Skip to content

Commit e48f31d

Browse files
committed
chore: rebuild cluster repository
triggered by:
1 parent 63d943a commit e48f31d

File tree

60 files changed

+657
-173
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

60 files changed

+657
-173
lines changed
Lines changed: 44 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,44 @@
1+
apiVersion: batch/v1
2+
kind: Job
3+
metadata:
4+
annotations:
5+
helm.sh/hook: pre-upgrade
6+
helm.sh/hook-delete-policy: hook-succeeded
7+
helm.sh/hook-weight: '1'
8+
labels:
9+
app: fission-all
10+
chart: fission-all-v1.20.1
11+
release: fission
12+
name: fission-fission-all-v1.20.1-152
13+
spec:
14+
backoffLimit: 0
15+
template:
16+
metadata:
17+
labels:
18+
app: fission-all
19+
release: fission
20+
name: fission-fission-all
21+
spec:
22+
containers:
23+
- command:
24+
- /pre-upgrade-checks
25+
env:
26+
- name: FISSION_BUILDER_NAMESPACE
27+
value: ''
28+
- name: FISSION_FUNCTION_NAMESPACE
29+
value: ''
30+
- name: FISSION_DEFAULT_NAMESPACE
31+
value: default
32+
- name: FISSION_RESOURCE_NAMESPACES
33+
value: default
34+
- name: KUBE_CLIENT_QPS
35+
value: '200'
36+
- name: KUBE_CLIENT_BURST
37+
value: '500'
38+
image: fission/pre-upgrade-checks:v1.20.1
39+
imagePullPolicy: IfNotPresent
40+
name: pre-upgrade-job
41+
terminationMessagePath: /dev/termination-log
42+
terminationMessagePolicy: File
43+
restartPolicy: Never
44+
serviceAccountName: fission-preupgrade

fission/mutating-webhook-configuration_MutatingWebhookConfiguration_fission.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ webhooks:
77
- admissionReviewVersions:
88
- v1
99
clientConfig:
10-
caBundle: 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
10+
caBundle: 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
1111
service:
1212
name: webhook-service
1313
namespace: fission

fission/validating-webhook-configuration_ValidatingWebhookConfiguration_fission.yaml

Lines changed: 7 additions & 7 deletions
Large diffs are not rendered by default.

harbor/harbor-core-envvars_ConfigMap_harbor.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ metadata:
4141
app.kubernetes.io/instance: harbor
4242
app.kubernetes.io/managed-by: Helm
4343
app.kubernetes.io/name: harbor
44-
app.kubernetes.io/version: 2.10.2
45-
helm.sh/chart: harbor-21.1.1
44+
app.kubernetes.io/version: 2.12.0
45+
helm.sh/chart: harbor-24.0.2
4646
name: harbor-core-envvars
4747
namespace: harbor

harbor/harbor-core-envvars_VaultSecret_harbor.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,8 +8,8 @@ spec:
88
- _REDIS_URL_REG
99
- REGISTRY_CREDENTIAL_USERNAME
1010
- REGISTRY_CREDENTIAL_PASSWORD
11+
- POSTGRESQL_PASSWORD
1112
- CSRF_KEY
1213
- HARBOR_ADMIN_PASSWORD
13-
- POSTGRESQL_PASSWORD
1414
path: kvv2/harbor/harbor-core-envvars
1515
type: Opaque

harbor/harbor-core_ConfigMap_harbor.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ metadata:
1919
app.kubernetes.io/instance: harbor
2020
app.kubernetes.io/managed-by: Helm
2121
app.kubernetes.io/name: harbor
22-
app.kubernetes.io/version: 2.10.2
23-
helm.sh/chart: harbor-21.1.1
22+
app.kubernetes.io/version: 2.12.0
23+
helm.sh/chart: harbor-24.0.2
2424
name: harbor-core
2525
namespace: harbor

