Added Kubernetes manifests
This commit is contained in:
parent
f64211e326
commit
3b003eafce
11
manifests/cluster-role-binding.yaml
Normal file
11
manifests/cluster-role-binding.yaml
Normal file
|
@ -0,0 +1,11 @@
|
||||||
|
kind: ClusterRoleBinding
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
metadata:
|
||||||
|
name: lldap-controller
|
||||||
|
subjects:
|
||||||
|
- kind: ServiceAccount
|
||||||
|
name: lldap-controller
|
||||||
|
roleRef:
|
||||||
|
kind: ClusterRole
|
||||||
|
name: lldap-controller
|
||||||
|
apiGroup: rbac.authorization.k8s.io
|
25
manifests/cluster-role.yaml
Normal file
25
manifests/cluster-role.yaml
Normal file
|
@ -0,0 +1,25 @@
|
||||||
|
kind: ClusterRole
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
metadata:
|
||||||
|
name: lldap-controller
|
||||||
|
rules:
|
||||||
|
- apiGroups:
|
||||||
|
- lldap.huizinga.dev
|
||||||
|
resources:
|
||||||
|
- serviceusers
|
||||||
|
- serviceusers/status
|
||||||
|
- serviceusers/finalizers
|
||||||
|
verbs:
|
||||||
|
- "*"
|
||||||
|
- apiGroups:
|
||||||
|
- events.k8s.io
|
||||||
|
resources:
|
||||||
|
- events
|
||||||
|
verbs:
|
||||||
|
- create
|
||||||
|
- apiGroups:
|
||||||
|
- ""
|
||||||
|
resources:
|
||||||
|
- secrets
|
||||||
|
verbs:
|
||||||
|
- "*"
|
45
manifests/deployment.yaml
Normal file
45
manifests/deployment.yaml
Normal file
|
@ -0,0 +1,45 @@
|
||||||
|
apiVersion: apps/v1
|
||||||
|
kind: Deployment
|
||||||
|
metadata:
|
||||||
|
name: lldap-controller
|
||||||
|
labels:
|
||||||
|
app: lldap-controller
|
||||||
|
app.kubernetes.io/name: lldap-controller
|
||||||
|
spec:
|
||||||
|
replicas: 1
|
||||||
|
selector:
|
||||||
|
matchLabels:
|
||||||
|
app: lldap-controller
|
||||||
|
template:
|
||||||
|
metadata:
|
||||||
|
labels:
|
||||||
|
app: lldap-controller
|
||||||
|
annotations:
|
||||||
|
kubectl.kubernetes.io/default-container: lldap-controller
|
||||||
|
spec:
|
||||||
|
serviceAccountName: lldap-controller
|
||||||
|
securityContext: {}
|
||||||
|
containers:
|
||||||
|
- name: lldap-controller
|
||||||
|
image: git.huizinga.dev/dreaded_x/lldap-controller:sha-${SHA_SHORT}
|
||||||
|
imagePullPolicy: IfNotPresent
|
||||||
|
securityContext: {}
|
||||||
|
resources:
|
||||||
|
limits:
|
||||||
|
cpu: 200m
|
||||||
|
memory: 256Mi
|
||||||
|
requests:
|
||||||
|
cpu: 50m
|
||||||
|
memory: 100Mi
|
||||||
|
env:
|
||||||
|
- name: RUST_LOG
|
||||||
|
value: info,lldap_controller=debug
|
||||||
|
- name: LLDAP_URL
|
||||||
|
value: "http://lldap:17170"
|
||||||
|
- name: LLDAP_USERNAME
|
||||||
|
value: admin
|
||||||
|
- name: LLDAP_PASSWORD
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: lldap-credentials
|
||||||
|
key: lldap-ldap-user-pass
|
8
manifests/kustomization.yaml
Normal file
8
manifests/kustomization.yaml
Normal file
|
@ -0,0 +1,8 @@
|
||||||
|
apiVersion: kustomize.config.k8s.io/v1beta1
|
||||||
|
kind: Kustomization
|
||||||
|
namespace: lldap
|
||||||
|
resources:
|
||||||
|
- ./service-account.yaml
|
||||||
|
- ./cluster-role.yaml
|
||||||
|
- ./cluster-role-binding.yaml
|
||||||
|
- ./deployment.yaml
|
8
manifests/service-account.yaml
Normal file
8
manifests/service-account.yaml
Normal file
|
@ -0,0 +1,8 @@
|
||||||
|
apiVersion: v1
|
||||||
|
kind: ServiceAccount
|
||||||
|
metadata:
|
||||||
|
name: lldap-controller
|
||||||
|
labels:
|
||||||
|
app: lldap-controller
|
||||||
|
app.kubernetes.io/name: lldap-controller
|
||||||
|
automountServiceAccountToken: true
|
Loading…
Reference in New Issue
Block a user