You've already forked prometheus-postgres-exporter
							
							Compare commits
	
		
			48 Commits
		
	
	
		
			0.3.1
			...
			9840520b71
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
| 
						
						
							
						
						9840520b71
	
				 | 
					
					
						|||
| 
						
						
							
						
						3940ea39c5
	
				 | 
					
					
						|||
| 
						
						
							
						
						a6ec076ce6
	
				 | 
					
					
						|||
| 
						
						
							
						
						12970b3820
	
				 | 
					
					
						|||
| 
						
						
							
						
						dbd6b83218
	
				 | 
					
					
						|||
| 
						
						
							
						
						e466c50e35
	
				 | 
					
					
						|||
| 
						
						
							
						
						19d683d712
	
				 | 
					
					
						|||
| 
						
						
							
						
						69f068c406
	
				 | 
					
					
						|||
| 
						
						
							
						
						1edd96e3e1
	
				 | 
					
					
						|||
| 
						
						
							
						
						80819f16ef
	
				 | 
					
					
						|||
| 
						
						
							
						
						3dcb8173e3
	
				 | 
					
					
						|||
| 
						
						
							
						
						5c20ed5f31
	
				 | 
					
					
						|||
| 
						
						
							
						
						39534a06dc
	
				 | 
					
					
						|||
| 
						
						
							
						
						34b5e27456
	
				 | 
					
					
						|||
| 
						
						
							
						
						74b6ddf46d
	
				 | 
					
					
						|||
| 
						
						
							
						
						7323ba09bf
	
				 | 
					
					
						|||
| 
						
						
							
						
						3f4c459d43
	
				 | 
					
					
						|||
| 304139cb6d | |||
| 
						
						
							
						
						08ca70c65c
	
				 | 
					
					
						|||
| 
						
						
							
						
						6f954dfdf6
	
				 | 
					
					
						|||
| 
						
						
							
						
						b88ae944e6
	
				 | 
					
					
						|||
| 
						
						
							
						
						29b908f8da
	
				 | 
					
					
						|||
| 76134921b8 | |||
| 
						
						
							
						
						7ebfd12593
	
				 | 
					
					
						|||
| 
						
						
							
						
						74ef3835f4
	
				 | 
					
					
						|||
| 
						
						
							
						
						80c8ff0d3b
	
				 | 
					
					
						|||
| 
						
						
							
						
						de379ec1ef
	
				 | 
					
					
						|||
| 
						
						
							
						
						9275bca045
	
				 | 
					
					
						|||
| 
						
						
							
						
						a33f92e63d
	
				 | 
					
					
						|||
| 
						
						
							
						
						db3fbb9497
	
				 | 
					
					
						|||
| 
						
						
							
						
						4d349c36ff
	
				 | 
					
					
						|||
| 
						
						
							
						
						a3038a75c8
	
				 | 
					
					
						|||
| 
						
						
							
						
						c497a31ecc
	
				 | 
					
					
						|||
| 
						
						
							
						
						c7a07eb7d1
	
				 | 
					
					
						|||
| 
						
						
							
						
						4b19f57ac5
	
				 | 
					
					
						|||
| 
						
						
							
						
						310cdfaffe
	
				 | 
					
					
						|||
| 
						
						
							
						
						8c2665fdc6
	
				 | 
					
					
						|||
| 
						
						
							
						
						bb9d71d233
	
				 | 
					
					
						|||
| 
						
						
							
						
						ded6c55521
	
				 | 
					
					
						|||
| 
						
						
							
						
						b3a9ddd487
	
				 | 
					
					
						|||
| 
						
						
							
						
						f87d417e73
	
				 | 
					
					
						|||
| 
						
						
							
						
						fb218484d0
	
				 | 
					
					
						|||
| 
						
						
							
						
						b29f79370c
	
				 | 
					
					
						|||
| 
						
						
							
						
						814dd01995
	
				 | 
					
					
						|||
| 75292a54ca | |||
| 
						
						
							
						
						744e0141e4
	
				 | 
					
					
						|||
| 
						
						
							
						
						cc61720a11
	
				 | 
					
					
						|||
| 
						
						
							
						
						90d48f8450
	
				 | 
					
					
						
