59 lines
1.4 KiB
YAML
59 lines
1.4 KiB
YAML
service:
|
|
port: 8080
|
|
vaultwarden:
|
|
smtp:
|
|
host: mail.badhouseplants.net
|
|
security: "starttls"
|
|
port: 587
|
|
from: vaulttest@badhouseplants.net
|
|
fromName: Vault Warden
|
|
authMechanism: "Plain"
|
|
acceptInvalidHostnames: "false"
|
|
acceptInvalidCerts: "false"
|
|
debug: false
|
|
domain: https://vaulttest.badhouseplants.net
|
|
websocket:
|
|
enabled: true
|
|
address: "0.0.0.0"
|
|
port: 3012
|
|
rocket:
|
|
port: "8080"
|
|
workers: "10"
|
|
webVaultEnabled: "true"
|
|
signupsAllowed: true
|
|
invitationsAllowed: true
|
|
signupDomains: "https://vaulttest.badhouseplants.net"
|
|
signupsVerify: false
|
|
showPassHint: true
|
|
# database:
|
|
# existingSecret: vaultwarden-postgres16-creds
|
|
# existingSecretKey: CONNECTION_STRING
|
|
# connectionRetries: 15
|
|
# maxConnections: 10
|
|
storage:
|
|
enabled: true
|
|
size: 512Mi
|
|
class: longhorn
|
|
dataDir: /data
|
|
logging:
|
|
enabled: false
|
|
logfile: "/data/vaultwarden.log"
|
|
loglevel: "warn"
|
|
ingress:
|
|
enabled: true
|
|
annotations:
|
|
kubernetes.io/ingress.class: traefik
|
|
kubernetes.io/tls-acme: "true"
|
|
kubernetes.io/ingress.allow-http: "false"
|
|
kubernetes.io/ingress.global-static-ip-name: ""
|
|
cert-manager.io/cluster-issuer: badhouseplants-issuer-http01
|
|
hosts:
|
|
- host: vaulttest.badhouseplants.net
|
|
paths:
|
|
- path: /
|
|
pathType: Prefix
|
|
tls:
|
|
- secretName: vault-tls-secret
|
|
hosts:
|
|
- vaulttest.badhouseplants.net
|