Compare commits
2
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
dc032d5b47
|
||
|
|
562001dc0b
|
@@ -271,7 +271,7 @@ spec:
|
||||
### Deployment
|
||||
|
||||
| Name | Description | Value |
|
||||
| -------------------------------------------------- | ---------------------------------------------------------------------------------------------------------- | ------------------------------------------- |
|
||||
| ------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------- | ------------------------------------------- |
|
||||
| `deployment.annotations` | Additional deployment annotations. | `{}` |
|
||||
| `deployment.labels` | Additional deployment labels. | `{}` |
|
||||
| `deployment.additionalContainers` | List of additional containers. | `[]` |
|
||||
@@ -300,6 +300,8 @@ spec:
|
||||
| `deployment.pluginContainer.image.repository` | Image repository, eg. `curlimages/curl`. | `curlimages/curl` |
|
||||
| `deployment.pluginContainer.image.tag` | Custom image tag, eg. `0.1.0`. | `8.22.0` |
|
||||
| `deployment.pluginContainer.image.pullPolicy` | Image pull policy. | `IfNotPresent` |
|
||||
| `deployment.pluginContainer.securityContext.runAsGroup` | Group id of the plugin container. | `977` |
|
||||
| `deployment.pluginContainer.securityContext.runAsUser` | User id of the plugin container. | `977` |
|
||||
| `deployment.priorityClassName` | PriorityClassName of the Reposilite deployment. | `""` |
|
||||
| `deployment.replicas` | Number of replicas for the Reposilite deployment. | `1` |
|
||||
| `deployment.restartPolicy` | Restart policy of the Reposilite deployment. | `""` |
|
||||
|
||||
@@ -71,7 +71,11 @@
|
||||
{{- if eq (include "reposilite.plugins.prometheus.enabled" $) "true" }}
|
||||
{{- $fileName := splitList "/" (tpl .Values.config.plugins.prometheus.url $) | last }}
|
||||
{{- $individualArgs := concat $pluginContainerArgs (list "--output" $fileName (tpl .Values.config.plugins.prometheus.url $)) }}
|
||||
{{- $initContainers = concat $initContainers (list (dict "args" $individualArgs "name" "download-prometheus-plugin" "image" $pluginContainerImage "volumeMounts" $pluginContainerVolumeMounts)) }}
|
||||
{{- $pluginContainer := dict "args" $individualArgs "name" "download-prometheus-plugin" "image" $pluginContainerImage "volumeMounts" $pluginContainerVolumeMounts }}
|
||||
{{- with .Values.deployment.pluginContainer.securityContext }}
|
||||
{{- $_ := set $pluginContainer "securityContext" . }}
|
||||
{{- end }}
|
||||
{{- $initContainers = concat $initContainers (list $pluginContainer) }}
|
||||
{{- end }}
|
||||
|
||||
{{ toYaml (dict "initContainers" $initContainers) }}
|
||||
|
||||
@@ -30,6 +30,9 @@ tests:
|
||||
- https://reposilite.com/plugins/prometheus.jar
|
||||
name: download-prometheus-plugin
|
||||
image: docker.io/curlimages/curl:0.1.0
|
||||
securityContext:
|
||||
runAsGroup: 977
|
||||
runAsUser: 977
|
||||
volumeMounts:
|
||||
- mountPath: /app/data/plugins
|
||||
name: plugins
|
||||
|
||||
@@ -178,6 +178,15 @@ deployment:
|
||||
tag: "8.22.0"
|
||||
pullPolicy: IfNotPresent
|
||||
|
||||
## @param deployment.pluginContainer.securityContext.runAsGroup Group id of the plugin container.
|
||||
## @param deployment.pluginContainer.securityContext.runAsUser User id of the plugin container.
|
||||
# Reposilite chowns /app to 977:977 when its entrypoint starts as root. Downloading the plugin as a
|
||||
# different user leaves behind a file the plugin container can no longer overwrite, which breaks every
|
||||
# restart that reuses the emptyDir. Align this with PUID/PGID when those are overridden.
|
||||
securityContext:
|
||||
runAsGroup: 977
|
||||
runAsUser: 977
|
||||
|
||||
## @param deployment.priorityClassName PriorityClassName of the Reposilite deployment.
|
||||
priorityClassName: ""
|
||||
|
||||
|
||||
Reference in New Issue
Block a user