cert_controller_test.yaml.snap 2.4 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768
  1. should match snapshot of default values:
  2. 1: |
  3. apiVersion: apps/v1
  4. kind: Deployment
  5. metadata:
  6. labels:
  7. app.kubernetes.io/instance: RELEASE-NAME
  8. app.kubernetes.io/managed-by: Helm
  9. app.kubernetes.io/name: external-secrets-cert-controller
  10. app.kubernetes.io/version: v1.0.0
  11. helm.sh/chart: external-secrets-1.0.0
  12. name: RELEASE-NAME-external-secrets-cert-controller
  13. namespace: NAMESPACE
  14. spec:
  15. replicas: 1
  16. revisionHistoryLimit: 10
  17. selector:
  18. matchLabels:
  19. app.kubernetes.io/instance: RELEASE-NAME
  20. app.kubernetes.io/name: external-secrets-cert-controller
  21. template:
  22. metadata:
  23. labels:
  24. app.kubernetes.io/instance: RELEASE-NAME
  25. app.kubernetes.io/managed-by: Helm
  26. app.kubernetes.io/name: external-secrets-cert-controller
  27. app.kubernetes.io/version: v1.0.0
  28. helm.sh/chart: external-secrets-1.0.0
  29. spec:
  30. automountServiceAccountToken: true
  31. containers:
  32. - args:
  33. - certcontroller
  34. - --crd-requeue-interval=5m
  35. - --service-name=RELEASE-NAME-external-secrets-webhook
  36. - --service-namespace=NAMESPACE
  37. - --secret-name=RELEASE-NAME-external-secrets-webhook
  38. - --secret-namespace=NAMESPACE
  39. - --metrics-addr=:8080
  40. - --healthz-addr=:8081
  41. - --loglevel=info
  42. - --zap-time-encoding=epoch
  43. - --enable-partial-cache=true
  44. image: ghcr.io/external-secrets/external-secrets:v0.20.2
  45. imagePullPolicy: IfNotPresent
  46. name: cert-controller
  47. ports:
  48. - containerPort: 8080
  49. name: metrics
  50. protocol: TCP
  51. readinessProbe:
  52. httpGet:
  53. path: /readyz
  54. port: 8081
  55. initialDelaySeconds: 20
  56. periodSeconds: 5
  57. securityContext:
  58. allowPrivilegeEscalation: false
  59. capabilities:
  60. drop:
  61. - ALL
  62. readOnlyRootFilesystem: true
  63. runAsNonRoot: true
  64. runAsUser: 1000
  65. seccompProfile:
  66. type: RuntimeDefault
  67. hostNetwork: false
  68. serviceAccountName: external-secrets-cert-controller