-
Notifications
You must be signed in to change notification settings - Fork 4
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request #255 from RADAR-base/update-kratos-ui
Update kratos ui docker image
- Loading branch information
Showing
12 changed files
with
112 additions
and
110 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
File renamed without changes.
6 changes: 3 additions & 3 deletions
6
...nal/kratos-selfservice-ui-node/Chart.yaml → external/radar-self-enrolment-ui/Chart.yaml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,6 +1,6 @@ | ||
apiVersion: v2 | ||
appVersion: "v0.13.0-4" | ||
appVersion: "0.0.1" | ||
description: A Helm chart for ORY Kratos's example ui for Kubernetes | ||
name: kratos-selfservice-ui-node | ||
version: 0.43.1 | ||
name: radar-self-enrolment-ui | ||
version: 0.0.1 | ||
type: application |
104 changes: 53 additions & 51 deletions
104
...rnal/kratos-selfservice-ui-node/README.md → external/radar-self-enrolment-ui/README.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,74 +1,76 @@ | ||
# kratos-selfservice-ui-node | ||
|
||
![Version: 0.43.1](https://img.shields.io/badge/Version-0.43.1-informational?style=flat-square) ![Type: application](https://img.shields.io/badge/Type-application-informational?style=flat-square) ![AppVersion: v0.13.0-4](https://img.shields.io/badge/AppVersion-v0.13.0--4-informational?style=flat-square) | ||
|
||
# radar-self-enrolment-ui | ||
|
||
![Version: 0.0.1](https://img.shields.io/badge/Version-0.0.1-informational?style=flat-square) ![Type: application](https://img.shields.io/badge/Type-application-informational?style=flat-square) ![AppVersion: 0.0.1](https://img.shields.io/badge/AppVersion-0.0.1-informational?style=flat-square) | ||
|
||
A Helm chart for ORY Kratos's example ui for Kubernetes | ||
|
||
## Values | ||
|
||
| Key | Type | Default | Description | | ||
|-----|------|---------|-------------| | ||
| affinity | object | `{}` | | | ||
| basePath | string | `""` | The basePath | | ||
| config.csrfCookieName | string | `""` | | | ||
| config.secrets | object | `{}` | | | ||
| deployment.annotations | object | `{}` | | | ||
| deployment.automountServiceAccountToken | bool | `false` | | | ||
| deployment.dnsConfig | object | `{}` | Configure pod dnsConfig. | | ||
| deployment.extraEnv | list | `[]` | Array of extra envs to be passed to the deployment. Kubernetes format is expected - name: FOO value: BAR | | ||
| deployment.extraVolumeMounts | list | `[]` | | | ||
| deployment.extraVolumes | list | `[]` | If you want to mount external volume For example, mount a secret containing Certificate root CA to verify database TLS connection. | | ||
| deployment.labels | object | `{}` | | | ||
| deployment.nodeSelector | object | `{}` | Node labels for pod assignment. | | ||
| deployment.resources | object | `{}` | | | ||
| deployment.terminationGracePeriodSeconds | int | `60` | | | ||
| deployment.tolerations | list | `[]` | Configure node tolerations. | | ||
| deployment.topologySpreadConstraints | list | `[]` | Configure pod topologySpreadConstraints. | | ||
| fullnameOverride | string | `""` | | | ||
| replicaCount | int | `1` | Number of replicas in deployment | | ||
| revisionHistoryLimit | int | `5` | Number of revisions kept in history | | ||
| image.repository | string | `"ghcr.io/radar-base/radar-self-enrolment-ui"` | | | ||
| image.tag | string | `"dev"` | Image version | | ||
| image.pullPolicy | string | `"IfNotPresent"` | | | ||
| image.repository | string | `"oryd/kratos-selfservice-ui-node"` | | | ||
| image.tag | string | `"v0.13.0-20"` | ORY KRATOS VERSION | | ||
| imagePullSecrets | list | `[]` | | | ||
| ingress.annotations | object | `{}` | | | ||
| ingress.className | string | `""` | | | ||
| nameOverride | string | `""` | | | ||
| fullnameOverride | string | `""` | | | ||
| config.csrfCookieName | string | `""` | | | ||
| config.secrets | object | `{}` | | | ||
