feat(dex): Added dex to observability cluster for testing
This commit is contained in:
parent
00a382cc7f
commit
54eb8164f4
2 changed files with 99 additions and 0 deletions
29
otc/observability.t09.de/stacks/core/dex.yaml
Normal file
29
otc/observability.t09.de/stacks/core/dex.yaml
Normal file
|
|
@ -0,0 +1,29 @@
|
||||||
|
apiVersion: argoproj.io/v1alpha1
|
||||||
|
kind: Application
|
||||||
|
metadata:
|
||||||
|
name: dex
|
||||||
|
namespace: argocd
|
||||||
|
labels:
|
||||||
|
env: dev
|
||||||
|
spec:
|
||||||
|
project: default
|
||||||
|
syncPolicy:
|
||||||
|
automated:
|
||||||
|
selfHeal: true
|
||||||
|
syncOptions:
|
||||||
|
- CreateNamespace=true
|
||||||
|
retry:
|
||||||
|
limit: -1
|
||||||
|
destination:
|
||||||
|
name: in-cluster
|
||||||
|
namespace: dex
|
||||||
|
sources:
|
||||||
|
- repoURL: https://charts.dexidp.io
|
||||||
|
chart: dex
|
||||||
|
targetRevision: 0.23.0
|
||||||
|
helm:
|
||||||
|
valueFiles:
|
||||||
|
- $values/otc/observability.t09.de/stacks/core/dex/values.yaml
|
||||||
|
- repoURL: https://edp.buildth.ing/DevFW-CICD/stacks-instances
|
||||||
|
targetRevision: HEAD
|
||||||
|
ref: values
|
||||||
70
otc/observability.t09.de/stacks/core/dex/values.yaml
Normal file
70
otc/observability.t09.de/stacks/core/dex/values.yaml
Normal file
|
|
@ -0,0 +1,70 @@
|
||||||
|
ingress:
|
||||||
|
enabled: true
|
||||||
|
|
||||||
|
annotations:
|
||||||
|
cert-manager.io/cluster-issuer: main
|
||||||
|
hosts:
|
||||||
|
- host: dex.observability.t09.de
|
||||||
|
paths:
|
||||||
|
- path: /
|
||||||
|
tls:
|
||||||
|
- hosts:
|
||||||
|
- dex.observability.t09.de
|
||||||
|
secretName: dex-cert
|
||||||
|
|
||||||
|
envVars:
|
||||||
|
- name: FORGEJO_CLIENT_SECRET
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: dex-forgejo-client
|
||||||
|
key: clientSecret
|
||||||
|
- name: FORGEJO_CLIENT_ID
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: dex-forgejo-client
|
||||||
|
key: clientID
|
||||||
|
- name: OIDC_DEX_GRAFANA_CLIENT_SECRET
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: dex-grafana-client
|
||||||
|
key: clientSecret
|
||||||
|
- name: OIDC_DEX_ARGO_CLIENT_SECRET
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
name: dex-argo-client
|
||||||
|
key: clientSecret
|
||||||
|
|
||||||
|
config:
|
||||||
|
# Set it to a valid URL
|
||||||
|
issuer: https://dex.observability.t09.de
|
||||||
|
|
||||||
|
# See https://dexidp.io/docs/storage/ for more options
|
||||||
|
storage:
|
||||||
|
type: memory
|
||||||
|
|
||||||
|
oauth2:
|
||||||
|
skipApprovalScreen: true
|
||||||
|
alwaysShowLoginScreen: false
|
||||||
|
|
||||||
|
connectors:
|
||||||
|
- type: gitea
|
||||||
|
id: gitea
|
||||||
|
name: Forgejo
|
||||||
|
config:
|
||||||
|
clientID: "{{`{{ .Env.FORGEJO_CLIENT_ID }}`}}"
|
||||||
|
clientSecret: "{{`{{ .Env.FORGEJO_CLIENT_SECRET }}`}}"
|
||||||
|
redirectURI: https://dex.observability.t09.de/callback
|
||||||
|
baseURL: https://edp.buildth.ing
|
||||||
|
enablePasswordDB: false
|
||||||
|
|
||||||
|
staticClients:
|
||||||
|
- id: controller-argocd-dex
|
||||||
|
name: ArgoCD Client
|
||||||
|
redirectURIs:
|
||||||
|
- "http://argocd.observability.t09.de/auth/callback"
|
||||||
|
secret: "{{`{{ .Env.OIDC_DEX_ARGO_CLIENT_SECRET }}`}}"
|
||||||
|
- id: grafana
|
||||||
|
redirectURIs:
|
||||||
|
- "https://grafana.observability.t09.de/login/generic_oauth"
|
||||||
|
name: "Grafana"
|
||||||
|
secret: "{{`{{ .Env.OIDC_DEX_GRAFANA_CLIENT_SECRET }}`}}"
|
||||||
Loading…
Add table
Add a link
Reference in a new issue