Files
auricom-home-cluster/kubernetes/apps/default/maybe/app/externalsecret.yaml
2024-08-27 13:55:42 +02:00

34 lines
1013 B
YAML

---
# yaml-language-server: $schema=https://kubernetes-schemas.pages.dev/external-secrets.io/externalsecret_v1beta1.json
apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret
metadata:
name: maybe
namespace: default
spec:
secretStoreRef:
kind: ClusterSecretStore
name: onepassword-connect
target:
name: maybe-secret
template:
engineVersion: v2
data:
# App
SECRET_KEY_BASE: "{{ .MAYBE__SECRET_KEY_BASE }}"
DB_HOST: &dbHost postgres16-rw.database.svc.cluster.local
POSTGRES_DB: &dbName maybe
POSTGRES_USER: &dbUser "{{ .MAYBE__POSTGRES_USER }}"
POSTGRES_PASSWORD: &dbPass "{{ .MAYBE__POSTGRES_PASS }}"
# Postgres Init
INIT_POSTGRES_DBNAME: *dbName
INIT_POSTGRES_HOST: *dbHost
INIT_POSTGRES_USER: *dbUser
INIT_POSTGRES_PASS: *dbPass
INIT_POSTGRES_SUPER_PASS: "{{ .POSTGRES_SUPER_PASS }}"
dataFrom:
- extract:
key: maybe
- extract:
key: cloudnative-pg