@@ -5,6 +5,8 @@ on:
 | 
			
		||||
    paths: [ "README.md", "values.yaml" ]
 | 
			
		||||
    types: [ "opened", "reopened", "synchronize" ]
 | 
			
		||||
  push:
 | 
			
		||||
    branches:
 | 
			
		||||
    - '**'
 | 
			
		||||
    paths: [ "README.md", "values.yaml" ]
 | 
			
		||||
    tags-ignore:
 | 
			
		||||
    - '**'
 | 
			
		||||
@@ -13,7 +15,7 @@ on:
 | 
			
		||||
jobs:
 | 
			
		||||
  generate-parameters:
 | 
			
		||||
    container:
 | 
			
		||||
      image: docker.io/library/node:22.13.0-alpine
 | 
			
		||||
      image: docker.io/library/node:23.11.1-alpine
 | 
			
		||||
    runs-on:
 | 
			
		||||
    - ubuntu-latest
 | 
			
		||||
    steps:
 | 
			
		||||
 
 | 
			
		||||
@@ -4,6 +4,8 @@ on:
 | 
			
		||||
  pull_request:
 | 
			
		||||
    types: [ "opened", "reopened", "synchronize" ]
 | 
			
		||||
  push:
 | 
			
		||||
    branches:
 | 
			
		||||
    - '**'
 | 
			
		||||
    tags-ignore:
 | 
			
		||||
    - '**'
 | 
			
		||||
  workflow_dispatch: {}
 | 
			
		||||
@@ -11,7 +13,7 @@ on:
 | 
			
		||||
jobs:
 | 
			
		||||
  helm-lint:
 | 
			
		||||
    container:
 | 
			
		||||
      image: docker.io/volkerraschek/helm:3.16.4
 | 
			
		||||
      image: docker.io/volkerraschek/helm:3.17.3
 | 
			
		||||
    runs-on:
 | 
			
		||||
    - ubuntu-latest
 | 
			
		||||
    steps:
 | 
			
		||||
@@ -26,7 +28,7 @@ jobs:
 | 
			
		||||
 | 
			
		||||
  helm-unittest:
 | 
			
		||||
    container:
 | 
			
		||||
      image: docker.io/volkerraschek/helm:3.16.4
 | 
			
		||||
      image: docker.io/volkerraschek/helm:3.17.3
 | 
			
		||||
    runs-on:
 | 
			
		||||
    - ubuntu-latest
 | 
			
		||||
    steps:
 | 
			
		||||
 
 | 
			
		||||
@@ -5,6 +5,8 @@ on:
 | 
			
		||||
    paths: [ "**/*.md" ]
 | 
			
		||||
    types: [ "opened", "reopened", "synchronize" ]
 | 
			
		||||
  push:
 | 
			
		||||
    branches:
 | 
			
		||||
    - '**'
 | 
			
		||||
    paths: [ "**/*.md" ]
 | 
			
		||||
    tags-ignore:
 | 
			
		||||
    - '**'
 | 
			
		||||
@@ -13,7 +15,7 @@ on:
 | 
			
		||||
jobs:
 | 
			
		||||
  markdown-link-checker:
 | 
			
		||||
    container:
 | 
			
		||||
      image: docker.io/library/node:22.13.0-alpine
 | 
			
		||||
      image: docker.io/library/node:23.11.1-alpine
 | 
			
		||||
    runs-on:
 | 
			
		||||
    - ubuntu-latest
 | 
			
		||||
    steps:
 | 
			
		||||
@@ -29,7 +31,7 @@ jobs:
 | 
			
		||||
 | 
			
		||||
  markdown-lint:
 | 
			
		||||
    container:
 | 
			
		||||
      image: docker.io/library/node:22.13.0-alpine
 | 
			
		||||
      image: docker.io/library/node:23.11.1-alpine
 | 
			
		||||
    runs-on:
 | 
			
		||||
    - ubuntu-latest
 | 
			
		||||
    steps:
 | 
			
		||||
 
 | 
			
		||||
@@ -8,7 +8,7 @@ on:
 | 
			
		||||
jobs:
 | 
			
		||||
  publish-chart:
 | 
			
		||||
    container:
 | 
			
		||||
      image: docker.io/volkerraschek/helm:3.16.4
 | 
			
		||||
      image: docker.io/volkerraschek/helm:3.17.3
 | 
			
		||||
    runs-on: ubuntu-latest
 | 
			
		||||
    steps:
 | 
			
		||||
      - name: Install tooling
 | 
			
		||||
 
 | 
			
		||||
@@ -4,7 +4,7 @@ description: Prometheus metric exporter for PostgreSQL
 | 
			
		||||
type: application
 | 
			
		||||
kubeVersion: ">=1.20.0"
 | 
			
		||||
version: "0.1.0"
 | 
			
		||||
appVersion: "0.16.0"
 | 
			
		||||
appVersion: "0.17.1"
 | 
			
		||||
 | 
			
		||||
# icon: https://annotations.example.com/icon.png
 | 
			
		||||
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										4
									
								
								Makefile
									
									
									
									
									
								
							
							
						
						
									
										4
									
								
								Makefile
									
									
									
									
									
								
							@@ -4,13 +4,13 @@ CONTAINER_RUNTIME?=$(shell which podman)
 | 
			
		||||
# HELM_IMAGE
 | 
			
		||||
HELM_IMAGE_REGISTRY_HOST?=docker.io
 | 
			
		||||
HELM_IMAGE_REPOSITORY?=volkerraschek/helm
 | 
			
		||||
HELM_IMAGE_VERSION?=3.16.1 # renovate: datasource=docker registryUrl=https://docker.io depName=volkerraschek/helm
 | 
			
		||||
HELM_IMAGE_VERSION?=3.17.3 # renovate: datasource=docker registryUrl=https://docker.io depName=volkerraschek/helm
 | 
			
		||||
HELM_IMAGE_FULLY_QUALIFIED=${HELM_IMAGE_REGISTRY_HOST}/${HELM_IMAGE_REPOSITORY}:${HELM_IMAGE_VERSION}
 | 
			
		||||
 | 
			
		||||
# NODE_IMAGE
 | 
			
		||||
NODE_IMAGE_REGISTRY_HOST?=docker.io
 | 
			
		||||
NODE_IMAGE_REPOSITORY?=library/node
 | 
			
		||||
NODE_IMAGE_VERSION?=22.9.0-alpine # renovate: datasource=docker registryUrl=https://docker.io depName=library/node
 | 
			
		||||
NODE_IMAGE_VERSION?=22.15.1-alpine # renovate: datasource=docker registryUrl=https://docker.io depName=library/node
 | 
			
		||||
NODE_IMAGE_FULLY_QUALIFIED=${NODE_IMAGE_REGISTRY_HOST}/${NODE_IMAGE_REPOSITORY}:${NODE_IMAGE_VERSION}
 | 
			
		||||
 | 
			
		||||
# MISSING DOT
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										95
									
								
								README.md
									
									
									
									
									
								
							
							
						
						
									
										95
									
								
								README.md
									
									
									
									
									
