fix: remove -secret from secrets
This commit is contained in:
parent
a05a759489
commit
d61eb9dffd
@ -50,9 +50,9 @@ kcreatesec gitea-admin \
|
|||||||
--from-literal=username="$GITEA_USERNAME" \
|
--from-literal=username="$GITEA_USERNAME" \
|
||||||
--from-literal=password="$GITEA_PASSWORD"
|
--from-literal=password="$GITEA_PASSWORD"
|
||||||
|
|
||||||
kcreatesec gitea-secrets \
|
kcreatesec gitea \
|
||||||
--from-literal=secret_key="$(kgseckey gitea-secrets secret_key || openssl rand -hex 32)" \
|
--from-literal=secret_key="$(kgseckey gitea secret_key || openssl rand -hex 32)" \
|
||||||
--from-literal=internal_token="$(kgseckey gitea-secrets internal_token || openssl rand -hex 32)"
|
--from-literal=internal_token="$(kgseckey gitea internal_token || openssl rand -hex 32)"
|
||||||
|
|
||||||
kcreatecm gitea \
|
kcreatecm gitea \
|
||||||
--from-file=app.ini=<(envsubst "$(env | xargs printf '$%s ')" < config/app.ini)
|
--from-file=app.ini=<(envsubst "$(env | xargs printf '$%s ')" < config/app.ini)
|
||||||
@ -65,11 +65,11 @@ kubectl rollout restart statefulset app
|
|||||||
|
|
||||||
kubectl rollout status sts app
|
kubectl rollout status sts app
|
||||||
|
|
||||||
RUNNER_TOKEN="$(kgseckey runner-secret token || kubectl exec app-0 -- gitea actions generate-runner-token)"
|
kcreatesec runner \
|
||||||
kcreatesec runner-secret --from-literal=token="$RUNNER_TOKEN"
|
--from-literal=token="$(kgseckey runner token || kubectl exec app-0 -- gitea actions generate-runner-token)"
|
||||||
|
|
||||||
RENOVATE_TOKEN="$(kgseckey renovate-secret token || kubectl exec app-0 -- gitea admin user generate-access-token --username "$GITEA_USERNAME" --token-name RENOVATE --scopes 'write:repository,read:user,write:issue,read:organization' | grep -o '[a-f0-9]\+$')"
|
kcreatesec renovate \
|
||||||
kcreatesec renovate-secret --from-literal=token="$RENOVATE_TOKEN"
|
--from-literal=token="$(kgseckey renovate token || kubectl exec app-0 -- gitea admin user generate-access-token --username "$GITEA_USERNAME" --token-name RENOVATE --scopes 'write:repository,read:user,write:issue,read:organization' | grep -o '[a-f0-9]\+$')"
|
||||||
|
|
||||||
kapply common/runner.yaml common/renovate.yaml
|
kapply common/runner.yaml common/renovate.yaml
|
||||||
|
|
||||||
|
@ -78,7 +78,7 @@ spec:
|
|||||||
name: gitea
|
name: gitea
|
||||||
- name: secrets
|
- name: secrets
|
||||||
secret:
|
secret:
|
||||||
secretName: gitea-secrets
|
secretName: gitea
|
||||||
volumeClaimTemplates:
|
volumeClaimTemplates:
|
||||||
- metadata:
|
- metadata:
|
||||||
name: data
|
name: data
|
||||||
|
@ -29,5 +29,5 @@ spec:
|
|||||||
name: gitea
|
name: gitea
|
||||||
- name: secrets
|
- name: secrets
|
||||||
secret:
|
secret:
|
||||||
secretName: gitea-secrets
|
secretName: gitea
|
||||||
backoffLimit: 4
|
backoffLimit: 4
|
||||||
|
@ -27,5 +27,5 @@ spec:
|
|||||||
- name: RENOVATE_TOKEN
|
- name: RENOVATE_TOKEN
|
||||||
valueFrom:
|
valueFrom:
|
||||||
secretKeyRef:
|
secretKeyRef:
|
||||||
name: runner-secret
|
name: runner
|
||||||
key: token
|
key: token
|
||||||
|
@ -36,7 +36,7 @@ spec:
|
|||||||
- name: GITEA_RUNNER_REGISTRATION_TOKEN
|
- name: GITEA_RUNNER_REGISTRATION_TOKEN
|
||||||
valueFrom:
|
valueFrom:
|
||||||
secretKeyRef:
|
secretKeyRef:
|
||||||
name: runner-secret
|
name: runner
|
||||||
key: token
|
key: token
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- name: data
|
- name: data
|
||||||
|
Loading…
Reference in New Issue
Block a user