Skip to content

Commit

Permalink
Add missing secret templates.
Browse files Browse the repository at this point in the history
  • Loading branch information
ainmosni committed Jun 6, 2023
1 parent 7b0be2f commit b6d13ed
Show file tree
Hide file tree
Showing 5 changed files with 11 additions and 8 deletions.
4 changes: 4 additions & 0 deletions charts/ocis/templates/_common/_configvalues.tpl
Original file line number Diff line number Diff line change
Expand Up @@ -60,6 +60,10 @@ All take the scope as the first and only parameter.
{{ .Values.secretRefs.transferSecretSecretRef | default "transfer-secret" | quote }}
{{- end -}}

{{- define "secrets.s3CredentialsSecret" -}}
{{ .Values.secretRefs.s3CredentialsSecretRef | default "s3-credentials-secret" | quote }}
{{- end -}}

{{- define "config.storageUsers" -}}
{{ .Values.configRefs.storageusersConfigRef | default "storage-users" | quote }}
{{- end -}}
Expand Down
4 changes: 2 additions & 2 deletions charts/ocis/templates/storageusers/deployment.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -94,12 +94,12 @@ spec:
- name: STORAGE_USERS_S3NG_ACCESS_KEY
valueFrom:
secretKeyRef:
name: {{ .Values.secretRefs.s3CredentialsSecretRef }}
name: {{ include "secrets.s3CredentialsSecret" . }}
key: accessKey
- name: STORAGE_USERS_S3NG_SECRET_KEY
valueFrom:
secretKeyRef:
name: {{ .Values.secretRefs.s3CredentialsSecretRef }}
name: {{ include "secrets.s3CredentialsSecret" . }}
key: secretKey
- name: STORAGE_USERS_S3NG_BUCKET
value: {{ .Values.services.storageusers.storageBackend.driverConfig.s3ng.bucket | quote }}
Expand Down
4 changes: 2 additions & 2 deletions charts/ocis/templates/storageusers/jobs.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -66,12 +66,12 @@ spec:
- name: STORAGE_USERS_S3NG_ACCESS_KEY
valueFrom:
secretKeyRef:
name: {{ .Values.secretRefs.s3CredentialsSecretRef }}
name: {{ include "secrets.s3CredentialsSecret" . }}
key: accessKey
- name: STORAGE_USERS_S3NG_SECRET_KEY
valueFrom:
secretKeyRef:
name: {{ .Values.secretRefs.s3CredentialsSecretRef }}
name: {{ include "secrets.s3CredentialsSecret" . }}
key: secretKey
- name: STORAGE_USERS_S3NG_BUCKET
value: {{ .Values.services.storageusers.storageBackend.driverConfig.s3ng.bucket | quote }}
Expand Down
2 changes: 1 addition & 1 deletion charts/ocis/templates/storageusers/secret.yaml
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
{{ if eq .Values.services.storageusers.storageBackend.driver "s3ng" -}}
{{ if and (eq .Values.services.storageusers.storageBackend.driver "s3ng") (not .Values.secretRefs.s3CredentialsSecretRef) -}}
{{ if and (.Values.services.storageusers.storageBackend.driverConfig.s3ng.accessKey) (.Values.services.storageusers.storageBackend.driverConfig.s3ng.secretKey) -}}
apiVersion: v1
kind: Secret
Expand Down
5 changes: 2 additions & 3 deletions charts/ocis/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -508,9 +508,8 @@ secretRefs:
# -- Reference to an existing transfer secret (see ref:Secrets#secrets)
transferSecretSecretRef: ""
# -- Reference to an existing s3 secret (see ref:Secrets#secrets)
# This secret needs to remain filled in, as the s3 credentials secret can be filled in via the settings
# for backwards compatibility reasons.
s3CredentialsSecretRef: "s3-credentials-secret"
# If not filled in, will attempt to to use values in `.storageusers.storageBackend.s3.driverConfig.s3ng` instead.
s3CredentialsSecretRef: ""

# Security context options.
securityContext:
Expand Down

0 comments on commit b6d13ed

Please sign in to comment.