Compare commits
8
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
48dc3ab232
|
||
|
|
e5a9bcdd2d | ||
|
|
7400ca6407
|
||
|
|
d0dd429ee0 | ||
|
|
d2e3f376d6
|
||
|
|
562001dc0b
|
||
|
|
b2b9ab19a0 | ||
|
|
efd7b694a3
|
@@ -15,7 +15,7 @@ on:
|
|||||||
jobs:
|
jobs:
|
||||||
generate-parameters:
|
generate-parameters:
|
||||||
container:
|
container:
|
||||||
image: docker.io/library/node:26.9.0-alpine
|
image: docker.io/library/node:26.10.0-alpine
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- name: Install tooling
|
- name: Install tooling
|
||||||
|
|||||||
@@ -15,7 +15,7 @@ on:
|
|||||||
jobs:
|
jobs:
|
||||||
markdown-link-checker:
|
markdown-link-checker:
|
||||||
container:
|
container:
|
||||||
image: docker.io/library/node:26.9.0-alpine
|
image: docker.io/library/node:26.10.0-alpine
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- name: Install tooling
|
- name: Install tooling
|
||||||
@@ -30,7 +30,7 @@ jobs:
|
|||||||
|
|
||||||
markdown-lint:
|
markdown-lint:
|
||||||
container:
|
container:
|
||||||
image: docker.io/library/node:26.9.0-alpine
|
image: docker.io/library/node:26.10.0-alpine
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- name: Install tooling
|
- name: Install tooling
|
||||||
|
|||||||
Vendored
+1
-1
@@ -1,6 +1,6 @@
|
|||||||
{
|
{
|
||||||
"yaml.schemas": {
|
"yaml.schemas": {
|
||||||
"https://raw.githubusercontent.com/helm-unittest/helm-unittest/v1.1.2/schema/helm-testsuite.json": [
|
"https://raw.githubusercontent.com/helm-unittest/helm-unittest/v1.2.1/schema/helm-testsuite.json": [
|
||||||
"/unittests/**/*.yaml"
|
"/unittests/**/*.yaml"
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
|
|||||||
@@ -37,7 +37,7 @@ version of the chart must be in sync with the `values.yaml`. Newer *minor* versi
|
|||||||
versions can break something!
|
versions can break something!
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
CHART_VERSION=1.0.0
|
CHART_VERSION=1.0.1
|
||||||
helm show values volker.raschek/reposilite --version "${CHART_VERSION}" > values.yaml
|
helm show values volker.raschek/reposilite --version "${CHART_VERSION}" > values.yaml
|
||||||
```
|
```
|
||||||
|
|
||||||
@@ -51,7 +51,7 @@ The helm chart also contains a persistent volume claim definition. It persistent
|
|||||||
Use the `--set` argument to persist your data.
|
Use the `--set` argument to persist your data.
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
CHART_VERSION=1.0.0
|
CHART_VERSION=1.0.1
|
||||||
helm install --version "${CHART_VERSION}" reposilite volker.raschek/reposilite \
|
helm install --version "${CHART_VERSION}" reposilite volker.raschek/reposilite \
|
||||||
persistentVolumeClaim.enabled=true
|
persistentVolumeClaim.enabled=true
|
||||||
```
|
```
|
||||||
@@ -72,7 +72,7 @@ connection problems.
|
|||||||
> error.
|
> error.
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
CHART_VERSION=1.0.0
|
CHART_VERSION=1.0.1
|
||||||
helm install --version "${CHART_VERSION}" reposilite volker.raschek/reposilite \
|
helm install --version "${CHART_VERSION}" reposilite volker.raschek/reposilite \
|
||||||
--set 'deployment.reposilite.env[1].name=REPOSILITE_LOCAL_SSLENABLED' \
|
--set 'deployment.reposilite.env[1].name=REPOSILITE_LOCAL_SSLENABLED' \
|
||||||
--set 'deployment.reposilite.env[1].value="true"' \
|
--set 'deployment.reposilite.env[1].value="true"' \
|
||||||
@@ -196,7 +196,7 @@ be set the credentials manually.
