add woodpecker pipeline to reconcile flux
All checks were successful
ci/woodpecker/push/flux-reconcile-source Pipeline was successful
All checks were successful
ci/woodpecker/push/flux-reconcile-source Pipeline was successful
This commit is contained in:
4
vault/approles/ci-flux-reconcile.yaml
Normal file
4
vault/approles/ci-flux-reconcile.yaml
Normal file
@@ -0,0 +1,4 @@
|
||||
token_ttl: 20m
|
||||
token_max_ttl: 20m
|
||||
policies:
|
||||
- flux-reconcile
|
||||
@@ -1,6 +1,6 @@
|
||||
allowed_kubernetes_namespaces: flux-system
|
||||
generated_role_rules:
|
||||
rules:
|
||||
- apiGroups: ["kustomize.toolkit.fluxcd.io"]
|
||||
- apiGroups: ["source.toolkit.fluxcd.io"]
|
||||
resources: ["gitrepositories"]
|
||||
verbs: ["update", "watch"]
|
||||
verbs: ["get", "patch", "watch"]
|
||||
|
||||
3
vault/policy/flux-reconcile.hcl
Normal file
3
vault/policy/flux-reconcile.hcl
Normal file
@@ -0,0 +1,3 @@
|
||||
path "kubernetes/creds/flux-reconcile" {
|
||||
capabilities = ["update"]
|
||||
}
|
||||
Reference in New Issue
Block a user