Secret store

This commit is contained in:
2026-01-12 02:18:03 +01:00
parent 7a5fc8a9e7
commit f9bf4a7f8b
3 changed files with 58 additions and 20 deletions

View File

@@ -1,5 +1,6 @@
{{- if .Values.vault.enabled }}
apiVersion: external-secrets.io/v1beta1
---
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: db-encryption
@@ -9,10 +10,10 @@ metadata:
app.kubernetes.io/instance: {{ .Release.Name }}
app.kubernetes.io/managed-by: {{ .Release.Service }}
spec:
refreshInterval: {{ .Values.vault.refreshInterval | default "1h" }}
refreshInterval: {{ .Values.vault.refreshInterval | default "5m" }}
secretStoreRef:
name: {{ .Values.vault.secretStoreName }}
kind: {{ .Values.vault.secretStoreKind | default "SecretStore" }}
kind: SecretStore
target:
name: db-encryption
creationPolicy: Owner