webhook_test.yaml.snap 3.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990
  1. should match snapshot of default values:
  2. 1: |
  3. apiVersion: apps/v1
  4. kind: Deployment
  5. metadata:
  6. labels:
  7. app.kubernetes.io/instance: RELEASE-NAME
  8. app.kubernetes.io/managed-by: Helm
  9. app.kubernetes.io/name: external-secrets-webhook
  10. app.kubernetes.io/version: v0.19.0
  11. helm.sh/chart: external-secrets-0.19.0
  12. name: RELEASE-NAME-external-secrets-webhook
  13. namespace: NAMESPACE
  14. spec:
  15. replicas: 1
  16. revisionHistoryLimit: 10
  17. selector:
  18. matchLabels:
  19. app.kubernetes.io/instance: RELEASE-NAME
  20. app.kubernetes.io/name: external-secrets-webhook
  21. template:
  22. metadata:
  23. labels:
  24. app.kubernetes.io/instance: RELEASE-NAME
  25. app.kubernetes.io/managed-by: Helm
  26. app.kubernetes.io/name: external-secrets-webhook
  27. app.kubernetes.io/version: v0.19.0
  28. helm.sh/chart: external-secrets-0.19.0
  29. spec:
  30. automountServiceAccountToken: true
  31. containers:
  32. - args:
  33. - webhook
  34. - --port=10250
  35. - --dns-name=RELEASE-NAME-external-secrets-webhook.NAMESPACE.svc
  36. - --cert-dir=/tmp/certs
  37. - --check-interval=5m
  38. - --metrics-addr=:8080
  39. - --healthz-addr=:8081
  40. - --loglevel=info
  41. - --zap-time-encoding=epoch
  42. image: oci.external-secrets.io/external-secrets/external-secrets:v0.19.0
  43. imagePullPolicy: IfNotPresent
  44. name: webhook
  45. ports:
  46. - containerPort: 8080
  47. name: metrics
  48. protocol: TCP
  49. - containerPort: 10250
  50. name: webhook
  51. protocol: TCP
  52. readinessProbe:
  53. httpGet:
  54. path: /readyz
  55. port: 8081
  56. initialDelaySeconds: 20
  57. periodSeconds: 5
  58. securityContext:
  59. allowPrivilegeEscalation: false
  60. capabilities:
  61. drop:
  62. - ALL
  63. readOnlyRootFilesystem: true
  64. runAsNonRoot: true
  65. runAsUser: 1000
  66. seccompProfile:
  67. type: RuntimeDefault
  68. volumeMounts:
  69. - mountPath: /tmp/certs
  70. name: certs
  71. readOnly: true
  72. hostNetwork: false
  73. serviceAccountName: external-secrets-webhook
  74. volumes:
  75. - name: certs
  76. secret:
  77. secretName: RELEASE-NAME-external-secrets-webhook
  78. 2: |
  79. apiVersion: v1
  80. kind: Secret
  81. metadata:
  82. labels:
  83. app.kubernetes.io/instance: RELEASE-NAME
  84. app.kubernetes.io/managed-by: Helm
  85. app.kubernetes.io/name: external-secrets-webhook
  86. app.kubernetes.io/version: v0.19.0
  87. external-secrets.io/component: webhook
  88. helm.sh/chart: external-secrets-0.19.0
  89. name: RELEASE-NAME-external-secrets-webhook
  90. namespace: NAMESPACE