Skip to content

Commit cac1a41

Browse files
committed
fix: adds missing flag tlsOn on helm chart
1 parent 489b33c commit cac1a41

File tree

5 files changed

+37
-31
lines changed

5 files changed

+37
-31
lines changed

Dockerfile

+8-7
Original file line numberDiff line numberDiff line change
@@ -28,13 +28,14 @@ FROM node:18-alpine as runner
2828
ARG PKCS_PASSWORD=changeme
2929

3030
# TODO: Normalize GID and UID across all images
31-
ENV PKCS_PASSWORD=$PKCS_PASSWORD
32-
ENV PATH_TO_CERTS=/etc/routr/certs
33-
ENV USER=fonoster
34-
ENV GID=5000
35-
ENV UID=5000
36-
ENV JAVA_HOME=/service/jre
37-
ENV EDGEPORT_RUNNER=/service/edgeport.sh
31+
ENV PKCS_PASSWORD=$PKCS_PASSWORD \
32+
PATH_TO_CERTS=/etc/routr/certs \
33+
USER=fonoster \
34+
GID=5000 \
35+
UID=5000 \
36+
JAVA_HOME=/service/jre \
37+
EDGEPORT_RUNNER=/service/edgeport.sh \
38+
TLS_ON=true
3839

3940
WORKDIR /service
4041

ops/charts/connect/Chart.yaml

+2-2
Original file line numberDiff line numberDiff line change
@@ -2,8 +2,8 @@ apiVersion: v2
22
name: routr-connect
33
description: Routr Connect Helm Chart
44
type: application
5-
version: 0.1.6
6-
appVersion: 2.1.3
5+
version: 0.1.7
6+
appVersion: 2.1.5
77
dependencies:
88
- name: postgresql
99
version: 12.1.15

ops/charts/connect/README.md

+23-22
Original file line numberDiff line numberDiff line change
@@ -169,28 +169,29 @@ The [CHANGELOG](https://github.com/fonoster/routr/tree/gh-pages/charts/CHANGELOG
169169

