Added k3s tooling
This commit is contained in:
23
k3s-tooling/.helmignore
Normal file
23
k3s-tooling/.helmignore
Normal file
@@ -0,0 +1,23 @@
|
|||||||
|
# Patterns to ignore when building packages.
|
||||||
|
# This supports shell glob matching, relative path matching, and
|
||||||
|
# negation (prefixed with !). Only one pattern per line.
|
||||||
|
.DS_Store
|
||||||
|
# Common VCS dirs
|
||||||
|
.git/
|
||||||
|
.gitignore
|
||||||
|
.bzr/
|
||||||
|
.bzrignore
|
||||||
|
.hg/
|
||||||
|
.hgignore
|
||||||
|
.svn/
|
||||||
|
# Common backup files
|
||||||
|
*.swp
|
||||||
|
*.bak
|
||||||
|
*.tmp
|
||||||
|
*.orig
|
||||||
|
*~
|
||||||
|
# Various IDEs
|
||||||
|
.project
|
||||||
|
.idea/
|
||||||
|
*.tmproj
|
||||||
|
.vscode/
|
||||||
5
k3s-tooling/Chart.yaml
Normal file
5
k3s-tooling/Chart.yaml
Normal file
@@ -0,0 +1,5 @@
|
|||||||
|
apiVersion: v2
|
||||||
|
name: k3s-tooling
|
||||||
|
description: A Helm chart for deploying some kubernetes ressources
|
||||||
|
type: application
|
||||||
|
version: 0.1.0
|
||||||
62
k3s-tooling/templates/_helpers.tpl
Normal file
62
k3s-tooling/templates/_helpers.tpl
Normal file
@@ -0,0 +1,62 @@
|
|||||||
|
{{/*
|
||||||
|
Expand the name of the chart.
|
||||||
|
*/}}
|
||||||
|
{{- define "k3s-tooling.name" -}}
|
||||||
|
{{- default .Chart.Name .Values.nameOverride | trunc 63 | trimSuffix "-" }}
|
||||||
|
{{- end }}
|
||||||
|
|
||||||
|
{{/*
|
||||||
|
Create a default fully qualified app name.
|
||||||
|
We truncate at 63 chars because some Kubernetes name fields are limited to this (by the DNS naming spec).
|
||||||
|
If release name contains chart name it will be used as a full name.
|
||||||
|
*/}}
|
||||||
|
{{- define "k3s-tooling.fullname" -}}
|
||||||
|
{{- if .Values.fullnameOverride }}
|
||||||
|
{{- .Values.fullnameOverride | trunc 63 | trimSuffix "-" }}
|
||||||
|
{{- else }}
|
||||||
|
{{- $name := default .Chart.Name .Values.nameOverride }}
|
||||||
|
{{- if contains $name .Release.Name }}
|
||||||
|
{{- .Release.Name | trunc 63 | trimSuffix "-" }}
|
||||||
|
{{- else }}
|
||||||
|
{{- printf "%s-%s" .Release.Name $name | trunc 63 | trimSuffix "-" }}
|
||||||
|
{{- end }}
|
||||||
|
{{- end }}
|
||||||
|
{{- end }}
|
||||||
|
|
||||||
|
{{/*
|
||||||
|
Create chart name and version as used by the chart label.
