Undo octal-values restriction together with corresponding code

Unrestrict octal values rule since benefits of file modes readability
exceed possible issues with yaml 1.2 adoption in future k8s versions.
These issues will be addressed when/if they occur.

Also ensure osh-infra is a required project for lint job, that matters
when running job against another project.

Change-Id: Ic5e327cf40c4b09c90738baff56419a6cef132da
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
This commit is contained in:
Andrii Ostapenko 2020-07-06 14:50:07 -05:00 committed by Andrii Ostapenko
parent 88b79920db
commit 824f168efc
120 changed files with 208 additions and 205 deletions
calico/templates
ceph-client/templates
ceph-mon/templates
ceph-osd/templates
ceph-provisioners/templates
ceph-rgw/templates
daemonjob-controller/templates
elastic-apm-server/templates
elastic-filebeat/templates
elastic-metricbeat/templates
elastic-packetbeat/templates
elasticsearch/templates
etcd/templates
falco/templates
fluentbit/templates
fluentd/templates
gnocchi/templates
grafana/templates
helm-toolkit/templates/manifests
ingress/templates
kafka/templates
kibana/templates
kubernetes-keystone-webhook/templates
libvirt/templates
mariadb/templates
memcached/templates
mongodb/templates
nagios/templates
openvswitch/templates
postgresql/templates

@ -285,15 +285,15 @@ spec:
- name: calico-etc
configMap:
name: calico-etc
defaultMode: 292
defaultMode: 0444
- name: calico-bird
configMap:
name: calico-bird
defaultMode: 292
defaultMode: 0444
- name: calico-bin
configMap:
name: calico-bin
defaultMode: 365
defaultMode: 0555
- name: calico-etcd-secrets
secret:
secretName: calico-etcd-secrets

@ -172,5 +172,5 @@ spec:
- name: calico-etcd-secrets
secret:
secretName: calico-etcd-secrets
defaultMode: 256
defaultMode: 0400
{{- end }}

@ -100,7 +100,7 @@ spec:
- name: calico-bin
configMap:
name: calico-bin
defaultMode: 365
defaultMode: 0555
- name: calico-etcd-secrets
secret:
secretName: calico-etcd-secrets

@ -129,11 +129,11 @@ spec:
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-client-etc
configMap:
name: ceph-client-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-client-admin-keyring
secret:
defaultMode: 420

@ -106,5 +106,5 @@ spec:
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -115,5 +115,5 @@ spec:
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -147,11 +147,11 @@ spec:
- name: ceph-client-etc
configMap:
name: ceph-client-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
- name: pod-var-lib-ceph
emptyDir: {}
- name: ceph-client-admin-keyring

@ -184,11 +184,11 @@ spec:
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-client-etc
configMap:
name: ceph-client-etc
defaultMode: 292
defaultMode: 0444
- name: pod-var-lib-ceph
emptyDir: {}
- name: ceph-client-admin-keyring

@ -70,11 +70,11 @@ spec:
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-client-etc
configMap:
name: ceph-client-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-client-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}

@ -89,11 +89,11 @@ spec:
- name: ceph-client-etc
configMap:
name: ceph-client-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
- name: pod-var-lib-ceph
emptyDir: {}
- name: pod-run

@ -81,12 +81,12 @@ spec:
- name: ceph-client-bin
configMap:
name: ceph-client-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-client-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}
- name: ceph-client-etc
configMap:
name: ceph-client-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -243,11 +243,11 @@ spec:
- name: ceph-mon-bin
configMap:
name: ceph-mon-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-mon-etc
configMap:
name: ceph-mon-etc
defaultMode: 292
defaultMode: 0444
- name: pod-var-lib-ceph
hostPath:
path: {{ .Values.conf.storage.mon.directory }}

@ -114,11 +114,11 @@ spec:
- name: ceph-mon-etc
configMap:
name: ceph-mon-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-mon-bin
configMap:
name: ceph-mon-bin
defaultMode: 365
defaultMode: 0555
- name: pod-var-lib-ceph
emptyDir: {}
- name: ceph-client-admin-keyring

@ -72,11 +72,11 @@ spec:
- name: ceph-mon-bin
configMap:
name: ceph-mon-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-mon-etc
configMap:
name: ceph-mon-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-client-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}

@ -120,10 +120,10 @@ spec:
- name: ceph-mon-bin
configMap:
name: ceph-mon-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-templates
configMap:
name: ceph-templates
defaultMode: 292
defaultMode: 0444
{{- end }}
{{- end }}

@ -117,9 +117,9 @@ spec:
- name: ceph-mon-bin
configMap:
name: ceph-mon-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-templates
configMap:
name: ceph-templates
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -436,11 +436,11 @@ spec:
- name: ceph-osd-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "bin" | quote }}
defaultMode: 365
defaultMode: 0555
- name: ceph-osd-etc
configMap:
name: {{ $configMapName }}
defaultMode: 292
defaultMode: 0444
- name: ceph-bootstrap-osd-keyring
secret:
secretName: {{ .Values.secrets.keyrings.osd }}

