KHIYANI, RAHUL (rk0850)
Tiller-deploy: Add pod/container security context
This updates the tiller chart to include the pod security context on the pod template. This also adds the container security context to set readOnlyRootFilesystem flag to true Change-Id: I08694e58d057c04f7ba30ded5dca1207ceaac5e2
|1 day ago|
|armada||2 months ago|
|charts||1 day ago|
|doc||3 months ago|
|etc/armada||1 year ago|
|examples||5 months ago|
|hapi||1 month ago|
|images/armada||4 months ago|
|releasenotes||1 year ago|
|swagger||4 months ago|
|tools||1 month ago|
|.coveragerc||1 year ago|
|.dockerignore||11 months ago|
|.editorconfig||1 year ago|
|.gitignore||1 year ago|
|.gitreview||9 months ago|
|.readthedocs.yaml||4 months ago|
|.stestr.conf||1 year ago|
|.style.yapf||5 months ago|
|.zuul.yaml||5 months ago|
|CONTRIBUTING.rst||1 year ago|
|LICENSE||2 years ago|
|Makefile||4 months ago|
|README.rst||5 months ago|
|controller.sh||1 year ago|
|entrypoint.sh||3 months ago|
|plugin.yaml||1 year ago|
|requirements.txt||5 months ago|
|setup.cfg||1 year ago|
|setup.py||1 year ago|
|test-requirements.txt||5 months ago|
|tox.ini||5 months ago|
Armada is a tool for managing multiple Helm charts with dependencies by centralizing all configurations in a single Armada YAML and providing life-cycle hooks for all Helm releases.
Find more documentation for Armada on Read The Docs.
The Armada Python library and command line tool provide a way to synchronize a Helm (Tiller) target with an operator's intended state, consisting of several charts, dependencies, and overrides using a single file or directory with a collection of files. This allows operators to define many charts, potentially with different namespaces for those releases, and their overrides in a central place. With a single command, deploy and/or upgrade them where applicable.
Armada also supports fetching Helm chart source and then building charts from source from various local and remote locations, such as Git endpoints, tarballs or local directories.
It will also give the operator some indication of what is about to change by assisting with diffs for both values, values overrides, and actual template changes.
Its functionality extends beyond Helm, assisting in interacting with Kubernetes directly to perform basic pre- and post-steps, such as removing completed or failed jobs, running backup jobs, blocking on chart readiness, or deleting resources that do not support upgrades. However, primarily, it is an interface to support orchestrating Helm.
Armada consists of two separate but complementary components:
Armada can be most easily installed as a container, which requires Docker to be executed. To install Docker, please reference the following install guide.
Afterward, you can launch the Armada container by executing:
For a comprehensive manual installation guide, please see Manual Install Guide.
To run Armada, simply supply it with your YAML-based intention for any number of charts:
$ armada apply examples/openstack-helm.yaml [ --debug ]
Which should output something like this:
$ armada apply examples/openstack-helm.yaml 2017-02-10 09:42:36,753 armada INFO Cloning git: ...
For more information on how to install and use Armada, please reference: Armada Quickstart.
Armada CLI component has the following integration points:
In addition, Armada's API component has the following integration points:
- Keystone (OpenStack's identity service) provides authentication and support for role-based authorization.