From 60ad3282727b3eade2126c5de3f3d7eed17900c6 Mon Sep 17 00:00:00 2001 From: Michael Haehnel Date: Wed, 21 Dec 2022 15:15:51 +0100 Subject: [PATCH] DEV-682 Adding values for cusqa and cusprod --- values_cusprod.yaml | 41 +++++++++++++++++++++++++++++++++++++++-- values_cusqa.yaml | 43 ++++++++++++++++++++++++++++++++++++++++--- values_nsodev.yaml | 3 +-- 3 files changed, 80 insertions(+), 7 deletions(-) diff --git a/values_cusprod.yaml b/values_cusprod.yaml index 0be0c5d..ba74856 100644 --- a/values_cusprod.yaml +++ b/values_cusprod.yaml @@ -81,7 +81,8 @@ smardigo-worker: wordpress: wordpressEmail: nso.devops@netgo.de wordpressScheme: https - global.storageClass: hcloud-volumes + global: + storageClass: hcloud-volumes livenessProbe: httpGet: port: https @@ -92,15 +93,51 @@ wordpress: scheme: HTTPS service: type: ClusterIP + networkPolicy: + enabled: true + ingress: + enabled: true + namespaceSelector: + kubernetes.io/metadata.name: ingress + podSelector: + app.kubernetes.io/name: ingress-nginx + egressRules: + denyConnectionsToExternal: false + customRules: + - to: [] + multisite: + enable: true + host: connect-wordpress-cusprod-prodwork01.smardigo.digital + networkType: subdomain + enableNipIoRedirect: false + extraEnvVars: + - name: WORDPRESS_DEBUG + value: "1" + - name: AUTH_API + value: "https://prodwork01-keycloak-01-keycloak.smardigo.digital" + - name: RESOURCE_API + value: "https://connect-cusprod-prodwork01.smardigo.digital" + - name: REALM_ID + value: "mobene" + - name: REGISTRATION_ID + value: "cusprod-connect" + - name: CLIENT_ID + value: "cusprod-connect" + - name: SK_NRW_ISSUER + value: "https://prodwork01-keycloak-01-keycloak.smardigo.digital/auth/realms/mobene" + - name: SK_NRW_PROVIDER_URL + value: "https://prodwork01-keycloak-01-keycloak.smardigo.digital/auth/realms/mobene" ingress: enabled: true ingressClassName: nginx certManager: true hostname: connect-wordpress-cusprod-prodwork01.smardigo.digital path: / + pathType: Prefix annotations: cert-manager.io/cluster-issuer: letsencrypt-prod - nginx.ingress.kubernetes.io/backend-protocol: HTTPS + cert-manager.io/issue-temporary-certificate: "true" + nginx.ingress.kubernetes.io/backend-protocol: HTTP nginx.ingress.kubernetes.io/force-ssl-redirect: "true" nginx.ingress.kubernetes.io/proxy-body-size: 32m tls: true diff --git a/values_cusqa.yaml b/values_cusqa.yaml index 0b70973..5da0581 100644 --- a/values_cusqa.yaml +++ b/values_cusqa.yaml @@ -81,7 +81,8 @@ smardigo-worker: wordpress: wordpressEmail: nso.devops@netgo.de wordpressScheme: https - global.storageClass: hcloud-volumes + global: + storageClass: hcloud-volumes livenessProbe: httpGet: port: https @@ -92,15 +93,51 @@ wordpress: scheme: HTTPS service: type: ClusterIP + networkPolicy: + enabled: true + ingress: + enabled: true + namespaceSelector: + kubernetes.io/metadata.name: ingress + podSelector: + app.kubernetes.io/name: ingress-nginx + egressRules: + denyConnectionsToExternal: false + customRules: + - to: [] + multisite: + enable: true + host: connect-wordpress-cusqa-prodwork01.smardigo.digital + networkType: subdomain + enableNipIoRedirect: false + extraEnvVars: + - name: WORDPRESS_DEBUG + value: "1" + - name: AUTH_API + value: "https://prodwork01-keycloak-01-keycloak.smardigo.digital" + - name: RESOURCE_API + value: "https://connect-cusqa-prodwork01.smardigo.digital" + - name: REALM_ID + value: "mobene" + - name: REGISTRATION_ID + value: "cusqa-connect" + - name: CLIENT_ID + value: "cusqa-connect" + - name: SK_NRW_ISSUER + value: "https://prodwork01-keycloak-01-keycloak.smardigo.digital/auth/realms/mobene" + - name: SK_NRW_PROVIDER_URL + value: "https://prodwork01-keycloak-01-keycloak.smardigo.digital/auth/realms/mobene" ingress: enabled: true ingressClassName: nginx certManager: true hostname: connect-wordpress-cusqa-prodwork01.smardigo.digital path: / + pathType: Prefix annotations: cert-manager.io/cluster-issuer: letsencrypt-prod - nginx.ingress.kubernetes.io/backend-protocol: HTTPS + cert-manager.io/issue-temporary-certificate: "true" + nginx.ingress.kubernetes.io/backend-protocol: HTTP nginx.ingress.kubernetes.io/force-ssl-redirect: "true" nginx.ingress.kubernetes.io/proxy-body-size: 32m - tls: true + tls: true \ No newline at end of file diff --git a/values_nsodev.yaml b/values_nsodev.yaml index 85678f7..2eed446 100644 --- a/values_nsodev.yaml +++ b/values_nsodev.yaml @@ -104,8 +104,7 @@ wordpress: egressRules: denyConnectionsToExternal: false customRules: - - to: [] - + - to: [] multisite: enable: true host: connect-wordpress-nsodev-prodwork01.smardigo.digital