								
							@@ -20,7 +20,7 @@ helm chart is tested for deployment scenarios with **ArgoCD**.
 | 
			
		||||
## Helm: configuration and installation
 | 
			
		||||
 | 
			
		||||
1. A helm chart repository must be configured, to pull the helm charts from.
 | 
			
		||||
2. All available parameters are [here](#parameters) in detail document. The parameters can be defined via the helm
 | 
			
		||||
2. All available parameters are [here](#parameters) in detail documented. The parameters can be defined via the helm
 | 
			
		||||
   `--set` flag or directly as part of a `values.yaml` file. The following example defines the `prometheus-exporter`
 | 
			
		||||
   repository and use the `--set` flag for a basic deployment.
 | 
			
		||||
 | 
			
		||||
@@ -46,7 +46,7 @@ version of the chart must be in sync with the `values.yaml`. Newer *minor* versi
 | 
			
		||||
versions can break something!
 | 
			
		||||
 | 
			
		||||
```bash
 | 
			
		||||
CHART_VERSION=0.1.0
 | 
			
		||||
CHART_VERSION=0.4.2
 | 
			
		||||
helm show values prometheus-exporters/prometheus-postgres-exporter --version "${CHART_VERSION}" > values.yaml
 | 
			
		||||
```
 | 
			
		||||
 | 
			
		||||
@@ -71,7 +71,7 @@ cannot use the available CPU time to perform computing operations.
 | 
			
		||||
 | 
			
		||||
The application must be informed that despite several CPUs only a part (limit) of the available computing time is
 | 
			
		||||
available. As this is a Golang application, this can be implemented using `GOMAXPROCS`. The following example is one way
 | 
			
		||||
of defining `GOMAXPROCS` automatically based on the defined CPU limit like `100m`. Please keep in mind, that the CFS
 | 
			
		||||
of defining `GOMAXPROCS` automatically based on the defined CPU limit like `1000m`. Please keep in mind, that the CFS
 | 
			
		||||
rate of `100ms` - default on each kubernetes node, is also very important to avoid CPU throttling.
 | 
			
		||||
 | 
			
		||||
Further information about this topic can be found [here](https://kanishk.io/posts/cpu-throttling-in-containerized-go-apps/).
 | 
			
		||||
@@ -79,6 +79,8 @@ Further information about this topic can be found [here](https://kanishk.io/post
 | 
			
		||||
> [!NOTE]
 | 
			
		||||
> The environment variable `GOMAXPROCS` is set automatically, when a CPU limit is defined. An explicit configuration is
 | 
			
		||||
> not anymore required.
 | 
			
		||||
>
 | 
			
		||||
> Please take care the a CPU limit < `1000m` can also lead to CPU throttling. Please read the linked documentation carefully.
 | 
			
		||||
 | 
			
		||||
```bash
 | 
			
		||||
helm install prometheus-postgres-exporter prometheus-exporters/prometheus-postgres-exporter \
 | 
			
		||||
@@ -89,7 +91,7 @@ helm install prometheus-postgres-exporter prometheus-exporters/prometheus-postgr
 | 
			
		||||
  --set 'prometheus.metrics.serviceMonitor.enabled=true' \
 | 
			
		||||
  --set 'deployment.postgresExporter.env.name=GOMAXPROCS' \
 | 
			
		||||
  --set 'deployment.postgresExporter.env.valueFrom.resourceFieldRef.resource=limits.cpu' \
 | 
			
		||||
  --set 'deployment.postgresExporter.resources.limits.cpu=100m'
 | 
			
		||||
  --set 'deployment.postgresExporter.resources.limits.cpu=1000m'
 | 
			
		||||
```
 | 
			
		||||
 | 
			
		||||
#### TLS authentication and encryption
 | 
			
		||||
@@ -187,6 +189,75 @@ deployment:
 | 
			
		||||
            - postgres
 | 
			
		||||
```
 | 
			
		||||
 | 
			
		||||
### Network policies
 | 
			
		||||
 | 
			
		||||
Network policies can only take effect, when the used CNI plugin support network policies. The chart supports no custom
 | 
			
		||||
network policy implementation of CNI plugins. It's support only the official API resource of `networking.k8s.io/v1`.
 | 
			
		||||
 | 
			
		||||
The object networkPolicies can contains multiple networkPolicy definitions. There is currently only one example
 | 
			
		||||
predefined - it's named `default`. Further networkPolicy rules can easy be added by defining additional objects. For example:
 | 
			
		||||
 | 
			
		||||
> [!NOTE]
 | 
			
		||||
> The structure of each custom network policy must be equal like that of default. For this reason don't forget to define
 | 
			
		||||
> `annotations`, `labels` and the other properties as well.
 | 
			
		||||
 | 
			
		||||
```yaml
 | 
			
		||||
networkPolicies:
 | 
			
		||||
  enabled: false
 | 
			
		||||
  default: {}
 | 
			
		||||
  my-custom-network-policy: {}
 | 
			
		||||
```
 | 
			
		||||
 | 
			
		||||
The example below is an excerpt of the `values.yaml` file. The network policy `default` contains ingress rules to allow
 | 
			
		||||
incoming traffic from Prometheus. Additionally two egress rules are defined, to allow the application outgoing access to
 | 
			
		||||
the internal running DNS server `core-dns` and the external running postgres database listen on `10.14.243.12`.
 | 
			
		||||
 | 
			
		||||
> [!IMPORTANT]
 | 
			
		||||
> Please keep in mind, that the namespace and pod selector labels can be different from environment to environment. For
 | 
			
		||||
> this reason, there is are not default network policy rules defined.
 | 
			
		||||
 | 
			
		||||
```yaml
 | 
			
