Переделка CI/CD

This commit is contained in:
2025-09-09 12:43:41 +03:00
parent 68bf3f9056
commit 9c8261d031
6 changed files with 398 additions and 213 deletions
+33 -79
View File
@@ -1,88 +1,42 @@
#
# Данный конфигурационный файл не является конечным исполнением
# Параметры подставлены исключительно для тестов и могут быть измененены в соответствии с Pipeline
#
# Пример для DEV сборки
stand: dev
stand: {{ stand }}
mainContainer:
###### Репозиторий
deployment:
image:
repository: "{{ registryUrl }}/{{ imageName }}"
tag: {{ version }}
containerPort: {{ appPort }}
###### Ресурсы
repository: drn.tst.nubes.ru/deck-auth-api-test
tag: $VERSION
containerPort: 8080
resources:
requests:
cpu: "500m"
memory: "1024Mi"
requests: # Начальные запросы
cpu: "500m"
memory: "256Mi"
limits:
cpu: "1000m"
memory: "1024Mi"
###### Пробы контейнера
cpu: "2" # Максимальные лимиты
memory: "1024Mi"
readinessProbe:
tcpSocket:
port: {{ appPort }}
livenessProbe:
failureThreshold: 5
initialDelaySeconds: 10
periodSeconds: 30
successThreshold: 1
timeoutSeconds: 5
httpGet:
path: /api/v1
port: {{ appPort }}
path: /api/v1/health
scheme: HTTP
# Для Vault есть условие
# Предварительно в Namespace должен быть создан SecretStore
#
# Читать: https://confluence.ad.nubes.ru/pages/viewpage.action?pageId=58626585
# (Вариант 2. Используя external-operator)
livenessProbe:
failureThreshold: 5
initialDelaySeconds: 30
periodSeconds: 15
successThreshold: 1
timeoutSeconds: 1
vault:
secretStore: "{{ namespace }}"
enabled: true
serviceAccountName: "{{ namespace }}-sa"
target:
name: "{{ appName }}-envs"
data:
- secretKey: LUCEE_EXTENSIONS
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: LUCEE_EXTENSIONS
- secretKey: ORCHESTRATOR_AUTH
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: ORCHESTRATOR_AUTH
- secretKey: cfconfig_datasources_cmdb_database
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_database
- secretKey: cfconfig_datasources_cmdb_dbdriver
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_dbdriver
- secretKey: cfconfig_datasources_cmdb_host
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_host
- secretKey: cfconfig_datasources_cmdb_name
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_name
- secretKey: cfconfig_datasources_cmdb_password
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_password
- secretKey: cfconfig_datasources_cmdb_port
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_port
- secretKey: cfconfig_datasources_cmdb_username
remoteRef:
key: "deck/kubernetes/{{ stand}}/{{ appName }}"
property: cfconfig_datasources_cmdb_username
enable: true
secretStore: deck-test
secrets:
- VITE_BACKEND_HOST
- VITE_AUTH_HOST
- VITE_KEYCLOAK_CLIENT_ID
- VITE_KEYCLOAK_REALM
- VITE_KEYCLOAK_REDIRECT_URI
- VITE_KEYCLOAK_URL
- VITE_KEYCLOAK_CLIENT_SECRET