cert_controller_test.yaml.snap 2.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162
  1. should match snapshot of default values:
  2. 1: |
  3. apiVersion: apps/v1
  4. kind: Deployment
  5. metadata:
  6. labels:
  7. app.kubernetes.io/instance: RELEASE-NAME
  8. app.kubernetes.io/managed-by: Helm
  9. app.kubernetes.io/name: external-secrets-cert-controller
  10. app.kubernetes.io/version: v0.9.1
  11. helm.sh/chart: external-secrets-0.9.1
  12. name: RELEASE-NAME-external-secrets-cert-controller
  13. namespace: NAMESPACE
  14. spec:
  15. replicas: 1
  16. revisionHistoryLimit: 10
  17. selector:
  18. matchLabels:
  19. app.kubernetes.io/instance: RELEASE-NAME
  20. app.kubernetes.io/name: external-secrets-cert-controller
  21. template:
  22. metadata:
  23. labels:
  24. app.kubernetes.io/instance: RELEASE-NAME
  25. app.kubernetes.io/name: external-secrets-cert-controller
  26. spec:
  27. automountServiceAccountToken: true
  28. containers:
  29. - args:
  30. - certcontroller
  31. - --crd-requeue-interval=5m
  32. - --service-name=RELEASE-NAME-external-secrets-webhook
  33. - --service-namespace=NAMESPACE
  34. - --secret-name=RELEASE-NAME-external-secrets-webhook
  35. - --secret-namespace=NAMESPACE
  36. - --metrics-addr=:8080
  37. - --healthz-addr=:8081
  38. image: ghcr.io/external-secrets/external-secrets:v0.9.1
  39. imagePullPolicy: IfNotPresent
  40. name: cert-controller
  41. ports:
  42. - containerPort: 8080
  43. name: metrics
  44. protocol: TCP
  45. readinessProbe:
  46. httpGet:
  47. path: /readyz
  48. port: 8081
  49. initialDelaySeconds: 20
  50. periodSeconds: 5
  51. securityContext:
  52. allowPrivilegeEscalation: false
  53. capabilities:
  54. drop:
  55. - ALL
  56. readOnlyRootFilesystem: true
  57. runAsNonRoot: true
  58. runAsUser: 1000
  59. seccompProfile:
  60. type: RuntimeDefault
  61. hostNetwork: false
  62. serviceAccountName: external-secrets-cert-controller