This commit is contained in:
2024-05-12 12:03:32 +02:00
parent 599d175f82
commit 2890064fd4
191 changed files with 893 additions and 1068 deletions

View File

@@ -5,7 +5,7 @@ resource "kubectl_manifest" "config" {
metadata:
name: "${var.instance}-${var.component}"
namespace: "${var.namespace}"
labels: ${jsonencode(local.common-labels)}
labels: ${jsonencode(local.common_labels)}
data:
NODE_EXTRA_CA_CERTS: /etc/local-ca/ca.crt
INVITE_ONLY_SIGNUP: "true"

View File

@@ -1,7 +1,7 @@
locals {
authentik_url = "http://authentik.${var.domain}-auth.svc"
authentik_token = data.kubernetes_secret_v1.authentik.data["AUTHENTIK_BOOTSTRAP_TOKEN"]
common-labels = {
common_labels = {
"vynil.solidite.fr/owner-name" = var.instance
"vynil.solidite.fr/owner-namespace" = var.namespace
"vynil.solidite.fr/owner-category" = var.category
@@ -21,6 +21,6 @@ data "kubernetes_secret_v1" "authentik" {
data "kustomization_overlay" "data" {
namespace = var.namespace
common_labels = local.common-labels
common_labels = local.common_labels
resources = []
}

View File

@@ -5,17 +5,17 @@ resource "kubectl_manifest" "deploy" {
metadata:
name: "${var.instance}-${var.component}"
namespace: "${var.namespace}"
labels: ${jsonencode(local.common-labels)}
labels: ${jsonencode(local.common_labels)}
annotations:
configmap.reloader.stakater.com/reload: "${kubectl_manifest.config.name}"
secret.reloader.stakater.com/reload: "${kubectl_manifest.secret.name}"
spec:
replicas: ${var.replicas}
selector:
matchLabels: ${jsonencode(local.common-labels)}
matchLabels: ${jsonencode(local.common_labels)}
template:
metadata:
labels: ${jsonencode(local.common-labels)}
labels: ${jsonencode(local.common_labels)}
spec:
containers:
- name: infisical-backend

View File

@@ -13,7 +13,7 @@ module "service" {
component = var.component
instance = var.instance
namespace = var.namespace
labels = local.common-labels
labels = local.common_labels
targets = ["http"]
providers = {
kubectl = kubectl
@@ -27,7 +27,7 @@ module "ingress" {
namespace = var.namespace
issuer = var.issuer
ingress_class = var.ingress_class
labels = local.common-labels
labels = local.common_labels
dns_names = local.dns_names
middlewares = [module.forward.middleware]
services = [module.service.default_definition]
@@ -66,7 +66,7 @@ module "forward" {
domain = var.domain
namespace = var.namespace
ingress_class = var.ingress_class
labels = local.common-labels
labels = local.common_labels
dns_names = local.dns_names
service = module.service.default_definition
icon = local.icon

View File

@@ -7,7 +7,7 @@ resource "kubectl_manifest" "secret" {
metadata:
name: "${var.instance}-${var.component}"
namespace: "${var.namespace}"
labels: ${jsonencode(local.common-labels)}
labels: ${jsonencode(local.common_labels)}
spec:
forceRegenerate: false
data:

View File

@@ -3,7 +3,7 @@ module "redis" {
component = var.component
instance = var.instance
namespace = var.namespace
labels = local.common-labels
labels = local.common_labels
images = var.images
exporter = var.redis.exporter
providers = {
@@ -15,7 +15,7 @@ module "mongo" {
component = var.component
instance = var.instance
namespace = var.namespace
labels = local.common-labels
labels = local.common_labels
providers = {
kubectl = kubectl
}