cert_controller_test.yaml.snap 2.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960
  1. should match snapshot of default values:
  2. 1: |
  3. apiVersion: apps/v1
  4. kind: Deployment
  5. metadata:
  6. labels:
  7. app.kubernetes.io/instance: RELEASE-NAME
  8. app.kubernetes.io/managed-by: Helm
  9. app.kubernetes.io/name: external-secrets-cert-controller
  10. app.kubernetes.io/version: v0.9.1
  11. helm.sh/chart: external-secrets-0.9.1
  12. name: RELEASE-NAME-external-secrets-cert-controller
  13. namespace: NAMESPACE
  14. spec:
  15. replicas: 1
  16. revisionHistoryLimit: 10
  17. selector:
  18. matchLabels:
  19. app.kubernetes.io/instance: RELEASE-NAME
  20. app.kubernetes.io/name: external-secrets-cert-controller
  21. template:
  22. metadata:
  23. labels:
  24. app.kubernetes.io/instance: RELEASE-NAME
  25. app.kubernetes.io/name: external-secrets-cert-controller
  26. spec:
  27. automountServiceAccountToken: true
  28. containers:
  29. - args:
  30. - certcontroller
  31. - --crd-requeue-interval=5m
  32. - --service-name=RELEASE-NAME-external-secrets-webhook
  33. - --service-namespace=NAMESPACE
  34. - --secret-name=RELEASE-NAME-external-secrets-webhook
  35. - --secret-namespace=NAMESPACE
  36. image: ghcr.io/external-secrets/external-secrets:v0.9.1
  37. imagePullPolicy: IfNotPresent
  38. name: cert-controller
  39. ports:
  40. - containerPort: 8080
  41. name: metrics
  42. protocol: TCP
  43. readinessProbe:
  44. httpGet:
  45. path: /readyz
  46. port: 8081
  47. initialDelaySeconds: 20
  48. periodSeconds: 5
  49. securityContext:
  50. allowPrivilegeEscalation: false
  51. capabilities:
  52. drop:
  53. - ALL
  54. readOnlyRootFilesystem: true
  55. runAsNonRoot: true
  56. runAsUser: 1000
  57. seccompProfile:
  58. type: RuntimeDefault
  59. hostNetwork: false
  60. serviceAccountName: external-secrets-cert-controller