|
||||||
|
*/}}
|
||||||
|
{{- define "k3s-tooling.chart" -}}
|
||||||
|
{{- printf "%s-%s" .Chart.Name .Chart.Version | replace "+" "_" | trunc 63 | trimSuffix "-" }}
|
||||||
|
{{- end }}
|
||||||
|
|
||||||
|
{{/*
|
||||||
|
Common labels
|
||||||
|
*/}}
|
||||||
|
{{- define "k3s-tooling.labels" -}}
|
||||||
|
helm.sh/chart: {{ include "k3s-tooling.chart" . }}
|
||||||
|
{{ include "k3s-tooling.selectorLabels" . }}
|
||||||
|
{{- if .Chart.AppVersion }}
|
||||||
|
app.kubernetes.io/version: {{ .Chart.AppVersion | quote }}
|
||||||
|
{{- end }}
|
||||||
|
app.kubernetes.io/managed-by: {{ .Release.Service }}
|
||||||
|
{{- end }}
|
||||||
|
|
||||||
|
{{/*
|
||||||
|
Selector labels
|
||||||
|
*/}}
|
||||||
|
{{- define "k3s-tooling.selectorLabels" -}}
|
||||||
|
app.kubernetes.io/name: {{ include "k3s-tooling.name" . }}
|
||||||
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
|
{{- end }}
|
||||||
|
|
||||||
|
{{/*
|
||||||
|
Create the name of the service account to use
|
||||||
|
*/}}
|
||||||
|
{{- define "k3s-tooling.serviceAccountName" -}}
|
||||||
|
{{- if .Values.serviceAccount.create }}
|
||||||
|
{{- default (include "k3s-tooling.fullname" .) .Values.serviceAccount.name }}
|
||||||
|
{{- else }}
|
||||||
|
{{- default "default" .Values.serviceAccount.name }}
|
||||||
|
{{- end }}
|
||||||
|
{{- end }}
|
||||||
30
k3s-tooling/templates/cert-manager.yaml
Normal file
30
k3s-tooling/templates/cert-manager.yaml
Normal file
@@ -0,0 +1,30 @@
|
|||||||
|
{{- if .Values.cert-manager.enabled -}}
|
||||||
|
apiVersion: argoproj.io/v1alpha1
|
||||||
|
kind: Application
|
||||||
|
metadata:
|
||||||
|
name: cert-manager
|
||||||
|
namespace: {{ .Values.argocd.namespace }}
|
||||||
|
finalizers:
|
||||||
|
- resources-finalizer.argocd.argoproj.io
|
||||||
|
spec:
|
||||||
|
project: {{ .Values.argocd.project }}
|
||||||
|
source:
|
||||||
|
repoURL: "https://charts.jetstack.io" # Helm repository for Tailscale
|
||||||
|
chart: cert-manager # Chart name
|
||||||
|
targetRevision: {{ .Values.cert-manager.targetRevision }} # Version of the chart (update to latest if needed)
|
||||||
|
helm:
|
||||||
|
values: |
|
||||||
|
crds:
|
||||||
|
enabled: true
|
||||||
|
destination:
|
||||||
|
server: {{ .Values.cert-manager.destination.server }}
|
||||||
|
namespace: {{ .Values.cert-manager.destination.namespace }}
|
||||||
|
syncPolicy:
|
||||||
|
automated:
|
||||||
|
prune: true # Automatically remove resources no longer in the repo
|
||||||
|
selfHeal: true # Automatically self-heal when drift is detected
|
||||||
|
syncOptions:
|
||||||
|
- ApplyOutOfSyncOnly=true
|
||||||
|
- ServerSideApply=true
|
||||||
|
- CreateNamespace=true
|
||||||
|
{{- end }}
|
||||||
26
k3s-tooling/templates/cnpg.yaml
Normal file
26
k3s-tooling/templates/cnpg.yaml
Normal file
@@ -0,0 +1,26 @@
|
|||||||
|
{{- if .Values.cnpg.enable -}}
|
||||||
|
apiVersion: argoproj.io/v1alpha1
|
||||||
|
kind: Application
|
||||||
|
metadata:
|
||||||
|
name: cnpg
|
||||||
|
namespace: {{ .Values.argocd.namespace }}
|
||||||
|
finalizers:
|
||||||
|
- resources-finalizer.argocd.argoproj.io
