120 lines
2.6 KiB
YAML
120 lines
2.6 KiB
YAML
|
ingress:
|
||
|
enabled: true
|
||
|
ingressClassName: traefik
|
||
|
annotations:
|
||
|
kubernetes.io/tls-acme: "true"
|
||
|
kubernetes.io/ingress.allow-http: "false"
|
||
|
kubernetes.io/ingress.global-static-ip-name: ""
|
||
|
cert-manager.io/issuer: my-ca-issuer
|
||
|
traefik.ingress.kubernetes.io/router.entrypoints: web,websecure
|
||
|
path: /
|
||
|
hosts:
|
||
|
- s3eself.badhouseplants.net
|
||
|
tls:
|
||
|
- secretName: s3eself.badhouseplants.net
|
||
|
hosts:
|
||
|
- s3eself.badhouseplants.net
|
||
|
consoleIngress:
|
||
|
enabled: true
|
||
|
ingressClassName: traefik
|
||
|
annotations:
|
||
|
kubernetes.io/tls-acme: "true"
|
||
|
kubernetes.io/ingress.allow-http: "false"
|
||
|
kubernetes.io/ingress.global-static-ip-name: ""
|
||
|
cert-manager.io/issuer: my-ca-issuer
|
||
|
traefik.ingress.kubernetes.io/router.entrypoints: web,websecure
|
||
|
path: /
|
||
|
hosts:
|
||
|
- min.self.badhouseplants.net
|
||
|
tls:
|
||
|
- secretName: min.self.badhouseplants.net
|
||
|
hosts:
|
||
|
- min.eself.badhouseplants.net
|
||
|
rootUser: "overlord"
|
||
|
replicas: 1
|
||
|
mode: standalone
|
||
|
environment:
|
||
|
MINIO_SERVER_URL: "https://s3eself.badhouseplants.net"
|
||
|
tls:
|
||
|
enabled: false
|
||
|
certSecret: ""
|
||
|
publicCrt: public.crt
|
||
|
privateKey: private.key
|
||
|
persistence:
|
||
|
annotations:
|
||
|
volume.kubernetes.io/selected-node: yekaterinburg
|
||
|
storageClass: local-path
|
||
|
enabled: true
|
||
|
accessMode: ReadWriteOnce
|
||
|
size: 60Gi
|
||
|
service:
|
||
|
type: ClusterIP
|
||
|
clusterIP: ~
|
||
|
port: "9000"
|
||
|
consoleService:
|
||
|
type: ClusterIP
|
||
|
clusterIP: ~
|
||
|
port: "9001"
|
||
|
resources:
|
||
|
requests:
|
||
|
memory: 2Gi
|
||
|
buckets:
|
||
|
- name: velero
|
||
|
policy: none
|
||
|
purge: false
|
||
|
versioning: false
|
||
|
- name: xray-public
|
||
|
policy: download
|
||
|
purge: false
|
||
|
versioning: false
|
||
|
metrics:
|
||
|
serviceMonitor:
|
||
|
enabled: false
|
||
|
public: true
|
||
|
additionalLabels: {}
|
||
|
policies:
|
||
|
- name: allanger
|
||
|
statements:
|
||
|
- resources:
|
||
|
- "arn:aws:s3:::*"
|
||
|
actions:
|
||
|
- "s3:*"
|
||
|
- resources: []
|
||
|
actions:
|
||
|
- "admin:*"
|
||
|
- resources: []
|
||
|
actions:
|
||
|
- "kms:*"
|
||
|
- name: velero
|
||
|
statements:
|
||
|
- resources:
|
||
|
- "arn:aws:s3:::velero"
|
||
|
actions:
|
||
|
- "s3:*"
|
||
|
- resources:
|
||
|
- "arn:aws:s3:::velero/*"
|
||
|
actions:
|
||
|
- "s3:*"
|
||
|
- name: Admins
|
||
|
statements:
|
||
|
- resources:
|
||
|
- "arn:aws:s3:::*"
|
||
|
actions:
|
||
|
- "s3:*"
|
||
|
- resources: []
|
||
|
actions:
|
||
|
- "admin:*"
|
||
|
- resources: []
|
||
|
actions:
|
||
|
- "kms:*"
|
||
|
- name: DevOps
|
||
|
statements:
|
||
|
- resources:
|
||
|
- "arn:aws:s3:::badhouseplants-net"
|
||
|
actions:
|
||
|
- "s3:*"
|
||
|
- resources:
|
||
|
- "arn:aws:s3:::badhouseplants-net/*"
|
||
|
actions:
|
||
|
- "s3:*"
|