-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathvalues.yaml
120 lines (103 loc) · 3.17 KB
/
values.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
# Default values for grader-api.
# This is a YAML-formatted file.
# Declare variables to be passed into your templates.
replicaCount: 1
image:
repository: containers.renci.org/helxplatform/grader-api
pullPolicy: Always
# Overrides the image tag whose default is the chart appVersion.
tag: latest
imagePullSecrets: []
nameOverride: ""
fullnameOverride: ""
serviceAccount:
# Specifies whether a service account should be created
create: true
# Annotations to add to the service account
annotations: {}
# The name of the service account to use.
# If not set and create is true, a name is generated using the fullname template
name: ""
podAnnotations: {}
podSecurityContext: {}
# fsGroup: 2000
securityContext: {}
# capabilities:
# drop:
# - ALL
# readOnlyRootFilesystem: true
# runAsNonRoot: true
# runAsUser: 1000
service:
type: ClusterIP
port: 8000
ingress:
enabled: false
className: ""
annotations: {}
# kubernetes.io/ingress.class: nginx
# kubernetes.io/tls-acme: "true"
hosts:
- host: chart-example.local
paths:
- path: /
pathType: ImplementationSpecific
tls: []
# - secretName: chart-example-tls
# hosts:
# - chart-example.local
resources: {}
# We usually recommend not to specify default resources and to leave this as a conscious
# choice for the user. This also increases chances charts run on environments with little
# resources, such as Minikube. If you do want to specify resources, uncomment the following
# lines, adjust them as necessary, and remove the curly braces after 'resources:'.
# limits:
# cpu: 100m
# memory: 128Mi
# requests:
# cpu: 100m
# memory: 128Mi
autoscaling:
enabled: false
minReplicas: 1
maxReplicas: 100
targetCPUUtilizationPercentage: 80
# targetMemoryUtilizationPercentage: 80
nodeSelector: {}
tolerations: []
affinity: {}
config:
enabled: true
data:
DEV_PHASE: dev
GITEA_SSH_URL: ssh://git@<my-gitea-ssh-svc>:2222
GITEA_ASSIST_API_URL: <change-me>
POSTGRES_PORT: "5432"
POSTGRES_DB: postgres
POSTGRES_USER: postgres
STUDENT_APPSTORE_HOST: "http://my-student-appstore-service:8000"
INSTRUCTOR_APPSTORE_HOST: "http://my-instructor-appstore-service:8000"
LDAP_HOST: ldap.unc.edu
LDAP_PORT: "636"
LDAP_SERVICE_ACCOUNT_BIND_DN: "cn=unc:app:renci:eduhelx,ou=Applications,dc=unc,dc=edu"
LDAP_TIMEOUT_SECONDS: "5"
NUM_WORKERS: "4"
secretData:
# -- # E.g. run `secrets.token_urlsafe(64)` in a Python 3 shell to generate this value.
# The JWT secret key is a private key used to sign/verify that a JWT is issued by the server.
JWT_SECRET_KEY: "<change-me>"
# The bearer token used to authenticate with Gitea Assist. The value is encoded in Gitea Assist's
# credential secret (`config.secrets.creds` in the gitea-assist chart values)
GITEA_ASSIST_AUTH_TOKEN: "<change-me>"
# -- The account password for the LDAP service
LDAP_SERVICE_ACCOUNT_PASSWORD: "<change-me>"
livenessProbe:
initialDelaySeconds: 30
periodSeconds: 30
readinessProbe:
initialDelaySeconds: 30
periodSeconds: 10
postgresql:
enabled: true
auth:
existingSecret: grader-api-postgresql