forked from bomoko/lagoon
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy path.lagoon.secrets.yaml
111 lines (111 loc) · 3.05 KB
/
.lagoon.secrets.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
apiVersion: v1
kind: Template
metadata:
creationTimestamp: null
name: lagoon-secret-environment-template
parameters:
- name: JWTSECRET
description: JSON Web Token generation secret
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: RABBITMQ_PASSWORD
description: Password to connect to rabbitmq to
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: LOGSTASH_USERNAME
description: Username to for incoming logstash http connections
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: LOGSTASH_PASSWORD
description: Password to for incoming logstash http connections
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: OPENDISTRO_SECURITY_COOKIE_PASSWORD
description: Password to for opendistro-security cookies
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: API_DB_PASSWORD
description: Password used for connecting to the api-db
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: KEYCLOAK_DB_PASSWORD
description: Password used for connecting to the keycloak-db
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: API_REDIS_PASSWORD
description: Password used for connecting to the api-redis
generate: expression
from: "[a-zA-Z0-9]{32}"
- name: SAFE_BRANCH
description: Which branch this belongs to, special chars replaced with dashes
required: true
- name: SAFE_PROJECT
description: Which project this belongs to, special chars replaced with dashes
required: true
- name: BRANCH
description: Which branch this belongs to, original value
required: true
- name: PROJECT
description: Which project this belongs to, original value
required: true
- name: LAGOON_GIT_SHA
description: git hash sha of the current deployment
required: true
- name: OPENSHIFT_PROJECT
description: Name of the Project that this service is in
required: true
objects:
- kind: Secret
apiVersion: v1
metadata:
name: jwtsecret
stringData:
JWTSECRET: ${JWTSECRET}
- kind: Secret
apiVersion: v1
metadata:
name: rabbitmq-password
stringData:
RABBITMQ_PASSWORD: ${RABBITMQ_PASSWORD}
- kind: Secret
apiVersion: v1
metadata:
name: rabbitmq-username
stringData:
RABBITMQ_USERNAME: lagoon
- kind: Secret
apiVersion: v1
metadata:
name: api-db-password
stringData:
API_DB_PASSWORD: ${API_DB_PASSWORD}
- kind: Secret
apiVersion: v1
metadata:
name: keycloak-db-password
stringData:
KEYCLOAK_DB_PASSWORD: ${KEYCLOAK_DB_PASSWORD}
- kind: Secret
apiVersion: v1
metadata:
name: logstash-username
stringData:
LOGSTASH_USERNAME: ${LOGSTASH_USERNAME}
- kind: Secret
apiVersion: v1
metadata:
name: logstash-password
stringData:
LOGSTASH_PASSWORD: ${LOGSTASH_PASSWORD}
- kind: Secret
apiVersion: v1
metadata:
name: opendistro-security-cookie-password
stringData:
OPENDISTRO_SECURITY_COOKIE_PASSWORD: ${OPENDISTRO_SECURITY_COOKIE_PASSWORD}
- kind: Secret
apiVersion: v1
metadata:
name: api-redis-password
stringData:
API_REDIS_PASSWORD: ${API_REDIS_PASSWORD}