--- # yaml-language-server: $schema=https://raw.githubusercontent.com/fluxcd-community/flux2-schemas/main/helmrelease-helm-v2beta1.json apiVersion: helm.toolkit.fluxcd.io/v2beta1 kind: HelmRelease metadata: name: &app sonarr namespace: default spec: interval: 30m chart: spec: chart: app-template version: 2.4.0 sourceRef: kind: HelmRepository name: bjw-s namespace: flux-system maxHistory: 2 install: createNamespace: true remediation: retries: 3 upgrade: cleanupOnFail: true remediation: retries: 3 uninstall: keepHistory: false values: defaultPodOptions: securityContext: runAsUser: 568 runAsGroup: 568 fsGroup: 568 fsGroupChangePolicy: OnRootMismatch controllers: main: annotations: reloader.stakater.com/auto: "true" configmap.reloader.stakater.com/reload: "sonarr-pushover" initContainers: init-db: image: repository: ghcr.io/auricom/postgres-init tag: 15.5@sha256:9b1b80d8101d3f1c73ef13b90dff2ab3bc855bd79ebcd334cba57db391ce6db0 pullPolicy: IfNotPresent envFrom: &envFrom - secretRef: name: sonarr-secret containers: main: image: repository: ghcr.io/onedr0p/sonarr-develop tag: 4.0.0.733@sha256:7f1496845bc0bf1d46b37b1013bb2a4b7af79e13b2a12dbc882d456bc869ca39 env: TZ: "${TIMEZONE}" PUSHOVER_APP_URL: &host "{{ .Release.Name }}.${SECRET_CLUSTER_DOMAIN}" PUSHOVER_DEBUG: "false" PUSHOVER_PRIORITY: "0" SONARR__AUTHENTICATION_METHOD: External SONARR__AUTHENTICATION_REQUIRED: DisabledForLocalAddresses SONARR__INSTANCE_NAME: Sonarr SONARR__PORT: &port 8080 SONARR__APPLICATION_URL: "https://{{ .Release.Name }}.${SECRET_CLUSTER_DOMAIN}" SONARR__LOG_LEVEL: info SONARR__THEME: dark envFrom: *envFrom probes: liveness: &probes enabled: true custom: true spec: httpGet: path: /ping port: *port initialDelaySeconds: 0 periodSeconds: 10 timeoutSeconds: 1 failureThreshold: 3 readiness: *probes startup: enabled: false resources: requests: cpu: 10m memory: 256M limits: memory: 1Gi service: main: ports: http: port: *port ingress: main: enabled: true className: "nginx" annotations: nginx.ingress.kubernetes.io/auth-method: GET nginx.ingress.kubernetes.io/auth-url: http://authelia.default.svc.cluster.local.:8888/api/verify nginx.ingress.kubernetes.io/auth-signin: https://auth.${SECRET_CLUSTER_DOMAIN}?rm=$request_method nginx.ingress.kubernetes.io/auth-response-headers: Remote-User,Remote-Name,Remote-Groups,Remote-Email nginx.ingress.kubernetes.io/auth-snippet: proxy_set_header X-Forwarded-Method $request_method; hajimari.io/icon: mdi:television-classic hosts: - host: *host paths: - path: / service: name: main port: http tls: - hosts: - *host persistence: config: enabled: true type: emptyDir downloads: type: nfs server: "${LOCAL_LAN_TRUENAS}" path: /mnt/storage/downloads globalMounts: - path: /mnt/storage/downloads video: type: nfs server: "${LOCAL_LAN_TRUENAS}" path: /mnt/storage/video globalMounts: - path: /mnt/storage/video scripts: type: configMap name: sonarr-pushover defaultMode: 0775 globalMounts: - path: /scripts/pushover-notify.sh subPath: pushover-notify.sh readOnly: true