cert_controller_test.yaml.snap 2.5 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071
  1. should match snapshot of default values:
  2. 1: |
  3. apiVersion: apps/v1
  4. kind: Deployment
  5. metadata:
  6. labels:
  7. app.kubernetes.io/instance: RELEASE-NAME
  8. app.kubernetes.io/managed-by: Helm
  9. app.kubernetes.io/name: external-secrets-cert-controller
  10. app.kubernetes.io/version: v2.3.0
  11. helm.sh/chart: external-secrets-2.3.0
  12. name: RELEASE-NAME-external-secrets-cert-controller
  13. namespace: NAMESPACE
  14. spec:
  15. replicas: 1
  16. revisionHistoryLimit: 10
  17. selector:
  18. matchLabels:
  19. app.kubernetes.io/instance: RELEASE-NAME
  20. app.kubernetes.io/name: external-secrets-cert-controller
  21. template:
  22. metadata:
  23. labels:
  24. app.kubernetes.io/instance: RELEASE-NAME
  25. app.kubernetes.io/managed-by: Helm
  26. app.kubernetes.io/name: external-secrets-cert-controller
  27. app.kubernetes.io/version: v2.3.0
  28. helm.sh/chart: external-secrets-2.3.0
  29. spec:
  30. automountServiceAccountToken: true
  31. containers:
  32. - args:
  33. - certcontroller
  34. - --crd-requeue-interval=5m
  35. - --service-name=RELEASE-NAME-external-secrets-webhook
  36. - --service-namespace=NAMESPACE
  37. - --secret-name=RELEASE-NAME-external-secrets-webhook
  38. - --secret-namespace=NAMESPACE
  39. - --metrics-addr=:8080
  40. - --healthz-addr=:8081
  41. - --loglevel=info
  42. - --zap-time-encoding=epoch
  43. - --enable-partial-cache=true
  44. image: ghcr.io/external-secrets/external-secrets:v2.3.0
  45. imagePullPolicy: IfNotPresent
  46. name: cert-controller
  47. ports:
  48. - containerPort: 8080
  49. name: metrics
  50. protocol: TCP
  51. - containerPort: 8081
  52. protocol: TCP
  53. name: ready
  54. readinessProbe:
  55. httpGet:
  56. path: /readyz
  57. port: ready
  58. initialDelaySeconds: 20
  59. periodSeconds: 5
  60. securityContext:
  61. allowPrivilegeEscalation: false
  62. capabilities:
  63. drop:
  64. - ALL
  65. readOnlyRootFilesystem: true
  66. runAsNonRoot: true
  67. runAsUser: 1000
  68. seccompProfile:
  69. type: RuntimeDefault
  70. hostNetwork: false
  71. serviceAccountName: external-secrets-cert-controller