|
|||||||
The following example enable Prometheus metrics with custom basic auth credentials:
|
The following example enable Prometheus metrics with custom basic auth credentials:
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
CHART_VERSION=1.0.0
|
CHART_VERSION=1.0.1
|
||||||
helm install --version "${CHART_VERSION}" reposilite volker.raschek/reposilite \
|
helm install --version "${CHART_VERSION}" reposilite volker.raschek/reposilite \
|
||||||
--set 'prometheus.metrics.enabled=true' \
|
--set 'prometheus.metrics.enabled=true' \
|
||||||
--set 'prometheus.metrics.basicAuthUsername=my-username' \
|
--set 'prometheus.metrics.basicAuthUsername=my-username' \
|
||||||
@@ -270,47 +270,49 @@ spec:
|
|||||||
|
|
||||||
### Deployment
|
### Deployment
|
||||||
|
|
||||||
| Name | Description | Value |
|
| Name | Description | Value |
|
||||||
| -------------------------------------------------- | ---------------------------------------------------------------------------------------------------------- | ------------------------------------------- |
|
| ------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------- | ------------------------------------------- |
|
||||||
| `deployment.annotations` | Additional deployment annotations. | `{}` |
|
| `deployment.annotations` | Additional deployment annotations. | `{}` |
|
||||||
| `deployment.labels` | Additional deployment labels. | `{}` |
|
| `deployment.labels` | Additional deployment labels. | `{}` |
|
||||||
| `deployment.additionalContainers` | List of additional containers. | `[]` |
|
| `deployment.additionalContainers` | List of additional containers. | `[]` |
|
||||||
| `deployment.affinity` | Affinity for the Reposilite deployment. | `{}` |
|
| `deployment.affinity` | Affinity for the Reposilite deployment. | `{}` |
|
||||||
| `deployment.initContainers` | List of additional init containers. | `[]` |
|
| `deployment.initContainers` | List of additional init containers. | `[]` |
|
||||||
| `deployment.dnsConfig` | dnsConfig of the Reposilite deployment. | `{}` |
|
| `deployment.dnsConfig` | dnsConfig of the Reposilite deployment. | `{}` |
|
||||||
| `deployment.dnsPolicy` | dnsPolicy of the Reposilite deployment. | `""` |
|
| `deployment.dnsPolicy` | dnsPolicy of the Reposilite deployment. | `""` |
|
||||||
| `deployment.hostname` | Individual hostname of the pod. | `""` |
|
| `deployment.hostname` | Individual hostname of the pod. | `""` |
|
||||||
| `deployment.subdomain` | Individual domain of the pod. | `""` |
|
| `deployment.subdomain` | Individual domain of the pod. | `""` |
|
||||||
| `deployment.hostNetwork` | Use the kernel network namespace of the host system. | `false` |
|
| `deployment.hostNetwork` | Use the kernel network namespace of the host system. | `false` |
|
||||||
| `deployment.imagePullSecrets` | Secret to use for pulling the image. | `[]` |
|
| `deployment.imagePullSecrets` | Secret to use for pulling the image. | `[]` |
|
||||||
| `deployment.reposilite.args` | Arguments passed to the Reposilite container. | `[]` |
|
| `deployment.reposilite.args` | Arguments passed to the Reposilite container. | `[]` |
|
||||||
| `deployment.reposilite.command` | Command passed to the Reposilite container. | `[]` |
|
| `deployment.reposilite.command` | Command passed to the Reposilite container. | `[]` |
|
||||||
| `deployment.reposilite.env` | List of environment variables for the Reposilite container. | |
|
| `deployment.reposilite.env` | List of environment variables for the Reposilite container. | |
|
||||||
| `deployment.reposilite.envFrom` | List of environment variables mounted from configMaps or secrets for the Reposilite container. | `[]` |
|
| `deployment.reposilite.envFrom` | List of environment variables mounted from configMaps or secrets for the Reposilite container. | `[]` |
|
||||||
| `deployment.reposilite.image.registry` | Image registry, eg. `docker.io`. | `docker.io` |
|
| `deployment.reposilite.image.registry` | Image registry, eg. `docker.io`. | `docker.io` |
|
||||||
| `deployment.reposilite.image.repository` | Image repository, eg. `library/busybox`. | `dzikoysk/reposilite` |
