1
0
Fork 0

explicitly set the labels of external-secret managed secrets to prevent it being pruned on apply

This commit is contained in:
Massaki Archambault 2023-02-20 10:58:55 -05:00
parent 4873102074
commit c0b61a2eb4
7 changed files with 39 additions and 3 deletions

View File

@ -8,6 +8,11 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: drone-secret name: drone-secret
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: rpc_secret - secretKey: rpc_secret
remoteRef: remoteRef:
@ -26,6 +31,11 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: drone-gitea-oauth-secret name: drone-gitea-oauth-secret
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: client_id - secretKey: client_id
remoteRef: remoteRef:

View File

@ -8,6 +8,11 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: grafana-agent name: grafana-agent
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: agent.yaml - secretKey: agent.yaml
remoteRef: remoteRef:

View File

@ -8,6 +8,11 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: grafana-config name: grafana-config
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: custom.ini - secretKey: custom.ini
remoteRef: remoteRef:

View File

@ -9,6 +9,11 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: s3-backupstore-credentials name: s3-backupstore-credentials
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: AWS_ACCESS_KEY_ID - secretKey: AWS_ACCESS_KEY_ID
remoteRef: remoteRef:

View File

@ -8,6 +8,11 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: postgres-credentials name: postgres-credentials
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: database - secretKey: database
remoteRef: remoteRef:

View File

@ -8,6 +8,12 @@ spec:
kind: ClusterSecretStore kind: ClusterSecretStore
target: target:
name: redis-credentials name: redis-credentials
template:
metadata:
labels:
app.kubernetes.io/managed-by: external-secret
annotations: {}
data: data:
- secretKey: password - secretKey: password
remoteRef: remoteRef:

View File

@ -32,7 +32,7 @@ images:
- name: postgres - name: postgres
newTag: 9.6.23 newTag: 9.6.23
- name: redis - name: redis
newTag: 6.2.5 newTag: 6.2.10
configMapGenerator: configMapGenerator:
- name: replacements - name: replacements