harbor/harbor-core_Deployment_harbor.yaml

Lines changed: 49 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: harbor
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: harbor
9-
app.kubernetes.io/version: 2.10.2
10-
helm.sh/chart: harbor-21.1.1
9+
app.kubernetes.io/version: 2.12.0
10+
helm.sh/chart: harbor-24.0.2
1111
name: harbor-core
1212
namespace: harbor
1313
spec:
@@ -22,15 +22,15 @@ spec:
2222
template:
2323
metadata:
2424
annotations:
25-
checksum/configmap: 766bd7a4e53f918814ea7dcf90b0069aa318309f34095c80e0cf398761496e90
26-
checksum/configmap-envvars: e14fc482c1da63010bff9710bce3736765f8a6045ff114f49beb33652bdd03b8
25+
checksum/configmap: 837d125b45c7f0c44675fd09e70f7c7681bcc0bc6da2563ee7dae04824e7d241
26+
checksum/configmap-envvars: 6d902bdd60d98c4daed328f49b969a023f5cb8597a2127c30f53f8db61c5421d
2727
labels:
2828
app.kubernetes.io/component: core
2929
app.kubernetes.io/instance: harbor
3030
app.kubernetes.io/managed-by: Helm
3131
app.kubernetes.io/name: harbor
32-
app.kubernetes.io/version: 2.10.2
33-
helm.sh/chart: harbor-21.1.1
32+
app.kubernetes.io/version: 2.12.0
33+
helm.sh/chart: harbor-24.0.2
3434
spec:
3535
affinity:
3636
nodeAffinity: null
@@ -65,17 +65,15 @@ spec:
6565
name: harbor-core-envvars
6666
- secretRef:
6767
name: harbor-core-envvars
68-
image: docker.io/bitnami/harbor-core:2.10.2-debian-12-r0
68+
image: docker.io/bitnami/harbor-core:2.12.0-debian-12-r2
6969
imagePullPolicy: IfNotPresent
7070
livenessProbe:
7171
failureThreshold: 6
72-
httpGet:
73-
path: /api/v2.0/ping
74-
port: http
75-
scheme: HTTP
7672
initialDelaySeconds: 20
7773
periodSeconds: 10
7874
successThreshold: 1
75+
tcpSocket:
76+
port: http
7977
timeoutSeconds: 5
8078
name: core
8179
ports:
@@ -96,7 +94,7 @@ spec:
9694
resources:
9795
limits:
9896
cpu: 750m
99-
ephemeral-storage: 1024Mi
97+
ephemeral-storage: 2Gi
10098
memory: 768Mi
10199
requests:
102100
cpu: 500m
@@ -119,6 +117,9 @@ spec:
119117
- mountPath: /tmp
120118
name: empty-dir
121119
subPath: tmp-dir
120+
- mountPath: /etc/ssl/certs
121+
name: empty-dir
122+
subPath: etc-ssl-certs
122123
- mountPath: /etc/core/app.conf
123124
name: config
124125
subPath: app.conf
@@ -132,11 +133,47 @@ spec:
132133
name: ca-download
133134
- mountPath: /etc/core/token
134135
name: psc
136+
initContainers:
137+
- args:
138+
- -ec
139+
- cp -r /etc/ssl/certs/* /certs
140+
command:
141+
- /bin/bash
142+
image: docker.io/bitnami/harbor-core:2.12.0-debian-12-r2
143+
imagePullPolicy: IfNotPresent
144+
name: certificate-volume
145+
resources:
146+
limits:
147+
cpu: 150m
148+
ephemeral-storage: 2Gi
149+
memory: 192Mi
150+
requests:
151+
cpu: 100m
152+
ephemeral-storage: 50Mi
153+
memory: 128Mi
154+
securityContext:
155+
allowPrivilegeEscalation: false
156+
capabilities:
157+
drop:
158+
- ALL
159+
privileged: false
160+
readOnlyRootFilesystem: true
161+
runAsGroup: 1001
162+
runAsNonRoot: true
163+
runAsUser: 1001
164+
seLinuxOptions: {}
165+
seccompProfile:
166+
type: RuntimeDefault
167+
volumeMounts:
168+
- mountPath: /certs
169+
name: empty-dir
170+
subPath: etc-ssl-certs
135171
securityContext:
136172
fsGroup: 1001
137173
fsGroupChangePolicy: Always
138174
supplementalGroups: []
139175
sysctls: []
176+
serviceAccountName: default
140177
volumes:
141178
- emptyDir: {}
142179
name: empty-dir

harbor/harbor-core_NetworkPolicy_harbor.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: harbor
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: harbor
9-
app.kubernetes.io/version: 2.10.2
10-
helm.sh/chart: harbor-21.1.1
9+
app.kubernetes.io/version: 2.12.0
10+
helm.sh/chart: harbor-24.0.2
1111
name: harbor-core
1212
namespace: harbor
1313
spec:
Lines changed: 19 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,19 @@
1+
apiVersion: policy/v1
2+
kind: PodDisruptionBudget
3+
metadata:
4+
labels:
5+
app.kubernetes.io/component: core
6+
app.kubernetes.io/instance: harbor
7+
app.kubernetes.io/managed-by: Helm
8+
app.kubernetes.io/name: harbor
9+
app.kubernetes.io/version: 2.12.0
10+
helm.sh/chart: harbor-24.0.2
11+
name: harbor-core
12+
namespace: harbor
13+
spec:
14+
maxUnavailable: 1
15+
selector:
16+
matchLabels:
17+
app.kubernetes.io/component: core
18+
app.kubernetes.io/instance: harbor
19+
app.kubernetes.io/name: harbor

harbor/harbor-core_Service_harbor.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: harbor
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: harbor
9-
app.kubernetes.io/version: 2.10.2
10-
helm.sh/chart: harbor-21.1.1
9+
app.kubernetes.io/version: 2.12.0
10+
helm.sh/chart: harbor-24.0.2
1111
name: harbor-core
1212
namespace: harbor
1313
spec:

0 commit comments

Comments
 (0)