resources-finalizer.argocd.argoproj.io
spec:
project: default
source:
repoURL: 'https://seaweedfs.github.io/seaweedfs/helm'
targetRevision: 4.*.*
chart: seaweedfs
helm:
values: |
master:
ingress:
enabled: true
className: traefik
hostname: seaweed.innovation-hub-niedersachsen.de
tls:
- hosts:
- seaweed.innovation-hub-niedersachsen.de
secretName: seaweed.innovation-hub-niedersachsen.de-tls
annotations:
kubernetes.io/ingress.class: traefik
traefik.ingress.kubernetes.io/router.tls: "true"
cert-manager.io/cluster-issuer: lets-encrypt
traefik.ingress.kubernetes.io/router.entrypoints: websecure
filer:
ingress:
enabled: true
className: traefik
hostname: seaweed.innovation-hub-niedersachsen.de
tls:
- hosts:
- seaweed.innovation-hub-niedersachsen.de
secretName: seaweed.innovation-hub-niedersachsen.de-tls
annotations:
kubernetes.io/ingress.class: traefik
traefik.ingress.kubernetes.io/router.tls: "true"
cert-manager.io/cluster-issuer: lets-encrypt
traefik.ingress.kubernetes.io/router.entrypoints: websecure
s3:
ingress:
enabled: true
className: traefik
hostname: sws3.innovation-hub-niedersachsen.de
tls:
- hosts:
- sws3.innovation-hub-niedersachsen.de
secretName: sws3.innovation-hub-niedersachsen.de-tls
annotations:
kubernetes.io/ingress.class: traefik
traefik.ingress.kubernetes.io/router.tls: "true"
cert-manager.io/cluster-issuer: lets-encrypt
traefik.ingress.kubernetes.io/router.entrypoints: websecure
parameters:
- name: master.ingress.enabled
value: 'true'
- name: master.ingress.className
value: 'traefik'
- name: master.ingress.host
value: 'seaweed.innovation-hub-niedersachsen.de'
# - name: master.ingress.tls
# value: 'true'
# value: '[{"hosts": ["seaweed.innovation-hub-niedersachsen.de"], "secretName": "seaweed.innovation-hub-niedersachsen.de-tls"}]'
# forceString: true
# - name: master.ingress.annotations.kubernetes\.io\/ingress\.class
# value: traefik
# - name: master.ingress.annotations."traefik\.ingress\.kubernetes\.io\/router\.tls"
# value: 'true'
# forceString: true
# - name: master.ingress.annotations.cert-manager\.io\/cluster-issuer
# value: 'lets-encrypt'
# - name: master.ingress.annotations.ingress\.secrets
# value: 'seaweed.innovation-hub-niedersachsen.de-tls'
# - name: master.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoints
# value: websecure
# - name: s3.enabled
# value: 'true'
# - name: s3.enableAuth
# value: 'true'
# - name: s3.existingConfigSecret
# value: 'seaweedfs_s3_config'
# - name: filer.s3.enabled
# value: 'true'
# - name: filer.s3.enableAuth
# value: 'true'
# - name: filer.s3.existingConfigSecret
# value: 'innohub-s3-secret'
- name: filer.enabled
value: 'true'
- name: filer.ingress.host
value: 'seaweed.innovation-hub-niedersachsen.de'
- name: filer.s3.enabled
value: 'true'
- name: filer.s3.enableAuth
value: 'true'
- name: filer.s3.existingConfigSecret
value: 'innohub-s3-secret'
- name: s3.enabled
value: 'true'
- name: s3.enableAuth
value: 'true'
- name: s3.existingConfigSecret
value: 'innohub-s3-secret'
- name: s3.ingress.enabled
value: 'true'
- name: s3.ingress.className
value: 'traefik'
- name: s3.ingress.host
value: 'sws3.innovation-hub-niedersachsen.de'
# - name: s3.ingress.tls
# value: '[{"hosts": ["sws3.innovation-hub-niedersachsen.de"], "secretName": "sws3.innovation-hub-niedersachsen.de-tls"}]'
# forceString: true
# - name: s3.ingress.annotations.kubernetes\.io\/ingress\.class
# value: traefik
# - name: s3.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.tls
# value: 'true'
# forceString: true
# - name: s3.ingress.annotations.cert-manager\.io\/cluster-issuer
# value: 'lets-encrypt'
# - name: s3.ingress.annotations.ingress\.secrets
# value: 'sws3.innovation-hub-niedersachsen.de-tls'
# - name: s3.ingress.annotations.traefik\.ingress\.kubernetes\.io\/router\.entrypoints
# value: websecure
destination:
server: 'https://kubernetes.default.svc'
namespace: seaweedfs
syncPolicy:
managedNamespaceMetadata:
labels:
pod-security.kubernetes.io/enforce: "privileged"
automated:
selfHeal: true
prune: true
syncOptions:
- CreateNamespace=true