| service.type | string | `"ClusterIP"` | | | ||
| service.loadBalancerIP | string | `""` | The load balancer IP | | ||
| service.nodePort | string | `""` | | | ||
| service.port | int | `80` | | | ||
| service.name | string | `"http"` | The service port name. Useful to set a custom service port name if it must follow a scheme (e.g. Istio) | | ||
| secret.enabled | bool | `true` | switch to false to prevent creating the secret | | ||
| secret.nameOverride | string | `""` | Provide custom name of existing secret, or custom name of secret to be created | | ||
| secret.secretAnnotations | object | `{"helm.sh/hook":"pre-install, pre-upgrade","helm.sh/hook-delete-policy":"before-hook-creation","helm.sh/hook-weight":0,"helm.sh/resource-policy":"keep"}` | Annotations to be added to secret. Annotations are added only when secret is being created. Existing secret will not be modified. | | ||
| secret.hashSumEnabled | bool | `true` | switch to false to prevent checksum annotations being maintained and propogated to the pods | | ||
| ingress.enabled | bool | `false` | | | ||
| ingress.className | string | `""` | | | ||
| ingress.annotations | object | `{}` | | | ||
| ingress.hosts[0].host | string | `"chart-example.local"` | | | ||
| ingress.hosts[0].paths[0].path | string | `"/"` | | | ||
| ingress.hosts[0].paths[0].pathType | string | `"ImplementationSpecific"` | | | ||
| ingress.tls | list | `[]` | | | ||
| jwksUrl | string | `"http://oathkeeper-api"` | The jwksUrl | | ||
| kratosAdminUrl | string | `"http://kratos-admin"` | Set this to ORY Kratos's Admin URL | | ||
| kratosBrowserUrl | string | `"http://kratos-browserui"` | Set this to ORY Kratos's public URL accessible from the outside world. | | ||
| kratosPublicUrl | string | `"http://kratos-public"` | Set this to ORY Kratos's public URL | | ||
| nameOverride | string | `""` | | | ||
| podSecurityContext.fsGroup | int | `10000` | | | ||
| podSecurityContext.fsGroupChangePolicy | string | `"OnRootMismatch"` | | | ||
| podSecurityContext.runAsGroup | int | `10000` | | | ||
| podSecurityContext.runAsNonRoot | bool | `true` | | | ||
| podSecurityContext.runAsUser | int | `10000` | | | ||
| podSecurityContext.seccompProfile.type | string | `"RuntimeDefault"` | | | ||
| projectName | string | `"SecureApp"` | | | ||
| replicaCount | int | `1` | Number of replicas in deployment | | ||
| revisionHistoryLimit | int | `5` | Number of revisions kept in history | | ||
| secret.enabled | bool | `true` | switch to false to prevent creating the secret | | ||
| secret.hashSumEnabled | bool | `true` | switch to false to prevent checksum annotations being maintained and propogated to the pods | | ||
| secret.nameOverride | string | `""` | Provide custom name of existing secret, or custom name of secret to be created | | ||
| secret.secretAnnotations | object | `{"helm.sh/hook":"pre-install, pre-upgrade","helm.sh/hook-delete-policy":"before-hook-creation","helm.sh/hook-weight":"0","helm.sh/resource-policy":"keep"}` | Annotations to be added to secret. Annotations are added only when secret is being created. Existing secret will not be modified. | | ||
| securityContext.allowPrivilegeEscalation | bool | `false` | | | ||
| securityContext.capabilities.drop[0] | string | `"ALL"` | | | ||
| securityContext.privileged | bool | `false` | | | ||
| securityContext.readOnlyRootFilesystem | bool | `false` | | | ||
| securityContext.runAsGroup | int | `10000` | | | ||
| securityContext.runAsNonRoot | bool | `true` | | | ||
| securityContext.runAsUser | int | `10000` | | | ||
| securityContext.seLinuxOptions.level | string | `"s0:c123,c456"` | | | ||
| securityContext.runAsGroup | int | `10000` | | | ||
| securityContext.allowPrivilegeEscalation | bool | `false` | | | ||
| securityContext.privileged | bool | `false` | | | ||
| securityContext.seccompProfile.type | string | `"RuntimeDefault"` | | | ||