		||||
networkPolicies:
 | 
			
		||||
  enabled: true
 | 
			
		||||
  default:
 | 
			
		||||
    enabled: true
 | 
			
		||||
    annotations: {}
 | 
			
		||||
    labels: {}
 | 
			
		||||
    policyTypes:
 | 
			
		||||
    - Egress
 | 
			
		||||
    - Ingress
 | 
			
		||||
    egress:
 | 
			
		||||
    - to:
 | 
			
		||||
      - ipBlock:
 | 
			
		||||
          cidr: 10.14.243.12/32
 | 
			
		||||
      ports:
 | 
			
		||||
      - port: 5432
 | 
			
		||||
        protocol: TCP
 | 
			
		||||
    - to:
 | 
			
		||||
      - namespaceSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            kubernetes.io/metadata.name: kube-system
 | 
			
		||||
        podSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
           k8s-app: kube-dns
 | 
			
		||||
      ports:
 | 
			
		||||
      - port: 53
 | 
			
		||||
        protocol: TCP
 | 
			
		||||
      - port: 53
 | 
			
		||||
        protocol: UDP
 | 
			
		||||
    ingress:
 | 
			
		||||
    - from:
 | 
			
		||||
      - namespaceSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            kubernetes.io/metadata.name: monitoring
 | 
			
		||||
        podSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            app.kubernetes.io/name: prometheus
 | 
			