170170
| Parameter | Description | Value |
171171
| ------------------------------------------------------ | ----------------------------------------------------------- | ----------------------------------- |
172-
| `apiserver.image.repository` | Image repository | ` fonoster/routr-pgdata` |
173-
| `apiserver.image.tag` | Image tag | ` 2.0.8-alpha.35` |
174-
| `apiserver.image.pullPolicy` | Image pull policy | ` IfNotPresent` |
175-
| `apiserver.migrationsEnabled` | Enables database migrations | ` true` |
176-
| `apiserver.migrationsImage.repository` | Image repository | ` fonoster/routr-pgdata-migrations` |
177-
| `apiserver.migrationsImage.tag` | Image tag | ` 2.0.8-alpha.35` |
178-
| `apiserver.migrationsImage.pullPolicy` | Image pull policy | ` IfNotPresent` |
179-
| `apiserver.podAnnotations` | Pod annotations | ` {}` |
180-
| `apiserver.serviceAnnotations` | Service annotations | ` {}` |
181-
| `apiserver.resources` | Resource quotas | ` {}` |
182-
| `apiserver.autoscaling.miniReplicas` | Minimum number of replicas | ` 1` |
183-
| `apiserver.autoscaling.maxReplicas` | Maximum number of replicas | ` 10` |
184-
| `apiserver.autoscaling.targetCPUUtilizationPercentage` | Target CPU utilization percentage | ` 50` |
185-
| `apiserver.securityContext.runAsUser` | Running as a non-root user | ` 1000` |
186-
| `apiserver.securityContext.runAsGroup` | Running as non-root group | ` 3000` |
187-
| `apiserver.securityContext.fsGroup` | File system group | ` 2000` |
188-
| `apiserver.securityContext.allowPrivilegeEscalation` | By default, no privilege escalation is allowed | ` false` |
189-
| `apiserver.livenessProbe.initialDelaySeconds` | Initial delay in seconds before starting the liveness probe | ` 5` |
190-
| `apiserver.livenessProbe.periodSeconds` | Period between liveness probes | ` 5` |
191-
| `apiserver.livenessProbe.successThreshold` | Number of successes required to be considered healthy | ` 1` |
192-
| `apiserver.livenessProbe.failureThreshold` | Number of failures required to be considered unhealthy | ` 2` |
193-
| `apiserver.livenessProbe.timeoutSeconds` | Timeout in seconds for liveness probe | ` 1` |
172+
| `apiserver.image.repository` | Image repository | `fonoster/routr-pgdata` |
173+
| `apiserver.image.tag` | Image tag | `2.0.8-alpha.35` |
174+
| `apiserver.image.pullPolicy` | Image pull policy | `IfNotPresent` |
175+
| `apiserver.migrationsEnabled` | Enables database migrations | `true` |
176+
| `apiserver.migrationsImage.repository` | Image repository | `fonoster/routr-pgdata-migrations` |
177+
| `apiserver.migrationsImage.tag` | Image tag | `2.0.8-alpha.35` |
178+
| `apiserver.migrationsImage.pullPolicy` | Image pull policy | `IfNotPresent` |
179+
| `apiserver.tlsOn` | Enables TLS for the APIServer | `true` |
180+
| `apiserver.podAnnotations` | Pod annotations | `{}` |
181+
| `apiserver.serviceAnnotations` | Service annotations | `{}` |
182+
| `apiserver.resources` | Resource quotas | `{}` |
183+
| `apiserver.autoscaling.miniReplicas` | Minimum number of replicas | `1` |
184+
| `apiserver.autoscaling.maxReplicas` | Maximum number of replicas | `10` |
185+
| `apiserver.autoscaling.targetCPUUtilizationPercentage` | Target CPU utilization percentage | `50` |
186+
| `apiserver.securityContext.runAsUser` | Running as a non-root user | `1000` |
187+
| `apiserver.securityContext.runAsGroup` | Running as non-root group | `3000` |
188+
| `apiserver.securityContext.fsGroup` | File system group | `2000` |
189+
| `apiserver.securityContext.allowPrivilegeEscalation` | By default, no privilege escalation is allowed | `false` |
190+
| `apiserver.livenessProbe.initialDelaySeconds` | Initial delay in seconds before starting the liveness probe | `5` |
191+
| `apiserver.livenessProbe.periodSeconds` | Period between liveness probes | `5` |
192+
| `apiserver.livenessProbe.successThreshold` | Number of successes required to be considered healthy | `1` |
193+
| `apiserver.livenessProbe.failureThreshold` | Number of failures required to be considered unhealthy | `2` |
194+
| `apiserver.livenessProbe.timeoutSeconds` | Timeout in seconds for liveness probe | `1` |
194195

195196
### Connect Processor parameters
196197

ops/charts/connect/templates/apiserver/deployment.yaml

+2
Original file line numberDiff line numberDiff line change
@@ -56,6 +56,8 @@ spec:
5656
value: {{ .Values.global.logsLevel }}
5757
- name: OTEL_EXPORTER_JAEGER_ENDPOINT
5858
value: {{ .Values.global.otlExporter }}
59+
- name: TLS_ON
60+
value: "{{ .Values.apiserver.tlsOn }}"
5961
ports:
6062
- containerPort: 51907
6163
# External port for the API server

ops/charts/connect/values.yaml

+2
Original file line numberDiff line numberDiff line change
@@ -227,6 +227,8 @@ apiserver:
227227
# Uncomment the next line if you would like to point to an external postgresql db
228228
# databaseUrl: postgresql://routr:changeme@dbserver:5432/routr?schema=public
229229

230+
# Set to false if you want to disable TLS for the APIServer (Not recommended)
231+
tlsOn: true
230232
# APIServer image configuration
231233
image:
232234
# APIServer image repository

0 commit comments

Comments
 (0)