@ -69,11 +69,11 @@ spec:
- name: ceph-osd-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "bin" | quote }}
defaultMode: 365
defaultMode: 0555
- name: ceph-osd-etc
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "etc" | quote }}
defaultMode: 292
defaultMode: 0444
- name: ceph-osd-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}

@ -126,11 +126,11 @@ spec:
- name: ceph-osd-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "bin" | quote }}
defaultMode: 365
defaultMode: 0555
- name: ceph-osd-etc
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "etc" | quote }}
defaultMode: 292
defaultMode: 0444
- name: ceph-osd-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}

@ -72,12 +72,12 @@ spec:
- name: ceph-osd-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "bin" | quote }}
defaultMode: 365
defaultMode: 0555
- name: ceph-client-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}
- name: ceph-osd-etc
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "etc" | quote }}
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -197,5 +197,5 @@ spec:
- name: ceph-provisioners-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin" | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -187,5 +187,5 @@ spec:
- name: ceph-provisioners-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin" | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -69,11 +69,11 @@ spec:
- name: ceph-provisioners-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin" | quote }}
defaultMode: 365
defaultMode: 0555
- name: ceph-etc
configMap:
name: {{ .Values.storageclass.rbd.ceph_configmap_name }}
defaultMode: 292
defaultMode: 0444
- name: ceph-client-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin }}

@ -132,5 +132,5 @@ spec:
- name: ceph-provisioners-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin" | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -97,5 +97,5 @@ spec:
- name: ceph-provisioners-bin-clients
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin-clients" | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -128,5 +128,5 @@ spec:
- name: ceph-provisioners-bin-clients
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin-clients" | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -107,7 +107,7 @@ spec:
- name: ceph-provisioners-bin-clients
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-prov-bin-clients" | quote }}
defaultMode: 365
defaultMode: 0555
- name: pod-tmp
emptyDir: {}
{{- end }}

@ -181,11 +181,11 @@ spec:
- name: ceph-rgw-bin
configMap:
name: ceph-rgw-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-rgw-etc
configMap:
name: ceph-rgw-etc
defaultMode: 292
defaultMode: 0444
- name: pod-var-lib-ceph
emptyDir: {}
- name: ceph-bootstrap-rgw-keyring

@ -118,11 +118,11 @@ spec:
- name: ceph-rgw-bin
configMap:
name: ceph-rgw-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-rgw-etc
configMap:
name: {{ .Values.ceph_client.configmap }}
defaultMode: 292
defaultMode: 0444
- name: ceph-rgw-admin-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin | quote }}

@ -126,15 +126,15 @@ spec:
- name: ceph-rgw-bin
configMap:
name: ceph-rgw-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-etc
configMap:
name: {{ .Values.ceph_client.configmap }}
defaultMode: 292
defaultMode: 0444
- name: ceph-templates
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "ceph-templates" | quote }}
defaultMode: 292
defaultMode: 0444
- name: ceph-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin | quote }}

@ -137,11 +137,11 @@ spec:
- name: ceph-rgw-bin
configMap:
name: ceph-rgw-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-rgw-etc
configMap:
name: ceph-rgw-etc
defaultMode: 292
defaultMode: 0444
- name: ceph-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin | quote }}

@ -104,12 +104,12 @@ spec:
- name: ceph-rgw-bin
configMap:
name: ceph-rgw-bin
defaultMode: 365
defaultMode: 0555
- name: ceph-keyring
secret:
secretName: {{ .Values.secrets.keyrings.admin | quote }}
- name: ceph-rgw-etc
configMap:
name: ceph-rgw-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -58,5 +58,5 @@ spec:
- name: hooks
configMap:
name: daemonjob-controller-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -122,7 +122,7 @@ spec:
- name: elastic-apm-server-etc
configMap:
name: elastic-apm-server-etc
defaultMode: 292
defaultMode: 0444
- name: data
hostPath:
path: /var/lib/elastic-apm-server

@ -157,7 +157,7 @@ spec:
- name: filebeat-etc
configMap:
name: filebeat-etc
defaultMode: 292
defaultMode: 0444
- name: data
hostPath:
path: /var/lib/filebeat

@ -168,7 +168,7 @@ spec:
path: /var/run/docker.sock
- name: metricbeat-etc
configMap:
defaultMode: 292
defaultMode: 0444
name: metricbeat-etc
- name: data
emptyDir: {}