|
||||||
|
spec:
|
||||||
|
project: {{ .Values.argocd.project }}
|
||||||
|
source:
|
||||||
|
repoURL: "https://cloudnative-pg.github.io/charts" # Helm repository for Tailscale
|
||||||
|
chart: cloudnative-pg # Chart name
|
||||||
|
targetRevision: {{ .Values.cnpd.targetRevision }}
|
||||||
|
destination:
|
||||||
|
server: {{ .Values.cnpg.destination.server }}
|
||||||
|
namespace: {{ .Values.cnpg.destination.namespace }}
|
||||||
|
syncPolicy:
|
||||||
|
automated:
|
||||||
|
prune: true # Automatically remove resources no longer in the repo
|
||||||
|
selfHeal: true # Automatically self-heal when drift is detected
|
||||||
|
syncOptions:
|
||||||
|
- ApplyOutOfSyncOnly=true
|
||||||
|
- ServerSideApply=true
|
||||||
|
- CreateNamespace=true
|
||||||
|
{{- end }}
|
||||||
24
k3s-tooling/templates/longhorn.yaml
Normal file
24
k3s-tooling/templates/longhorn.yaml
Normal file
@@ -0,0 +1,24 @@
|
|||||||
|
{{- if .Values.longhorn.enable -}}
|
||||||
|
apiVersion: argoproj.io/v1alpha1
|
||||||
|
kind: Application
|
||||||
|
metadata:
|
||||||
|
name: longhorn
|
||||||
|
namespace: {{ .Values.argocd.namespace }}
|
||||||
|
finalizers:
|
||||||
|
- resources-finalizer.argocd.argoproj.io
|
||||||
|
spec:
|
||||||
|
project: {{ .Values.argocd.project }}
|
||||||
|
source:
|
||||||
|
repoURL: "https://charts.longhorn.io" # Helm repository for Tailscale
|
||||||
|
chart: longhorn # Chart name
|
||||||
|
targetRevision: {{ .Values.longhorn.targetRevision }}
|
||||||
|
destination:
|
||||||
|
server: {{ .Values.longhorn.destination.server }}
|
||||||
|
namespace: {{ .Values.longhorn.destination.namespace }}
|
||||||
|
syncPolicy:
|
||||||
|
automated:
|
||||||
|
prune: true # Automatically remove resources no longer in the repo
|
||||||
|
selfHeal: true # Automatically self-heal when drift is detected
|
||||||
|
syncOptions:
|
||||||
|
- CreateNamespace=true
|
||||||
|
{{- end }}
|
||||||
35
k3s-tooling/templates/tailscale-operator.yaml
Normal file
35
k3s-tooling/templates/tailscale-operator.yaml
Normal file
@@ -0,0 +1,35 @@
|
|||||||
|
{{- if .Values.tailscaleOperator.enable -}}
|
||||||
|
apiVersion: argoproj.io/v1alpha1
|
||||||
|
kind: Application
|
||||||
|
metadata:
|
||||||
|
name: tailscale-operator
|
||||||
|
namespace: {{ .Values.argocd.namespace }}
|
||||||
|
finalizers:
|
||||||
|
- resources-finalizer.argocd.argoproj.io
|
||||||
|
spec:
|
||||||
|
project: {{ .Values.argocd.project }}
|
||||||
|
source:
|
||||||
|
repoURL: "https://pkgs.tailscale.com/helmcharts"
|
||||||
|
chart: tailscale-operator
|
||||||
|
targetRevision: {{ .Values.tailscaleOperator.targetRevision }}
|
||||||
|
helm:
|
||||||
|
valuesObject:
|
||||||
|
oauth:
|
||||||
|
clientId: {{ .Vault.tailscaleOperator.oauth.clientId }}
|
||||||
|
clientSecret: {{ .Vault.tailscaleOperator.oauth.clientSecret }}
|
||||||
|
operatorConfig:
|
||||||
|
hostname: {{ .Values.tailscaleOperator.operatorHostname }}
|
||||||
|
apiServerProxyConfig:
|
||||||
|
mode: "true"
|
||||||
|
destination:
|
||||||
|
server: {{ .Values.tailscaleOperator.destination.server }}
|
||||||
|
