...
1apiVersion: iam.cnrm.cloud.google.com/v1beta1
2kind: IAMPolicyMember
3metadata:
4 name: lumper-controller-artifact-read
5 namespace: warehouse-system
6 annotations:
7 cnrm.cloud.google.com/project-id: ${gcp_project_id}
8 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
9 pallet.edge.ncr.com/name: lumper-controller
10 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
11 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
12 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-foundation'
13 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
14 labels:
15 cluster_hash: ${cluster_hash}
16 cluster_uuid: ${cluster_uuid}
17spec:
18 member: serviceAccount:lumperctl-${cluster_hash}@${gcp_project_id}.iam.gserviceaccount.com
19 resourceRef:
20 apiVersion: artifactregistry.cnrm.cloud.google.com/v1beta1
21 kind: ArtifactRegistryRepository
22 external: "projects/${foreman_gcp_project_id}/locations/us-east1/repositories/warehouse"
23 role: roles/artifactregistry.reader
24---
25apiVersion: iam.cnrm.cloud.google.com/v1beta1
26kind: IAMServiceAccount
27metadata:
28 name: lumper-controller
29 namespace: warehouse-system
30 annotations:
31 cnrm.cloud.google.com/project-id: ${gcp_project_id}
32 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
33 pallet.edge.ncr.com/name: lumper-controller
34 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
35 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
36 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-foundation'
37 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
38 labels:
39 cluster_hash: ${cluster_hash}
40 cluster_uuid: ${cluster_uuid}
41spec:
42 displayName: ${cluster_hash} OCI controller
43 resourceID: lumperctl-${cluster_hash}
44---
45apiVersion: iam.cnrm.cloud.google.com/v1beta1
46kind: IAMServiceAccountKey
47metadata:
48 name: lumper-gcp-api-key
49 namespace: warehouse-system
50 annotations:
51 cnrm.cloud.google.com/project-id: ${gcp_project_id}
52 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
53 pallet.edge.ncr.com/name: lumper-controller
54 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
55 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
56 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-foundation'
57 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
58 labels:
59 cluster_hash: ${cluster_hash}
60 cluster_uuid: ${cluster_uuid}
61spec:
62 serviceAccountRef:
63 name: lumper-controller
64---
65apiVersion: secretmanager.cnrm.cloud.google.com/v1beta1
66kind: SecretManagerSecret
67metadata:
68 name: lumper-controller-${cluster_uuid}-gcp-api-key
69 namespace: warehouse-system
70 annotations:
71 cnrm.cloud.google.com/project-id: ${gcp_project_id}
72 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
73 pallet.edge.ncr.com/name: lumper-controller
74 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
75 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
76 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-foundation'
77 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
78 labels:
79 cluster_hash: ${cluster_hash}
80 cluster_uuid: ${cluster_uuid}
81spec:
82 replication:
83 automatic: true
84---
85apiVersion: secretmanager.cnrm.cloud.google.com/v1beta1
86kind: SecretManagerSecretVersion
87metadata:
88 name: lumper-controller-${cluster_uuid}-gcp-api-key
89 namespace: warehouse-system
90 annotations:
91 cnrm.cloud.google.com/project-id: ${gcp_project_id}
92 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
93 pallet.edge.ncr.com/name: lumper-controller
94 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
95 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
96 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-foundation'
97 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
98 labels:
99 cluster_hash: ${cluster_hash}
100 cluster_uuid: ${cluster_uuid}
101spec:
102 secretRef:
103 name: lumper-controller-${cluster_uuid}-gcp-api-key
104 enabled: true
105 secretData:
106 valueFrom:
107 secretKeyRef:
108 name: lumper-gcp-api-key
109 key: key.json
View as plain text