		||||
      ports:
 | 
			
		||||
      - port: http
 | 
			
		||||
        protocol: TCP
 | 
			
		||||
```
 | 
			
		||||
 | 
			
		||||
## Parameters
 | 
			
		||||
 | 
			
		||||
### Global
 | 
			
		||||
@@ -248,7 +319,7 @@ deployment:
 | 
			
		||||
| `deployment.replicas`                              | Number of replicas for the postgres-exporter deployment.                                                   | `1`                                     |
 | 
			
		||||
| `deployment.restartPolicy`                         | Restart policy of the postgres-exporter deployment.                                                        | `""`                                    |
 | 
			
		||||
| `deployment.securityContext`                       | Security context of the postgres-exporter deployment.                                                      | `{}`                                    |
 | 
			
		||||
| `deployment.strategy.type`                         | Strategy type - `Recreate` or `Rollingupdate`.                                                             | `Recreate`                              |
 | 
			
		||||
| `deployment.strategy.type`                         | Strategy type - `Recreate` or `RollingUpdate`.                                                             | `RollingUpdate`                         |
 | 
			
		||||
| `deployment.strategy.rollingUpdate.maxSurge`       | The maximum number of pods that can be scheduled above the desired number of pods during a rolling update. | `1`                                     |
 | 
			
		||||
| `deployment.strategy.rollingUpdate.maxUnavailable` | The maximum number of pods that can be unavailable during a rolling update.                                | `1`                                     |
 | 
			
		||||
| `deployment.terminationGracePeriodSeconds`         | How long to wait until forcefully kill the pod.                                                            | `60`                                    |
 | 
			
		||||
@@ -283,11 +354,17 @@ deployment:
 | 
			
		||||
| --------------------- | ---------------------- | ----- |
 | 
			
		||||
| `podDisruptionBudget` | Pod disruption budget. | `{}`  |
 | 
			
		||||
 | 
			
		||||
### Network
 | 
			
		||||
### NetworkPolicies
 | 
			
		||||
 | 
			
		||||
| Name              | Description                                                                                                        | Value |
 | 
			
		||||
| ----------------- | ------------------------------------------------------------------------------------------------------------------ | ----- |
 | 
			
		||||
| `networkPolicies` | Deploy network policies based on the used container network interface (CNI) implementation - like calico or weave. | `{}`  |
 | 
			
		||||
| Name                                  | Description                                                                                           | Value   |
 | 
			
		||||
| ------------------------------------- | ----------------------------------------------------------------------------------------------------- | ------- |
 | 
			
		||||
| `networkPolicies.enabled`             | Enable network policies in general.                                                                   | `false` |
 | 
			
		||||
| `networkPolicies.default.enabled`     | Enable the network policy for accessing the application by default. For example to scape the metrics. | `false` |
 | 
			
		||||
| `networkPolicies.default.annotations` | Additional network policy annotations.                                                                | `{}`    |
 | 
			
		||||
| `networkPolicies.default.labels`      | Additional network policy labels.                                                                     | `{}`    |
 | 
			
		||||
| `networkPolicies.default.policyTypes` | List of policy types. Supported is ingress, egress or ingress and egress.                             | `[]`    |
 | 
			
		||||
| `networkPolicies.default.egress`      | Concrete egress network policy implementation.                                                        | `[]`    |
 | 
			
		||||
| `networkPolicies.default.ingress`     | Concrete ingress network policy implementation.                                                       | `[]`    |
 | 
			
		||||
 | 
			
		||||
### Prometheus
 | 
			
		||||
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										1214
									
								
								package-lock.json
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										1214
									
								
								package-lock.json
									
									
									
										generated
									
									
									
								
							
										
											
												File diff suppressed because it is too large
												Load Diff
											
										
									
								
							@@ -16,6 +16,6 @@
 | 
			
		||||
  "devDependencies": {
 | 
			
		||||
    "@bitnami/readme-generator-for-helm": "^2.5.0",
 | 
			
		||||
    "markdown-link-check": "^3.13.6",
 | 
			
		||||
    "markdownlint-cli": "^0.43.0"
 | 
			
		||||
    "markdownlint-cli": "^0.44.0"
 | 
			
		||||
  }
 | 
			
		||||
}
 | 
			
		||||
 
 | 
			
		||||
@@ -1,9 +1,14 @@
 | 
			
		||||
{
 | 
			
		||||
  "$schema": "https://docs.renovatebot.com/renovate-schema.json",
 | 
			
		||||
  "assignees": [ "volker.raschek" ],
 | 
			
		||||
  "extends": [
 | 
			
		||||
    "local>volker.raschek/renovate-config:default#master",
 | 
			
		||||
    "local>volker.raschek/renovate-config:container#master",
 | 
			
		||||
    "local>volker.raschek/renovate-config:actions#master",
 | 
			
		||||
    "local>volker.raschek/renovate-config:npm#master",
 | 
			
		||||
    "local>volker.raschek/renovate-config:regexp#master"
 | 
			
		||||
  ],
 | 
			
		||||
  "customManagers": [
 | 
			
		||||
    {
 | 
			
		||||
      "description": "Update container image reference",
 | 
			
		||||
      "fileMatch": [
 | 
			
		||||
        "^Chart\\.yaml$"
 | 
			
		||||
      ],
 | 
			
		||||
@@ -16,28 +21,22 @@
 | 
			
		||||
      "versioningTemplate": "semver"
 | 
			
		||||
    },
 | 
			
		||||
    {
 | 
			
		||||
      "description": "Detect helm chart version in README",