@ -154,5 +154,5 @@ spec:
- name: metricbeat-etc
configMap:
name: metricbeat-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -139,7 +139,7 @@ spec:
emptyDir: {}
- name: packetbeat-etc
configMap:
defaultMode: 292
defaultMode: 0444
name: packetbeat-etc
{{ if $mounts_packetbeat.volumes }}{{ toYaml $mounts_packetbeat.volumes | indent 8 }}{{ end }}
{{- end }}

@ -86,9 +86,9 @@ spec:
- name: elastic-curator-bin
configMap:
name: elastic-curator-bin
defaultMode: 365
defaultMode: 0555
- name: elastic-curator-etc
secret:
secretName: elastic-curator-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -83,5 +83,5 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -210,11 +210,11 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
- name: elasticsearch-etc
secret:
secretName: elasticsearch-etc
defaultMode: 292
defaultMode: 0444
- name: storage
emptyDir: {}
{{ if $mounts_elasticsearch.volumes }}{{ toYaml $mounts_elasticsearch.volumes | indent 8 }}{{ end }}

@ -160,11 +160,11 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
- name: elasticsearch-etc
secret:
secretName: elasticsearch-etc
defaultMode: 292
defaultMode: 0444
- name: storage
emptyDir: {}
{{ if $mounts_elasticsearch.volumes }}{{ toYaml $mounts_elasticsearch.volumes | indent 8 }}{{ end }}

@ -85,10 +85,10 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
- name: elasticsearch-templates-etc
secret:
secretName: elasticsearch-templates-etc
defaultMode: 292
defaultMode: 0444
{{ if $mounts_elasticsearch_templates.volumes }}{{ toYaml $mounts_elasticsearch_templates.volumes | indent 8 }}{{ end }}
{{- end }}

@ -76,5 +76,5 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -91,5 +91,5 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -70,5 +70,5 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -175,11 +175,11 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
- name: elasticsearch-etc
secret:
secretName: elasticsearch-etc
defaultMode: 292
defaultMode: 0444
{{ if $mounts_elasticsearch.volumes }}{{ toYaml $mounts_elasticsearch.volumes | indent 8 }}{{ end }}
{{- if not .Values.storage.data.enabled }}
- name: storage

@ -168,11 +168,11 @@ spec:
- name: elasticsearch-bin
configMap:
name: elasticsearch-bin
defaultMode: 365
defaultMode: 0555
- name: elasticsearch-etc
secret:
secretName: elasticsearch-etc
defaultMode: 292
defaultMode: 0444
{{ if $mounts_elasticsearch.volumes }}{{ toYaml $mounts_elasticsearch.volumes | indent 8 }}{{ end }}
{{- if not .Values.storage.master.enabled }}
- name: storage

@ -70,5 +70,5 @@ spec:
- name: etcd-bin
configMap:
name: {{ $configMapBinName | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -119,7 +119,7 @@ spec:
- name: falco-bin
configMap:
name: falco-bin
defaultMode: 365
defaultMode: 0555
- name: dshm
emptyDir:
medium: Memory

@ -145,10 +145,10 @@ spec:
- name: fluentbit-bin
configMap:
name: fluentbit-bin
defaultMode: 365
defaultMode: 0555
- name: fluentbit-etc
secret:
secretName: fluentbit-etc
defaultMode: 292
defaultMode: 0444
{{ if $mounts_fluentbit.volumes }}{{ toYaml $mounts_fluentbit.volumes | indent 8 }}{{ end }}
{{- end }}

@ -226,15 +226,15 @@ spec:
- name: {{ printf "%s-%s" $envAll.Release.Name "env-secret" | quote }}
secret:
secretName: {{ printf "%s-%s" $envAll.Release.Name "env-secret" | quote }}
defaultMode: 292
defaultMode: 0444
{{- end }}
- name: fluentd-etc
secret:
secretName: {{ printf "%s-%s" $envAll.Release.Name "fluentd-etc" | quote }}
defaultMode: 292
defaultMode: 0444
- name: fluentd-bin
configMap:
name: {{ printf "%s-%s" $envAll.Release.Name "fluentd-bin" | quote }}
defaultMode: 365
defaultMode: 0555
{{ if $mounts_fluentd.volumes }}{{ toYaml $mounts_fluentd.volumes | indent 8 }}{{- end }}
{{- end }}

@ -94,10 +94,10 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
{{ if $mounts_gnocchi_resources_cleaner.volumes }}{{ toYaml $mounts_gnocchi_resources_cleaner.volumes | indent 12 }}{{ end }}
{{- end }}

@ -105,11 +105,11 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
- name: etcceph
emptyDir: {}
- name: ceph-etc

@ -111,11 +111,11 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
- name: etcceph
emptyDir: {}
- name: ceph-etc

@ -130,11 +130,11 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
- name: etcceph
emptyDir: {}
- name: ceph-etc

@ -89,5 +89,5 @@ spec:
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -70,11 +70,11 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: pod-etc-gnocchi
emptyDir: {}
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -82,11 +82,11 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
- name: etcceph
emptyDir: {}
- name: ceph-etc

