This commit is contained in:
2023-07-28 18:55:46 +02:00
parent f7115d4128
commit 94e7d39f57
4 changed files with 145 additions and 144 deletions

View File

@@ -12,6 +12,7 @@ data "authentik_group" "readed_groups" {
resource "authentik_application" "prj_app" { resource "authentik_application" "prj_app" {
name = "${var.component}" name = "${var.component}"
slug = "${var.component}-${var.instance}" slug = "${var.component}-${var.instance}"
protocol_provider = authentik_provider_oauth2.oauth2.id
meta_launch_url = format("https://%s.%s", var.sub-domain, var.domain-name) meta_launch_url = format("https://%s.%s", var.sub-domain, var.domain-name)
meta_icon = format("https://%s.%s/%s", var.sub-domain, var.domain-name, "apps/theming/favicon") meta_icon = format("https://%s.%s/%s", var.sub-domain, var.domain-name, "apps/theming/favicon")
} }

View File

@@ -121,7 +121,7 @@ resource "kubectl_manifest" "collabora_certificate" {
labels: ${jsonencode(local.collabora-labels)} labels: ${jsonencode(local.collabora-labels)}
spec: spec:
secretName: "${var.instance}-collabora-cert" secretName: "${var.instance}-collabora-cert"
dnsNames: ${jsonencode(local.dns-collabora)} dnsNames: [${jsonencode(local.dns-collabora)}]
issuerRef: issuerRef:
name: "${var.issuer}" name: "${var.issuer}"
kind: "ClusterIssuer" kind: "ClusterIssuer"
@@ -144,7 +144,7 @@ resource "kubectl_manifest" "collabora_ing" {
ingressClassName: "${var.ingress-class}" ingressClassName: "${var.ingress-class}"
rules: ${jsonencode(local.collabora-rules)} rules: ${jsonencode(local.collabora-rules)}
tls: tls:
- hosts: ${jsonencode(local.dns-collabora)} - hosts: ${local.dns-collabora}
secretName: "${var.instance}-collabora-cert" secretName: "${var.instance}-collabora-cert"
EOF EOF
} }

