flows, issues, pm and message-hub read ca.crt from a copy of the Kafka TLS secret in their own namespace instead of an inline PEM (flows) or a per-namespace kafka-ca-cert ConfigMap (issues, pm, message-hub). Mount paths and env names are unchanged. The secret must exist in each namespace before the pods restart.
26 lines
495 B
YAML
26 lines
495 B
YAML
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
kind: Kustomization
|
|
resources:
|
|
- ../base
|
|
patches:
|
|
- path: backend-s3.yaml
|
|
target:
|
|
kind: HelmRelease
|
|
name: backend
|
|
- path: celery-s3.yaml
|
|
target:
|
|
kind: HelmRelease
|
|
name: celery
|
|
- path: backend.yaml
|
|
target:
|
|
kind: HelmRelease
|
|
name: backend
|
|
- path: celery.yaml
|
|
target:
|
|
kind: HelmRelease
|
|
name: celery
|
|
- path: frontend.yaml
|
|
target:
|
|
kind: HelmRelease
|
|
name: frontend
|