 | 
			
		||||
      "fileMatch": ["^README\\.md$"],
 | 
			
		||||
      "matchStrings": [
 | 
			
		||||
        "^CHART_VERSION=(?<currentValue>.*)$"
 | 
			
		||||
        "VERSION=(?<currentValue>.*)"
 | 
			
		||||
      ],
 | 
			
		||||
      "datasourceTemplate": "git-tags",
 | 
			
		||||
      "depNameTemplate": "volker.raschek/prometheus-postgres-exporter",
 | 
			
		||||
      "packageNameTemplate": "https://git.cryptic.systems/volker.raschek/prometheus-postgres-exporter",
 | 
			
		||||
      "datasourceTemplate": "git-tags",
 | 
			
		||||
      "versioningTemplate": "semver"
 | 
			
		||||
    }
 | 
			
		||||
  ],
 | 
			
		||||
  "labels": [ "renovate" ],
 | 
			
		||||
  "packageRules": [
 | 
			
		||||
    {
 | 
			
		||||
      "addLabels": [ "renovate/automerge", "renovate/npm" ],
 | 
			
		||||
      "automerge": true,
 | 
			
		||||
      "matchPackageNames": [ "markdownlint-cli", "@bitnami/readme-generator-for-helm" ],
 | 
			
		||||
      "matchManagers": [ "npm" ],
 | 
			
		||||
      "matchUpdateTypes": [ "minor", "patch"]
 | 
			
		||||
    },
 | 
			
		||||
    {
 | 
			
		||||
      "addLabels": [ "renovate/automerge", "renovate/container" ],
 | 
			
		||||
      "addLabels": [
 | 
			
		||||
        "renovate/automerge",
 | 
			
		||||
        "renovate/container"
 | 
			
		||||
      ],
 | 
			
		||||
      "automerge": true,
 | 
			
		||||
      "excludePackagePatterns": [
 | 
			
		||||
        "prometheuscommunity/postgres-exporter"
 | 
			
		||||
@@ -51,7 +50,10 @@
 | 
			
		||||
      ]
 | 
			
		||||
    },
 | 
			
		||||
    {
 | 
			
		||||
      "addLabels": [ "renovate/automerge", "renovate/documentation" ],
 | 
			
		||||
      "addLabels": [
 | 
			
		||||
        "renovate/automerge",
 | 
			
		||||
        "renovate/documentation"
 | 
			
		||||
      ],
 | 
			
		||||
      "automerge": true,
 | 
			
		||||
      "matchDepNames": [
 | 
			
		||||
        "volker.raschek/prometheus-postgres-exporter"
 | 
			
		||||
@@ -62,7 +64,5 @@
 | 
			
		||||
        "patch"
 | 
			
		||||
      ]
 | 
			
		||||
    }
 | 
			
		||||
  ],
 | 
			
		||||
  "rebaseLabel": "renovate/rebase",
 | 
			
		||||
  "rebaseWhen": "behind-base-branch"
 | 
			
		||||
  ]
 | 
			
		||||
}
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										19
									
								
								templates/prometheus-postgres-exporter/_networkPolicies.tpl
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										19
									
								
								templates/prometheus-postgres-exporter/_networkPolicies.tpl
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,19 @@
 | 
			
		||||
{{/* vim: set filetype=mustache: */}}
 | 
			
		||||
 | 
			
		||||
{{/* annotations */}}
 | 
			
		||||
 | 
			
		||||
{{- define "prometheus-postgres-exporter.networkPolicies.annotations" -}}
 | 
			
		||||
{{ include "prometheus-postgres-exporter.annotations" .context }}
 | 
			
		||||
{{- if .networkPolicy.annotations }}
 | 
			
		||||
{{ toYaml .networkPolicy.annotations }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
 | 
			
		||||
{{/* labels */}}
 | 
			
		||||
 | 
			
		||||
{{- define "prometheus-postgres-exporter.networkPolicies.labels" -}}
 | 
			
		||||
{{ include "prometheus-postgres-exporter.labels" .context }}
 | 
			
		||||
{{- if .networkPolicy.labels }}
 | 
			
		||||
{{ toYaml .networkPolicy.labels }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
@@ -5,7 +5,7 @@ kind: ConfigMap
 | 
			
		||||
metadata:
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.configMap.grafanaDashboards.postgresExporter.annotations" . | fromYaml) }}
 | 
			
		||||
  annotations:
 | 
			
		||||
    {{- tpl (. | toYaml) $ | nindent 4 }}
 | 
			
		||||
    {{- tpl (toYaml .) $ | nindent 4 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.configMap.grafanaDashboards.postgresExporter.labels" . | fromYaml) }}
 | 
			
		||||
  labels:
 | 
			
		||||
 
 | 
			
		||||
@@ -3,7 +3,7 @@ kind: Deployment
 | 
			
		||||
metadata:
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.deployment.annotations" . | fromYaml) }}
 | 
			
		||||
  annotations:
 | 
			
		||||
    {{- tpl (. | toYaml) $ | nindent 4 }}
 | 
			
		||||
    {{- tpl (toYaml .) $ | nindent 4 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.deployment.labels" . | fromYaml) }}
 | 
			
		||||
  labels:
 | 
			
		||||
@@ -126,3 +126,7 @@ spec:
 | 
			
		||||
      volumes:
 | 
			
		||||
      {{- toYaml $volumes.volumes | nindent 6 }}
 | 
			
		||||
      {{- end }}
 | 
			
		||||
  {{- with .Values.deployment.strategy }}
 | 
			
		||||
  strategy:
 | 
			
		||||
    {{- toYaml . | nindent 4 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
@@ -5,7 +5,7 @@ kind: Ingress
 | 
			
		||||
metadata:
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.ingress.annotations" . | fromYaml) }}
 | 
			
		||||
  annotations:
 | 
			
		||||
    {{- tpl (. | toYaml) $ | nindent 4 }}
 | 
			
		||||
    {{- tpl (toYaml .) $ | nindent 4 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.ingress.labels" . | fromYaml) }}
 | 
			
		||||
  labels:
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										36
									
								
								templates/prometheus-postgres-exporter/networkPolicies.yaml
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										36
									
								
								templates/prometheus-postgres-exporter/networkPolicies.yaml
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,36 @@
 | 
			
		||||
{{- if .Values.networkPolicies.enabled }}
 | 
			
		||||
{{- range $key, $value := .Values.networkPolicies -}}
 | 
			
		||||
{{- if and (not (eq $key "enabled")) $value.enabled }}
 | 
			
		||||
---
 | 
			
		||||
apiVersion: networking.k8s.io/v1
 | 
			
		||||
kind: NetworkPolicy
 | 
			
		||||
metadata:
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.networkPolicies.annotations" (dict "networkPolicy" $value "context" $) | fromYaml) }}
 | 
			
		||||
  annotations:
 | 
			
		||||
    {{- toYaml . | nindent 4 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  {{- with (include "prometheus-postgres-exporter.networkPolicies.labels" (dict "networkPolicy" $value "context" $) | fromYaml) }}
