Files
argocd/helm/homarr/dev/templates/db-encryption-externalsecret.yaml
2026-01-12 02:18:03 +01:00

27 lines
702 B
YAML

{{- if .Values.vault.enabled }}
---
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: db-encryption
namespace: {{ .Release.Namespace }}
labels:
app.kubernetes.io/name: homarr
app.kubernetes.io/instance: {{ .Release.Name }}
app.kubernetes.io/managed-by: {{ .Release.Service }}
spec:
refreshInterval: {{ .Values.vault.refreshInterval | default "5m" }}
secretStoreRef:
name: {{ .Values.vault.secretStoreName }}
kind: SecretStore
target:
name: db-encryption
creationPolicy: Owner
data:
- secretKey: db-encryption-key
remoteRef:
key: {{ .Values.vault.secretPath }}
property: {{ .Values.vault.secretKey }}
{{- end }}