JWT secret

This commit is contained in:
2024-03-23 17:31:57 +03:00
parent b67232da9d
commit fa0d03f97a
4 changed files with 22 additions and 2 deletions

View File

@@ -1,2 +1,12 @@
For pull private dockerhub # For pull private dockerhub
```
kubectl create secret docker-registry regcred --docker-server=<registry> --docker-username=<your-name> --docker-password=<your-pword> --docker-email=<your-email> kubectl create secret docker-registry regcred --docker-server=<registry> --docker-username=<your-name> --docker-password=<your-pword> --docker-email=<your-email>
```
# For jwt secrets
```
kubectl create secret generic jwt-secrets \
--from-literal=JWT_ISSUER="liquid" \
--from-literal=JWT_AUDIENCE="audience"\
--from-literal=JWT_SINGING_KEY="supersecretkey_supersecretkey_supersecretkey_supersecretkey"
```

View File

View File

@@ -17,6 +17,7 @@ spec:
containers: containers:
- name: {{ .Release.Name }}-backend - name: {{ .Release.Name }}-backend
image: ghcr.io/nullptroma/liquid-backend:1.0.0 image: ghcr.io/nullptroma/liquid-backend:1.0.0
imagePullPolicy: Always
ports: ports:
- containerPort: 8080 - containerPort: 8080
env: env:
@@ -30,6 +31,14 @@ spec:
secretKeyRef: secretKeyRef:
name: {{ .Values.s3.secretName | quote }} name: {{ .Values.s3.secretName | quote }}
key: {{ required "secret-key-key!" .Values.s3.secretKeyKey | quote }} key: {{ required "secret-key-key!" .Values.s3.secretKeyKey | quote }}
- name: PG_URI
valueFrom:
secretKeyRef:
name: {{ required "Cluster name required" .Values.cnpg.clusterName }}-app
key: uri
envFrom:
- secretRef:
name: {{ required "" .Values.jwt.secretName }}
imagePullSecrets: imagePullSecrets:
- name: github-registry - name: github-registry

View File

@@ -12,5 +12,6 @@ cnpg:
enable: false enable: false
oldClusterName: liquid-db oldClusterName: liquid-db
sourcePath: "s3://liquid-code/backup" sourcePath: "s3://liquid-code/backup"
jwt:
secretName: jwt-secrets
imagePullSecret: github-registry imagePullSecret: github-registry