namespace: {{ .Values.tailscaleOperator.destination.namespace }}
|
||||||
|
syncPolicy:
|
||||||
|
automated:
|
||||||
|
prune: true # Automatically remove resources no longer in the repo
|
||||||
|
selfHeal: true # Automatically self-heal when drift is detected
|
||||||
|
syncOptions:
|
||||||
|
- ApplyOutOfSyncOnly=true
|
||||||
|
- ServerSideApply=true
|
||||||
|
- CreateNamespace=true
|
||||||
|
{{- end }}
|
||||||
26
k3s-tooling/templates/traefik.yaml
Normal file
26
k3s-tooling/templates/traefik.yaml
Normal file
@@ -0,0 +1,26 @@
|
|||||||
|
{{- if .Values.traefik.enable -}}
|
||||||
|
apiVersion: argoproj.io/v1alpha1
|
||||||
|
kind: Application
|
||||||
|
metadata:
|
||||||
|
name: traefik
|
||||||
|
namespace: {{ .Values.argocd.namespace }}
|
||||||
|
finalizers:
|
||||||
|
- resources-finalizer.argocd.argoproj.io
|
||||||
|
spec:
|
||||||
|
project: {{ .Values.argocd.project }}
|
||||||
|
source:
|
||||||
|
repoURL: "https://traefik.github.io/charts"
|
||||||
|
chart: traefik
|
||||||
|
targetRevision: {{ .Values.traefik.targetRevision }}
|
||||||
|
destination:
|
||||||
|
server: {{ .Values.traefik.destination.server }}
|
||||||
|
namespace: {{ .Values.traefik.destination.namespace }}
|
||||||
|
syncPolicy:
|
||||||
|
automated:
|
||||||
|
prune: true # Automatically remove resources no longer in the repo
|
||||||
|
selfHeal: true # Automatically self-heal when drift is detected
|
||||||
|
syncOptions:
|
||||||
|
- ApplyOutOfSyncOnly=true
|
||||||
|
- ServerSideApply=true
|
||||||
|
- CreateNamespace=true
|
||||||
|
{{- end }}
|
||||||
51
k3s-tooling/values.yaml
Normal file
51
k3s-tooling/values.yaml
Normal file
@@ -0,0 +1,51 @@
|
|||||||
|
argocd:
|
||||||
|
namespace: argocd
|
||||||
|
project: default
|
||||||
|
|
||||||
|
cert-manager:
|
||||||
|
enable: false
|
||||||
|
targetRevision: v1.16.x
|
||||||
|
destination:
|
||||||
|
server: https://kubernetes.default.svc
|
||||||
|
namespace: cert-manager
|
||||||
|
|
||||||
|
cnpg:
|
||||||
|
enable: false
|
||||||
|
targetRevision: 0.22.x
|
||||||
|
destination:
|
||||||
|
server: https://kubernetes.default.svc
|
||||||
|
namespace: cnpg-system
|
||||||
|
|
||||||
|
longhorn:
|
||||||
|
enable: false
|
||||||
|
targetRevision: 1.7.x
|
||||||
|
destination:
|
||||||
|
server: https://kubernetes.default.svc
|
||||||
|
namespace: longhorn-system
|
||||||
|
|
||||||
|
tailscaleOperator:
|
||||||
|
enable: false
|
||||||
|
targetRevision: 1.x
|
||||||
|
destination:
|
||||||
|
server: https://kubernetes.default.svc
|
||||||
|
namespace: tailscale
|
||||||
|
oauth:
|
||||||
|
clientId:
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: tailscale-operator-config
|
||||||
|
key: client-id
|
||||||
|
clientSecret:
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: tailscale-operator-config
|
||||||
|
key: client-secret
|
||||||
|
operatorHostname: tailscale-operator
|
||||||
|
|
||||||
|
traefik:
|
||||||
|
enable: false
|
||||||
|
targetRevision: 25.x
|
||||||
|
destination:
|
||||||
|
server: https://kubernetes.default.svc
|
||||||
|
namespace: kube-system
|
||||||
|
|
||||||
Reference in New Issue
Block a user