 | 
			
		||||
  labels:
 | 
			
		||||
    {{- toYaml . | nindent 4 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  name: {{ printf "%s-%s" (include "prometheus-postgres-exporter.fullname" $ ) $key }}
 | 
			
		||||
  namespace: {{ $.Release.Namespace }}
 | 
			
		||||
spec:
 | 
			
		||||
  podSelector:
 | 
			
		||||
    matchLabels:
 | 
			
		||||
      {{- include "prometheus-postgres-exporter.pod.selectorLabels" $ | nindent 6 }}
 | 
			
		||||
  {{- with $value.policyTypes }}
 | 
			
		||||
  policyTypes:
 | 
			
		||||
  {{- toYaml . | nindent 2 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  {{- with $value.egress }}
 | 
			
		||||
  egress:
 | 
			
		||||
  {{- toYaml . | nindent 2 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
  {{- with $value.ingress }}
 | 
			
		||||
  ingress:
 | 
			
		||||
  {{- toYaml . | nindent 2 }}
 | 
			
		||||
  {{- end }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
{{- end }}
 | 
			
		||||
@@ -95,6 +95,13 @@ tests:
 | 
			
		||||
      path: spec.template.spec.tolerations
 | 
			
		||||
  - notExists:
 | 
			
		||||
      path: spec.template.spec.topologySpreadConstraints
 | 
			
		||||
  - equal:
 | 
			
		||||
      path: spec.strategy
 | 
			
		||||
      value:
 | 
			
		||||
        type: "RollingUpdate"
 | 
			
		||||
        rollingUpdate:
 | 
			
		||||
          maxSurge: 1
 | 
			
		||||
          maxUnavailable: 1
 | 
			
		||||
 | 
			
		||||
- it: Test custom replicas
 | 
			
		||||
  set:
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										118
									
								
								unittests/networkPolicies/default.yaml
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										118
									
								
								unittests/networkPolicies/default.yaml
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,118 @@
 | 
			
		||||
chart:
 | 
			
		||||
  appVersion: 0.1.0
 | 
			
		||||
  version: 0.1.0
 | 
			
		||||
suite: NetworkPolicies template (basic)
 | 
			
		||||
release:
 | 
			
		||||
  name: prometheus-postgres-exporter-unittest
 | 
			
		||||
  namespace: testing
 | 
			
		||||
templates:
 | 
			
		||||
- templates/prometheus-postgres-exporter/networkPolicies.yaml
 | 
			
		||||
tests:
 | 
			
		||||
- it: Skip networkPolicies in general disabled.
 | 
			
		||||
  set:
 | 
			
		||||
    networkPolicies.enabled: false
 | 
			
		||||
  asserts:
 | 
			
		||||
  - hasDocuments:
 | 
			
		||||
      count: 0
 | 
			
		||||
 | 
			
		||||
- it: Skip networkPolicy 'default' when disabled.
 | 
			
		||||
  set:
 | 
			
		||||
    networkPolicies.enabled: true
 | 
			
		||||
    networkPolicies.default.enabled: false
 | 
			
		||||
  asserts:
 | 
			
		||||
  - hasDocuments:
 | 
			
		||||
      count: 0
 | 
			
		||||
 | 
			
		||||
- it: Loop over networkPolicies
 | 
			
		||||
  set:
 | 
			
		||||
    networkPolicies.enabled: true
 | 
			
		||||
    networkPolicies.default.enabled: false
 | 
			
		||||
    networkPolicies.nginx.enabled: true
 | 
			
		||||
    networkPolicies.prometheus.enabled: true
 | 
			
		||||
  asserts:
 | 
			
		||||
  - hasDocuments:
 | 
			
		||||
      count: 2
 | 
			
		||||
 | 
			
		||||
- it: Template networkPolicy 'default' without policyTypes, egress and ingress configuration
 | 
			
		||||
  set:
 | 
			
		||||
    networkPolicies.enabled: true
 | 
			
		||||
    networkPolicies.default.enabled: true
 | 
			
		||||
  asserts:
 | 
			
		||||
  - hasDocuments:
 | 
			
		||||
      count: 1
 | 
			
		||||
  - containsDocument:
 | 
			
		||||
      apiVersion: networking.k8s.io/v1
 | 
			
		||||
      kind: NetworkPolicy
 | 
			
		||||
      name: prometheus-postgres-exporter-unittest-default
 | 
			
		||||
      namespace: testing
 | 
			
		||||
  - notExists:
 | 
			
		||||
      path: metadata.annotations
 | 
			
		||||
  - equal:
 | 
			
		||||
      path: metadata.labels
 | 
			
		||||
      value:
 | 
			
		||||
        app.kubernetes.io/instance: prometheus-postgres-exporter-unittest
 | 
			
		||||
        app.kubernetes.io/managed-by: Helm
 | 
			
		||||
        app.kubernetes.io/name: prometheus-postgres-exporter
 | 
			
		||||
        app.kubernetes.io/version: 0.1.0
 | 
			
		||||
        helm.sh/chart: prometheus-postgres-exporter-0.1.0
 | 
			
		||||
  - equal:
 | 
			
		||||
      path: spec.podSelector.matchLabels
 | 
			
		||||
      value:
 | 
			
		||||
        app.kubernetes.io/instance: prometheus-postgres-exporter-unittest
 | 
			
		||||
        app.kubernetes.io/name: prometheus-postgres-exporter
 | 
			
		||||
  - notExists:
 | 
			
		||||
      path: spec.policyTypes
 | 
			
		||||
  - notExists:
 | 
			
		||||
      path: spec.egress
 | 
			
		||||
  - notExists:
 | 
			
		||||
      path: spec.ingress
 | 
			
		||||
 | 
			
		||||
- it: Template networkPolicy 'default' with policyTypes, egress and ingress configuration
 | 
			
		||||
  set:
 | 
			
		||||
    networkPolicies.enabled: true
 | 
			
		||||
    networkPolicies.default.enabled: true
 | 
			
		||||
    networkPolicies.default.policyTypes:
 | 
			
		||||
    - Egress
 | 
			
		||||
    - Ingress
 | 
			
		||||
    networkPolicies.default.ingress:
 | 
			
		||||
    - from:
 | 
			
		||||
      - namespaceSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            kubernetes.io/metadata.name: khv-production
 | 
			
		||||
        podSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            app.kubernetes.io/name: prometheus
 | 
			
		||||
    networkPolicies.default.egress:
 | 
			
		||||
    - to:
 | 
			
		||||
      - namespaceSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            kubernetes.io/metadata.name: database
 | 
			
		||||
        podSelector:
 | 
			
		||||
          matchLabels:
 | 
			
		||||
            app.kubernetes.io/name: oracle
 | 
			
		||||
  asserts:
 | 
			
		||||
  - equal:
 | 
			
		||||
      path: spec.policyTypes
 | 
			
		||||
      value:
 | 
			
		||||
      - Egress
 | 
			
		||||
      - Ingress
 | 
			
		||||
  - equal:
 | 
			
		||||
      path: spec.egress
 | 
			
		||||
      value:
 | 
			
		||||
      - to:
 | 
			
		||||
        - namespaceSelector:
 | 
			
		||||
            matchLabels:
 | 
			
		||||
