cert_controller_test.yaml.snap 2.3 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465
  1. should match snapshot of default values:
  2. 1: |
  3. apiVersion: apps/v1
  4. kind: Deployment
  5. metadata:
  6. labels:
  7. app.kubernetes.io/instance: RELEASE-NAME
  8. app.kubernetes.io/managed-by: Helm
  9. app.kubernetes.io/name: external-secrets-cert-controller
  10. app.kubernetes.io/version: v0.9.4
  11. helm.sh/chart: external-secrets-0.9.4
  12. name: RELEASE-NAME-external-secrets-cert-controller
  13. namespace: NAMESPACE
  14. spec:
  15. replicas: 1
  16. revisionHistoryLimit: 10
  17. selector:
  18. matchLabels:
  19. app.kubernetes.io/instance: RELEASE-NAME
  20. app.kubernetes.io/name: external-secrets-cert-controller
  21. template:
  22. metadata:
  23. labels:
  24. app.kubernetes.io/instance: RELEASE-NAME
  25. app.kubernetes.io/managed-by: Helm
  26. app.kubernetes.io/name: external-secrets-cert-controller
  27. app.kubernetes.io/version: v0.9.4
  28. helm.sh/chart: external-secrets-0.9.4
  29. spec:
  30. automountServiceAccountToken: true
  31. containers:
  32. - args:
  33. - certcontroller
  34. - --crd-requeue-interval=5m
  35. - --service-name=RELEASE-NAME-external-secrets-webhook
  36. - --service-namespace=NAMESPACE
  37. - --secret-name=RELEASE-NAME-external-secrets-webhook
  38. - --secret-namespace=NAMESPACE
  39. - --metrics-addr=:8080
  40. - --healthz-addr=:8081
  41. image: ghcr.io/external-secrets/external-secrets:v0.9.4
  42. imagePullPolicy: IfNotPresent
  43. name: cert-controller
  44. ports:
  45. - containerPort: 8080
  46. name: metrics
  47. protocol: TCP
  48. readinessProbe:
  49. httpGet:
  50. path: /readyz
  51. port: 8081
  52. initialDelaySeconds: 20
  53. periodSeconds: 5
  54. securityContext:
  55. allowPrivilegeEscalation: false
  56. capabilities:
  57. drop:
  58. - ALL
  59. readOnlyRootFilesystem: true
  60. runAsNonRoot: true
  61. runAsUser: 1000
  62. seccompProfile:
  63. type: RuntimeDefault
  64. hostNetwork: false
  65. serviceAccountName: external-secrets-cert-controller