feat: add external-secret for cloud-db-credentials
This commit is contained in:
@@ -0,0 +1,25 @@
|
|||||||
|
apiVersion: external-secrets.io/v1beta1
|
||||||
|
kind: ExternalSecret
|
||||||
|
metadata:
|
||||||
|
name: cloud-db-credentials
|
||||||
|
namespace: cloud-services
|
||||||
|
spec:
|
||||||
|
refreshInterval: 1h
|
||||||
|
secretStoreRef:
|
||||||
|
name: vault-backend
|
||||||
|
kind: ClusterSecretStore
|
||||||
|
target:
|
||||||
|
name: cloud-db-credentials
|
||||||
|
data:
|
||||||
|
- secretKey: DB_PASSWORD
|
||||||
|
remoteRef:
|
||||||
|
key: secret/cloud-services/db
|
||||||
|
property: password
|
||||||
|
- secretKey: MONGO_USER
|
||||||
|
remoteRef:
|
||||||
|
key: secret/cloud-services/db
|
||||||
|
property: mongo_user
|
||||||
|
- secretKey: MONGO_PASSWORD
|
||||||
|
remoteRef:
|
||||||
|
key: secret/cloud-services/db
|
||||||
|
property: mongo_password
|
||||||
@@ -8,3 +8,4 @@ resources:
|
|||||||
- ../../../../base
|
- ../../../../base
|
||||||
- deployment.yaml
|
- deployment.yaml
|
||||||
- ingress.yaml
|
- ingress.yaml
|
||||||
|
- external-secret.yaml
|
||||||
|
|||||||
Reference in New Issue
Block a user