...
1apiVersion: policy.linkerd.io/v1beta1 # external-secrets metrics server/server auth for prometheus
2kind: Server
3metadata:
4 name: external-secrets-metrics-server
5 namespace: external-secrets
6 annotations:
7 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
8 pallet.edge.ncr.com/name: external-secrets-operator
9 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
10 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
11 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-infra'
12 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
13 labels:
14 cluster_hash: ${cluster_hash}
15 cluster_uuid: ${cluster_uuid}
16spec:
17 port: metrics
18 podSelector:
19 matchLabels:
20 app.kubernetes.io/instance: kexternal-secrets
21 proxyProtocol: HTTP/1
22---
23apiVersion: policy.linkerd.io/v1beta1
24kind: Server
25metadata:
26 name: external-secrets-probe-server
27 namespace: external-secrets
28 annotations:
29 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
30 pallet.edge.ncr.com/name: external-secrets-operator
31 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
32 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
33 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-infra'
34 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
35 labels:
36 cluster_hash: ${cluster_hash}
37 cluster_uuid: ${cluster_uuid}
38spec:
39 port: health
40 podSelector:
41 matchLabels:
42 app.kubernetes.io/instance: kexternal-secrets
43 proxyProtocol: HTTP/1
44---
45apiVersion: policy.linkerd.io/v1beta1
46kind: Server
47metadata:
48 name: external-secrets-webhook-server
49 namespace: external-secrets
50 annotations:
51 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
52 pallet.edge.ncr.com/name: external-secrets-operator
53 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
54 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
55 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-infra'
56 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
57 labels:
58 cluster_hash: ${cluster_hash}
59 cluster_uuid: ${cluster_uuid}
60spec:
61 port: webhook
62 podSelector:
63 matchLabels:
64 app.kubernetes.io/name: external-secrets-webhook
65 proxyProtocol: opaque
66---
67apiVersion: policy.linkerd.io/v1beta1
68kind: ServerAuthorization
69metadata:
70 name: external-secrets-metrics-server-auth
71 namespace: external-secrets
72 annotations:
73 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
74 pallet.edge.ncr.com/name: external-secrets-operator
75 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
76 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
77 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-infra'
78 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
79 labels:
80 cluster_hash: ${cluster_hash}
81 cluster_uuid: ${cluster_uuid}
82spec:
83 client:
84 meshTLS:
85 serviceAccounts:
86 # authorize access to the metrics port from prometheus
87 - name: prometheus
88 namespace: prometheus
89 server:
90 name: external-secrets-metrics-server
91---
92apiVersion: policy.linkerd.io/v1beta1
93kind: ServerAuthorization
94metadata:
95 name: external-secrets-probe-server-auth
96 namespace: external-secrets
97 annotations:
98 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
99 pallet.edge.ncr.com/name: external-secrets-operator
100 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
101 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
102 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-infra'
103 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
104 labels:
105 cluster_hash: ${cluster_hash}
106 cluster_uuid: ${cluster_uuid}
107spec:
108 client:
109 unauthenticated: true
110 server:
111 name: external-secrets-probe-server
112# external-secrets metrics server/server auth for prometheus
113---
114apiVersion: policy.linkerd.io/v1beta1
115kind: ServerAuthorization
116metadata:
117 name: external-secrets-webhook-server-auth
118 namespace: external-secrets
119 annotations:
120 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
121 pallet.edge.ncr.com/name: external-secrets-operator
122 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
123 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
124 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-infra'
125 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
126 labels:
127 cluster_hash: ${cluster_hash}
128 cluster_uuid: ${cluster_uuid}
129spec:
130 client:
131 unauthenticated: true
132 server:
133 name: external-secrets-webhook-server
View as plain text