|
| `deployment.reposilite.image.repository` | Image repository, eg. `library/busybox`. | `dzikoysk/reposilite` |
|
||||||
| `deployment.reposilite.image.tag` | Custom image tag, eg. `0.1.0`. Defaults to `appVersion`. | `""` |
|
| `deployment.reposilite.image.tag` | Custom image tag, eg. `0.1.0`. Defaults to `appVersion`. | `""` |
|
||||||
| `deployment.reposilite.image.pullPolicy` | Image pull policy. | `IfNotPresent` |
|
| `deployment.reposilite.image.pullPolicy` | Image pull policy. | `IfNotPresent` |
|
||||||
| `deployment.reposilite.resources` | CPU and memory resources of the pod. | `{}` |
|
| `deployment.reposilite.resources` | CPU and memory resources of the pod. | `{}` |
|
||||||
| `deployment.reposilite.securityContext` | Security context of the container of the deployment. | `{}` |
|
| `deployment.reposilite.securityContext` | Security context of the container of the deployment. | `{}` |
|
||||||
| `deployment.reposilite.volumeMounts` | Additional volume mounts. | `[]` |
|
| `deployment.reposilite.volumeMounts` | Additional volume mounts. | `[]` |
|
||||||
| `deployment.nodeSelector` | NodeSelector of the Reposilite deployment. | `{}` |
|
| `deployment.nodeSelector` | NodeSelector of the Reposilite deployment. | `{}` |
|
||||||
| `deployment.pluginContainer.args` | Arguments passed to the plugin container. | `["--location","--fail","--max-time","60"]` |
|
| `deployment.pluginContainer.args` | Arguments passed to the plugin container. | `["--location","--fail","--max-time","60"]` |
|
||||||
| `deployment.pluginContainer.image.registry` | Image registry, eg. `docker.io`. | `docker.io` |
|
| `deployment.pluginContainer.image.registry` | Image registry, eg. `docker.io`. | `docker.io` |
|
||||||
| `deployment.pluginContainer.image.repository` | Image repository, eg. `curlimages/curl`. | `curlimages/curl` |
|
| `deployment.pluginContainer.image.repository` | Image repository, eg. `curlimages/curl`. | `curlimages/curl` |
|
||||||
| `deployment.pluginContainer.image.tag` | Custom image tag, eg. `0.1.0`. | `8.22.0` |
|
| `deployment.pluginContainer.image.tag` | Custom image tag, eg. `0.1.0`. | `8.22.0` |
|
||||||
| `deployment.pluginContainer.image.pullPolicy` | Image pull policy. | `IfNotPresent` |
|
| `deployment.pluginContainer.image.pullPolicy` | Image pull policy. | `IfNotPresent` |
|
||||||
| `deployment.priorityClassName` | PriorityClassName of the Reposilite deployment. | `""` |
|
| `deployment.pluginContainer.securityContext.runAsGroup` | Group id of the plugin container. | `977` |
|
||||||
| `deployment.replicas` | Number of replicas for the Reposilite deployment. | `1` |
|
| `deployment.pluginContainer.securityContext.runAsUser` | User id of the plugin container. | `977` |
|
||||||
| `deployment.restartPolicy` | Restart policy of the Reposilite deployment. | `""` |
|
| `deployment.priorityClassName` | PriorityClassName of the Reposilite deployment. | `""` |
|
||||||
| `deployment.securityContext` | Security context of the Reposilite deployment. | `{}` |
|
| `deployment.replicas` | Number of replicas for the Reposilite deployment. | `1` |
|
||||||
| `deployment.strategy.type` | Strategy type - `Recreate` or `RollingUpdate`. | `RollingUpdate` |
|
| `deployment.restartPolicy` | Restart policy of the Reposilite deployment. | `""` |
|
||||||
| `deployment.strategy.rollingUpdate.maxSurge` | The maximum number of pods that can be scheduled above the desired number of pods during a rolling update. | `1` |
|
| `deployment.securityContext` | Security context of the Reposilite deployment. | `{}` |
|
||||||
| `deployment.strategy.rollingUpdate.maxUnavailable` | The maximum number of pods that can be unavailable during a rolling update. | `1` |
|
| `deployment.strategy.type` | Strategy type - `Recreate` or `RollingUpdate`. | `RollingUpdate` |
|
||||||
| `deployment.terminationGracePeriodSeconds` | How long to wait until forcefully kill the pod. | `60` |
|
| `deployment.strategy.rollingUpdate.maxSurge` | The maximum number of pods that can be scheduled above the desired number of pods during a rolling update. | `1` |
