56 lines
1.9 KiB
YAML
56 lines
1.9 KiB
YAML
---
|
|
# Source: ingress-nginx/templates/admission-webhooks/job-patch/job-createSecret.yaml
|
|
apiVersion: batch/v1
|
|
kind: Job
|
|
metadata:
|
|
name: ingress-nginx-admission-create
|
|
namespace: default
|
|
annotations:
|
|
"helm.sh/hook": pre-install,pre-upgrade
|
|
"helm.sh/hook-delete-policy": before-hook-creation,hook-succeeded
|
|
labels:
|
|
helm.sh/chart: ingress-nginx-4.1.0
|
|
app.kubernetes.io/name: ingress-nginx
|
|
app.kubernetes.io/instance: ingress-nginx
|
|
app.kubernetes.io/version: "1.2.0"
|
|
app.kubernetes.io/part-of: ingress-nginx
|
|
app.kubernetes.io/managed-by: Helm
|
|
app.kubernetes.io/component: admission-webhook
|
|
spec:
|
|
template:
|
|
metadata:
|
|
name: ingress-nginx-admission-create
|
|
labels:
|
|
helm.sh/chart: ingress-nginx-4.1.0
|
|
app.kubernetes.io/name: ingress-nginx
|
|
app.kubernetes.io/instance: ingress-nginx
|
|
app.kubernetes.io/version: "1.2.0"
|
|
app.kubernetes.io/part-of: ingress-nginx
|
|
app.kubernetes.io/managed-by: Helm
|
|
app.kubernetes.io/component: admission-webhook
|
|
spec:
|
|
containers:
|
|
- name: create
|
|
image: "k8s.gcr.io/ingress-nginx/kube-webhook-certgen:v1.1.1@sha256:64d8c73dca984af206adf9d6d7e46aa550362b1d7a01f3a0a91b20cc67868660"
|
|
imagePullPolicy: IfNotPresent
|
|
args:
|
|
- create
|
|
- --host=ingress-nginx-controller-admission,ingress-nginx-controller-admission.$(POD_NAMESPACE).svc
|
|
- --namespace=$(POD_NAMESPACE)
|
|
- --secret-name=ingress-nginx-admission
|
|
env:
|
|
- name: POD_NAMESPACE
|
|
valueFrom:
|
|
fieldRef:
|
|
fieldPath: metadata.namespace
|
|
securityContext:
|
|
allowPrivilegeEscalation: false
|
|
restartPolicy: OnFailure
|
|
serviceAccountName: ingress-nginx-admission
|
|
nodeSelector:
|
|
kubernetes.io/os: linux
|
|
securityContext:
|
|
runAsNonRoot: true
|
|
runAsUser: 2000
|
|
fsGroup: 2000
|