              kubernetes.io/metadata.name: database
 | 
			
		||||
          podSelector:
 | 
			
		||||
            matchLabels:
 | 
			
		||||
              app.kubernetes.io/name: oracle
 | 
			
		||||
  - equal:
 | 
			
		||||
      path: spec.ingress
 | 
			
		||||
      value:
 | 
			
		||||
      - from:
 | 
			
		||||
        - namespaceSelector:
 | 
			
		||||
            matchLabels:
 | 
			
		||||
              kubernetes.io/metadata.name: khv-production
 | 
			
		||||
          podSelector:
 | 
			
		||||
            matchLabels:
 | 
			
		||||
              app.kubernetes.io/name: prometheus
 | 
			
		||||
							
								
								
									
										80
									
								
								values.yaml
									
									
									
									
									
								
							
							
						
						
									
										80
									
								
								values.yaml
									
									
									
									
									
								
							@@ -224,11 +224,11 @@ deployment:
 | 
			
		||||
  securityContext: {}
 | 
			
		||||
    # fsGroup: 2000
 | 
			
		||||
 | 
			
		||||
  ## @param deployment.strategy.type Strategy type - `Recreate` or `Rollingupdate`.
 | 
			
		||||
  ## @param deployment.strategy.type Strategy type - `Recreate` or `RollingUpdate`.
 | 
			
		||||
  ## @param deployment.strategy.rollingUpdate.maxSurge The maximum number of pods that can be scheduled above the desired number of pods during a rolling update.
 | 
			
		||||
  ## @param deployment.strategy.rollingUpdate.maxUnavailable The maximum number of pods that can be unavailable during a rolling update.
 | 
			
		||||
  strategy:
 | 
			
		||||
    type: "Recreate"
 | 
			
		||||
    type: "RollingUpdate"
 | 
			
		||||
    rollingUpdate:
 | 
			
		||||
      maxSurge: 1
 | 
			
		||||
      maxUnavailable: 1
 | 
			
		||||
@@ -266,7 +266,7 @@ grafana:
 | 
			
		||||
  enabled: false
 | 
			
		||||
 | 
			
		||||
  ## @param grafana.dashboardDiscoveryLabels Labels that Grafana uses to discover resources. The labels may vary depending on the Grafana deployment.
 | 
			
		||||
  ## @skip grafana.dashboardDiscoveryLabels
 | 
			
		||||
  ## @skip grafana.dashboardDiscoveryLabels Skip individual configuration.
 | 
			
		||||
  dashboardDiscoveryLabels:
 | 
			
		||||
    grafana_dashboard: "1"
 | 
			
		||||
 | 
			
		||||
@@ -311,9 +311,77 @@ podDisruptionBudget: {}
 | 
			
		||||
#  maxUnavailable: 1
 | 
			
		||||
#  minAvailable: 1
 | 
			
		||||
 | 
			
		||||
## @section Network
 | 
			
		||||
## @param networkPolicies Deploy network policies based on the used container network interface (CNI) implementation - like calico or weave.
 | 
			
		||||
networkPolicies: {}
 | 
			
		||||
## @section NetworkPolicies
 | 
			
		||||
## @param networkPolicies.enabled Enable network policies in general.
 | 
			
		||||
networkPolicies:
 | 
			
		||||
  enabled: false
 | 
			
		||||
 | 
			
		||||
  ## @param networkPolicies.default.enabled Enable the network policy for accessing the application by default. For example to scape the metrics.
 | 
			
		||||
  ## @param networkPolicies.default.annotations Additional network policy annotations.
 | 
			
		||||
  ## @param networkPolicies.default.labels Additional network policy labels.
 | 
			
		||||
  ## @param networkPolicies.default.policyTypes List of policy types. Supported is ingress, egress or ingress and egress.
 | 
			
		||||
  ## @param networkPolicies.default.egress Concrete egress network policy implementation.
 | 
			
		||||
  ## @skip networkPolicies.default.egress Skip individual egress configuration.
 | 
			
		||||
  ## @param networkPolicies.default.ingress Concrete ingress network policy implementation.
 | 
			
		||||
  ## @skip networkPolicies.default.ingress Skip individual ingress configuration.
 | 
			
		||||
  default:
 | 
			
		||||
    enabled: false
 | 
			
		||||
    annotations: {}
 | 
			
		||||
    labels: {}
 | 
			
		||||
    policyTypes: []
 | 
			
		||||
    # - Egress
 | 
			
		||||
    # - Ingress
 | 
			
		||||
    egress: []
 | 
			
		||||
    # Allow outgoing traffic to database host
 | 
			
		||||
    #
 | 
			
		||||
    # - to:
 | 
			
		||||
    #   - ipBlock:
 | 
			
		||||
    #       cidr: 192.168.179.1/32
 | 
			
		||||
    #   ports:
 | 
			
		||||
    #   - port: 5432
 | 
			
		||||
    #     protocol: TCP
 | 
			
		||||
 | 
			
		||||
    # Allow outgoing DNS traffic to the internal running DNS-Server. For example core-dns.
 | 
			
		||||
    #
 | 
			
		||||
    # - to:
 | 
			
		||||
    #   - namespaceSelector:
 | 
			
		||||
    #       matchLabels:
 | 
			
		||||
    #         kubernetes.io/metadata.name: kube-system
 | 
			
		||||
    #     podSelector:
 | 
			
		||||
    #       matchLabels:
 | 
			
		||||
    #        k8s-app: kube-dns
 | 
			
		||||
    #   ports:
 | 
			
		||||
    #   - port: 53
 | 
			
		||||
    #     protocol: TCP
 | 
			
		||||
    #   - port: 53
 | 
			
		||||
    #     protocol: UDP
 | 
			
		||||
 | 
			
		||||
    ingress: []
 | 
			
		||||
    # Allow incoming HTTP traffic from prometheus.
 | 
			
		||||
    #
 | 
			
		||||
    # - from:
 | 
			
		||||
    #   - namespaceSelector:
 | 
			
		||||
    #       matchLabels:
 | 
			
		||||
    #         kubernetes.io/metadata.name: monitoring
 | 
			
		||||
    #     podSelector:
 | 
			
		||||
    #       matchLabels:
 | 
			
		||||
    #         app.kubernetes.io/name: prometheus
 | 
			
		||||
    #   ports:
 | 
			
		||||
    #   - port: http
 | 
			
		||||
    #     protocol: TCP
 | 
			
		||||
 | 
			
		||||
    # Allow incoming HTTP traffic from ingress-nginx.
 | 
			
		||||
    #
 | 
			
		||||
    # - from:
 | 
			
		||||
    #   - namespaceSelector:
 | 
			
		||||
    #       matchLabels:
 | 
			
		||||
    #         kubernetes.io/metadata.name: ingress-nginx
 | 
			
		||||
    #     podSelector:
 | 
			
		||||
    #       matchLabels:
 | 
			
		||||
    #         app.kubernetes.io/name: ingress-nginx
 | 
			
		||||
    #   ports:
 | 
			
		||||
    #   - port: http
 | 
			
		||||
    #     protocol: TCP
 | 
			
		||||
 | 
			
		||||
## @section Prometheus
 | 
			
		||||
prometheus:
 | 
			
		||||
 
 | 
			
		||||
		Reference in New Issue
	
	Block a user