View File

@@ -6,25 +6,98 @@ metadata:
name: nextcloud name: nextcloud
description: null description: null
options: options:
hpa: redis:
default: default:
avg-cpu: 50 exporter:
max-replicas: 5 enabled: true
min-replicas: 1 image: quay.io/opstree/redis-exporter:v1.44.0
image: quay.io/opstree/redis:v7.0.5
storage: 2Gi
examples: examples:
- avg-cpu: 50 - exporter:
max-replicas: 5 enabled: true
min-replicas: 1 image: quay.io/opstree/redis-exporter:v1.44.0
image: quay.io/opstree/redis:v7.0.5
storage: 2Gi
properties: properties:
avg-cpu: exporter:
default: 50 default:
type: integer enabled: true
max-replicas: image: quay.io/opstree/redis-exporter:v1.44.0
default: 5 properties:
type: integer enabled:
min-replicas: default: true
default: 1 type: boolean
type: integer image:
default: quay.io/opstree/redis-exporter:v1.44.0
type: string
type: object
image:
default: quay.io/opstree/redis:v7.0.5
type: string
storage:
default: 2Gi
type: string
type: object
issuer:
default: letsencrypt-prod
examples:
- letsencrypt-prod
type: string
openid-name:
default: vynil
examples:
- vynil
type: string
apps:
default:
calendar: false
collabora: false
contacts: false
deck: false
groupfolders: true
notes: false
onlyoffice: false
spreed: false
tasks: false
examples:
- calendar: false
collabora: false
contacts: false
deck: false
groupfolders: true
notes: false
onlyoffice: false
spreed: false
tasks: false
properties:
calendar:
default: false
type: boolean
collabora:
default: false
type: boolean
contacts:
default: false
type: boolean
deck:
default: false
type: boolean
groupfolders:
default: true
type: boolean
notes:
default: false
type: boolean
onlyoffice:
default: false
type: boolean
spreed:
default: false
type: boolean
tasks:
default: false
type: boolean
type: object type: object
images: images:
default: default:
@@ -189,45 +262,6 @@ options:
type: string type: string
type: object type: object
type: object type: object
sub-domain:
default: files
examples:
- files
type: string
storage:
default:
accessMode: ReadWriteOnce
size: 10Gi
examples:
- accessMode: ReadWriteOnce
size: 10Gi
properties:
accessMode:
default: ReadWriteOnce
enum:
- ReadWriteOnce
- ReadOnlyMany
- ReadWriteMany
type: string
size:
default: 10Gi
type: string
type: object
domain:
default: your-company
examples:
- your-company
type: string
openid-name:
default: vynil
examples:
- vynil
type: string
domain-name:
default: your_company.com
examples:
- your_company.com
type: string
postgres: postgres:
default: default:
replicas: 1 replicas: 1
@@ -248,66 +282,60 @@ options:
default: '14' default: '14'
type: string type: string
type: object type: object
issuer: storage:
default: letsencrypt-prod default:
accessMode: ReadWriteOnce
size: 10Gi
examples: examples:
- letsencrypt-prod - accessMode: ReadWriteOnce
size: 10Gi
properties:
accessMode:
default: ReadWriteOnce
enum:
- ReadWriteOnce
- ReadOnlyMany
- ReadWriteMany
type: string
size:
default: 10Gi
type: string
type: object
hpa:
default:
avg-cpu: 50
max-replicas: 5
min-replicas: 1
examples:
- avg-cpu: 50
max-replicas: 5
min-replicas: 1
properties:
avg-cpu:
default: 50
type: integer
max-replicas:
default: 5
type: integer
min-replicas:
default: 1
type: integer
type: object
domain:
default: your-company
examples:
- your-company
type: string
domain-name:
default: your_company.com
examples:
- your_company.com
type: string type: string
ingress-class: ingress-class:
default: traefik default: traefik
examples: examples:
- traefik - traefik
type: string type: string
apps:
default:
calendar: false
collabora: false
contacts: false
deck: false
groupfolders: true
notes: false
onlyoffice: false
spreed: false
tasks: false
examples:
- calendar: false
collabora: false
contacts: false
deck: false
groupfolders: true
notes: false
onlyoffice: false
spreed: false
tasks: false
properties:
calendar:
default: false
type: boolean
collabora:
default: false
type: boolean
contacts:
default: false
type: boolean
deck:
default: false
type: boolean
groupfolders:
default: true
type: boolean
notes:
default: false
type: boolean
onlyoffice:
default: false
type: boolean
spreed:
default: false
type: boolean
tasks:
default: false
type: boolean
type: object
admin: admin:
default: default:
name: nextcloud_admin name: nextcloud_admin
@@ -318,39 +346,11 @@ options:
default: nextcloud_admin default: nextcloud_admin
type: string type: string
type: object type: object
redis: sub-domain:
default: default: files
exporter:
enabled: true
image: quay.io/opstree/redis-exporter:v1.44.0
image: quay.io/opstree/redis:v7.0.5
storage: 2Gi
examples: examples:
- exporter: - files
enabled: true type: string
image: quay.io/opstree/redis-exporter:v1.44.0
image: quay.io/opstree/redis:v7.0.5
storage: 2Gi
properties:
exporter:
default:
enabled: true
image: quay.io/opstree/redis-exporter:v1.44.0
properties:
enabled:
default: true
type: boolean
image:
default: quay.io/opstree/redis-exporter:v1.44.0
type: string
type: object
image:
default: quay.io/opstree/redis:v7.0.5
type: string
storage:
default: 2Gi
type: string
type: object
dependencies: [] dependencies: []
providers: providers:
kubernetes: true kubernetes: true

View File

@@ -113,7 +113,7 @@ resource "kubectl_manifest" "onlyoffice_certificate" {
labels: ${jsonencode(local.onlyoffice-labels)} labels: ${jsonencode(local.onlyoffice-labels)}
spec: spec:
secretName: "${var.instance}-onlyoffice-cert" secretName: "${var.instance}-onlyoffice-cert"
dnsNames: ${jsonencode(local.dns-onlyoffice)} dnsNames: [${jsonencode(local.dns-onlyoffice)}]
issuerRef: issuerRef:
name: "${var.issuer}" name: "${var.issuer}"
kind: "ClusterIssuer" kind: "ClusterIssuer"
@@ -136,7 +136,7 @@ resource "kubectl_manifest" "onlyoffice_ing" {
ingressClassName: "${var.ingress-class}" ingressClassName: "${var.ingress-class}"
rules: ${jsonencode(local.onlyoffice-rules)} rules: ${jsonencode(local.onlyoffice-rules)}
tls: tls:
- hosts: ${jsonencode(local.dns-onlyoffice)} - hosts: ${local.dns-onlyoffice}
secretName: "${var.instance}-onlyoffice-cert" secretName: "${var.instance}-onlyoffice-cert"
EOF EOF
} }