|
||||||
| `deployment.tolerations` | Tolerations of the Reposilite deployment. | `[]` |
|
| `deployment.strategy.rollingUpdate.maxUnavailable` | The maximum number of pods that can be unavailable during a rolling update. | `1` |
|
||||||
| `deployment.topologySpreadConstraints` | TopologySpreadConstraints of the Reposilite deployment. | `[]` |
|
| `deployment.terminationGracePeriodSeconds` | How long to wait until forcefully kill the pod. | `60` |
|
||||||
| `deployment.volumes` | Additional volumes to mount into the pods of the reposilite deployment. | `[]` |
|
| `deployment.tolerations` | Tolerations of the Reposilite deployment. | `[]` |
|
||||||
|
| `deployment.topologySpreadConstraints` | TopologySpreadConstraints of the Reposilite deployment. | `[]` |
|
||||||
|
| `deployment.volumes` | Additional volumes to mount into the pods of the reposilite deployment. | `[]` |
|
||||||
|
|
||||||
### Horizontal Pod Autoscaler (HPA)
|
### Horizontal Pod Autoscaler (HPA)
|
||||||
|
|
||||||
|
|||||||
@@ -71,7 +71,11 @@
|
|||||||
{{- if eq (include "reposilite.plugins.prometheus.enabled" $) "true" }}
|
{{- if eq (include "reposilite.plugins.prometheus.enabled" $) "true" }}
|
||||||
{{- $fileName := splitList "/" (tpl .Values.config.plugins.prometheus.url $) | last }}
|
{{- $fileName := splitList "/" (tpl .Values.config.plugins.prometheus.url $) | last }}
|
||||||
{{- $individualArgs := concat $pluginContainerArgs (list "--output" $fileName (tpl .Values.config.plugins.prometheus.url $)) }}
|
{{- $individualArgs := concat $pluginContainerArgs (list "--output" $fileName (tpl .Values.config.plugins.prometheus.url $)) }}
|
||||||
{{- $initContainers = concat $initContainers (list (dict "args" $individualArgs "name" "download-prometheus-plugin" "image" $pluginContainerImage "volumeMounts" $pluginContainerVolumeMounts)) }}
|
{{- $pluginContainer := dict "args" $individualArgs "name" "download-prometheus-plugin" "image" $pluginContainerImage "volumeMounts" $pluginContainerVolumeMounts }}
|
||||||
|
{{- with .Values.deployment.pluginContainer.securityContext }}
|
||||||
|
{{- $_ := set $pluginContainer "securityContext" . }}
|
||||||
|
{{- end }}
|
||||||
|
{{- $initContainers = concat $initContainers (list $pluginContainer) }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
|
|
||||||
{{ toYaml (dict "initContainers" $initContainers) }}
|
{{ toYaml (dict "initContainers" $initContainers) }}
|
||||||
|
|||||||
@@ -30,6 +30,9 @@ tests:
|
|||||||
- https://reposilite.com/plugins/prometheus.jar
|
- https://reposilite.com/plugins/prometheus.jar
|
||||||
name: download-prometheus-plugin
|
name: download-prometheus-plugin
|
||||||
image: docker.io/curlimages/curl:0.1.0
|
image: docker.io/curlimages/curl:0.1.0
|
||||||
|
securityContext:
|
||||||
|
runAsGroup: 977
|
||||||
|
runAsUser: 977
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- mountPath: /app/data/plugins
|
- mountPath: /app/data/plugins
|
||||||
name: plugins
|
name: plugins
|
||||||
|
|||||||
@@ -178,6 +178,15 @@ deployment:
|
|||||||
tag: "8.22.0"
|
tag: "8.22.0"
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
|
|
||||||
|
## @param deployment.pluginContainer.securityContext.runAsGroup Group id of the plugin container.
|
||||||
|
## @param deployment.pluginContainer.securityContext.runAsUser User id of the plugin container.
|
||||||
|
# Reposilite chowns /app to 977:977 when its entrypoint starts as root. Downloading the plugin as a
|
||||||
|
# different user leaves behind a file the plugin container can no longer overwrite, which breaks every
|
||||||
|
# restart that reuses the emptyDir. Align this with PUID/PGID when those are overridden.
|
||||||
|
securityContext:
|
||||||
|
runAsGroup: 977
|
||||||
|
runAsUser: 977
|
||||||
|
|
||||||
## @param deployment.priorityClassName PriorityClassName of the Reposilite deployment.
|
## @param deployment.priorityClassName PriorityClassName of the Reposilite deployment.
|
||||||
priorityClassName: ""
|
priorityClassName: ""
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user