sso-kustom/components/hydra-ldap/resources/deployment.yaml

52 lines
1.4 KiB
YAML
Raw Permalink Normal View History

2023-11-24 12:09:47 +01:00
apiVersion: apps/v1
kind: Deployment
metadata:
name: hydra-ldap
2023-11-24 12:09:47 +01:00
namespace: default
labels:
app.kubernetes.io/name: hydra-ldap
2023-11-24 12:09:47 +01:00
app.kubernetes.io/version: "v1.2.2"
spec:
replicas: 1
selector:
matchLabels:
app.kubernetes.io/name: hydra-ldap
2023-11-24 12:09:47 +01:00
template:
metadata:
labels:
app.kubernetes.io/name: hydra-ldap
2023-11-24 12:09:47 +01:00
app.kubernetes.io/version: "v1.2.2"
spec:
containers:
- name: werther
2023-12-06 15:38:40 +01:00
image: reg.cadoles.com/cadoles/hydra-werther:2023.12.6-stable.1421.15a4717
2023-11-24 12:09:47 +01:00
imagePullPolicy: IfNotPresent
envFrom:
- configMapRef:
name: hydra-ldap-env
2023-11-24 12:09:47 +01:00
env:
- name: WERTHER_WEB_DIR
value: "/usr/share/werther/login/"
- name: WERTHER_LDAP_BINDDN
valueFrom:
secretKeyRef:
name: hydra-ldap-sc
2023-11-24 12:09:47 +01:00
key: WERTHER_LDAP_BINDDN
- name: WERTHER_LDAP_BINDPW
valueFrom:
secretKeyRef:
name: hydra-ldap-sc
2023-11-24 12:09:47 +01:00
key: WERTHER_LDAP_BINDPW
ports:
- containerPort: 8080
name: hydra-ldap-http
2023-11-24 12:09:47 +01:00
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop:
- ALL
privileged: false
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 100