| service.loadBalancerIP | string | `""` | The load balancer IP | | ||
| service.name | string | `"http"` | The service port name. Useful to set a custom service port name if it must follow a scheme (e.g. Istio) | | ||
| service.nodePort | string | `""` | | | ||
| service.port | int | `80` | | | ||
| service.type | string | `"ClusterIP"` | | | ||
| securityContext.seLinuxOptions.level | string | `"s0:c123,c456"` | | | ||
| podSecurityContext.fsGroupChangePolicy | string | `"OnRootMismatch"` | | | ||
| podSecurityContext.runAsNonRoot | bool | `true` | | | ||
| podSecurityContext.runAsUser | int | `10000` | | | ||
| podSecurityContext.fsGroup | int | `10000` | | | ||
| podSecurityContext.runAsGroup | int | `10000` | | | ||
| podSecurityContext.seccompProfile.type | string | `"RuntimeDefault"` | | | ||
| deployment.resources | object | `{}` | | | ||
| deployment.extraEnv | list | `[]` | Array of extra envs to be passed to the deployment. Kubernetes format is expected - name: FOO value: BAR | | ||
| deployment.extraVolumes | list | `[]` | If you want to mount external volume For example, mount a secret containing Certificate root CA to verify database TLS connection. | | ||
| deployment.extraVolumeMounts | list | `[]` | | | ||
| deployment.nodeSelector | object | `{}` | Node labels for pod assignment. | | ||
| deployment.tolerations | list | `[]` | Configure node tolerations. | | ||
| deployment.topologySpreadConstraints | list | `[]` | Configure pod topologySpreadConstraints. | | ||
| deployment.dnsConfig | object | `{}` | Configure pod dnsConfig. | | ||
| deployment.labels | object | `{}` | | | ||
| deployment.annotations | object | `{}` | | | ||
| deployment.automountServiceAccountToken | bool | `false` | | | ||
| deployment.terminationGracePeriodSeconds | int | `60` | | | ||
| affinity | object | `{}` | | | ||
| kratosPublicUrl | string | `"http://kratos:4433"` | Set this to ORY Kratos's public URL | | ||
| hydraAdminUrl | string | `"http://hydra:4445"` | Set this to ORY Hydra's Admin URL | | ||
| hydraPublicUrl | string | `"http://hydra:4444"` | Set this to ORY Hydra's public URL | | ||
| basePath | string | `""` | The basePath | | ||
| jwksUrl | string | `"http://hydra:4445/admin/keys/hydra.jwt.access-token"` | The jwksUrl | | ||
| projectName | string | `"SecureApp"` | | | ||
| test.busybox | object | `{"repository":"busybox","tag":1}` | use a busybox image from another repository | | ||
|
||
---------------------------------------------- | ||
Autogenerated from chart metadata using [helm-docs v1.13.1](https://github.com/norwoodj/helm-docs/releases/v1.13.1) | ||
Autogenerated from chart metadata using [helm-docs v1.11.3](https://github.com/norwoodj/helm-docs/releases/v1.11.3) |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
6 changes: 3 additions & 3 deletions
6
...node/templates/tests/test-connection.yaml → ...t-ui/templates/tests/test-connection.yaml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,18 +1,18 @@ | ||
apiVersion: v1 | ||
kind: Pod | ||
metadata: | ||
name: "{{ include "kratos-selfservice-ui-node.fullname" . }}-test-connection" | ||
name: "{{ include "radar-self-enrolment-ui.fullname" . }}-test-connection" | ||
{{- if .Release.Namespace }} | ||
namespace: {{ .Release.Namespace }} | ||
{{- end }} | ||
labels: | ||
{{ include "kratos-selfservice-ui-node.labels" . | indent 4 }} | ||
{{ include "radar-self-enrolment-ui.labels" . | indent 4 }} | ||
annotations: | ||
"helm.sh/hook": test-success | ||
spec: | ||
containers: | ||
- name: wget | ||
image: "{{ .Values.test.busybox.repository }}:{{ .Values.test.busybox.tag }}" | ||
command: ['wget'] | ||
args: ['{{ include "kratos-selfservice-ui-node.fullname" . }}:{{ .Values.service.port }}{{ .Values.basePath }}/health/ready'] | ||
args: ['{{ include "radar-self-enrolment-ui.fullname" . }}:{{ .Values.service.port }}{{ .Values.basePath }}/health/ready'] | ||
restartPolicy: Never |
Oops, something went wrong.