- jaejadle: Next.js app at jaejadle.kro.kr (prod) - jaejadle-dev: dev environment at dev.jaejadle.kro.kr - joossam: FastAPI app at joossameng.kro.kr (prod) - joossam-dev: dev environment at dev.joossameng.kro.kr - All apps use Authelia SSO - jaejadle uses ExternalSecrets for DB and AWS credentials
47 lines
1.0 KiB
YAML
47 lines
1.0 KiB
YAML
apiVersion: external-secrets.io/v1
|
|
kind: ExternalSecret
|
|
metadata:
|
|
name: jaejadle-secrets
|
|
spec:
|
|
refreshInterval: 1h
|
|
secretStoreRef:
|
|
name: vault-backend
|
|
kind: ClusterSecretStore
|
|
target:
|
|
name: jaejadle-secrets
|
|
creationPolicy: Owner
|
|
deletionPolicy: Retain
|
|
data:
|
|
- secretKey: DATABASE_URL
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: DATABASE_URL
|
|
- secretKey: JWT_SECRET
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: JWT_SECRET
|
|
- secretKey: AWS_ACCESS_KEY_ID
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: AWS_ACCESS_KEY_ID
|
|
- secretKey: AWS_SECRET_ACCESS_KEY
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: AWS_SECRET_ACCESS_KEY
|
|
- secretKey: AWS_S3_BUCKET_NAME
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: AWS_S3_BUCKET_NAME
|
|
- secretKey: AWS_S3_ENDPOINT
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: AWS_S3_ENDPOINT
|
|
- secretKey: AWS_REGION
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: AWS_REGION
|
|
- secretKey: CODE
|
|
remoteRef:
|
|
key: jaejadle
|
|
property: CODE
|