@ -123,13 +123,13 @@ spec:
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
- name: etcceph
emptyDir: {}
- name: ceph-etc
configMap:
name: {{ .Values.ceph_client.configmap }}
defaultMode: 292
defaultMode: 0444
- name: ceph-keyring
secret:
secretName: {{ .Values.ceph_client.user_secret_name }}

@ -74,10 +74,10 @@ spec:
- name: gnocchi-etc
secret:
secretName: gnocchi-etc
defaultMode: 292
defaultMode: 0444
- name: gnocchi-bin
configMap:
name: gnocchi-bin
defaultMode: 365
defaultMode: 0555
{{ if $mounts_gnocchi_tests.volumes }}{{ toYaml $mounts_gnocchi_tests.volumes | indent 4 }}{{ end }}
{{- end }}

@ -133,15 +133,15 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
- name: grafana-etc
secret:
secretName: grafana-etc
defaultMode: 292
defaultMode: 0444
- name: grafana-dashboards
configMap:
name: grafana-dashboards
defaultMode: 365
defaultMode: 0555
- name: data
emptyDir: {}
{{ if $mounts_grafana.volumes }}{{ toYaml $mounts_grafana.volumes | indent 8 }}{{ end }}

@ -74,5 +74,5 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -72,5 +72,5 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -72,5 +72,5 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -67,5 +67,5 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -77,9 +77,9 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
- name: grafana-etc
secret:
secretName: grafana-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -70,5 +70,5 @@ spec:
- name: grafana-bin
configMap:
name: grafana-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -103,11 +103,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
- name: etc-service
emptyDir: {}

@ -118,11 +118,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
{{- $local := dict "configMapBinFirst" true -}}
{{- range $key1, $dbToDrop := $dbsToDrop }}
@ -134,7 +134,7 @@ spec:
- name: db-drop-conf
secret:
secretName: {{ $configMapEtc | quote }}
defaultMode: 292
defaultMode: 0444
{{- end -}}
{{- end -}}
{{- end -}}

@ -117,11 +117,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
{{- $local := dict "configMapBinFirst" true -}}
{{- range $key1, $dbToInit := $dbsToInit }}
@ -133,7 +133,7 @@ spec:
- name: db-init-conf
secret:
secretName: {{ $configMapEtc | quote }}
defaultMode: 292
defaultMode: 0444
{{- end -}}
{{- end -}}
{{- end -}}

@ -97,18 +97,18 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
- name: etc-service
emptyDir: {}
- name: db-sync-conf
secret:
secretName: {{ $configMapEtc | quote }}
defaultMode: 292
defaultMode: 0444
{{- if $podVols }}
{{ $podVols | toYaml | indent 8 }}
{{- end }}

@ -94,11 +94,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
{{- dict "enabled" true "name" $tlsSecret | include "helm-toolkit.snippets.tls_volume" | indent 8 }}
{{- end }}

@ -88,11 +88,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
{{- dict "enabled" true "name" $tlsSecret | include "helm-toolkit.snippets.tls_volume" | indent 8 }}
{{- end }}

@ -94,11 +94,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
{{- dict "enabled" true "name" $tlsSecret | include "helm-toolkit.snippets.tls_volume" | indent 8 }}
{{- end -}}

@ -86,10 +86,10 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
{{- end -}}

@ -103,18 +103,18 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
- name: etcceph
emptyDir: {}
- name: ceph-etc
configMap:
name: {{ $configMapCeph | quote }}
defaultMode: 292
defaultMode: 0444
{{- if empty $envAll.Values.conf.ceph.admin_keyring }}
- name: ceph-keyring
secret:

@ -118,22 +118,22 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
- name: ceph-keyring-sh
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
- name: etcceph
emptyDir: {}
- name: ceph-etc
configMap:
name: {{ $configMapCeph | quote }}
defaultMode: 292
defaultMode: 0444
{{- if empty $envAll.Values.conf.ceph.admin_keyring }}
- name: ceph-keyring
secret:

@ -84,11 +84,11 @@ spec:
{{- if $secretBin }}
secret:
secretName: {{ $secretBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- else }}
configMap:
name: {{ $configMapBin | quote }}
defaultMode: 365
defaultMode: 0555
{{- end }}
- name: docker-socket
hostPath:

@ -358,7 +358,7 @@ spec:
- name: ingress-bin
configMap:
name: ingress-bin
defaultMode: 365
defaultMode: 0555
{{- if and .Values.network.host_namespace .Values.network.vip.manage }}
- name: host-rootfs
hostPath:

@ -64,9 +64,9 @@ spec:
- name: kafka-bin
configMap:
name: kafka-bin
defaultMode: 365
defaultMode: 0555
- name: kafka-etc
secret:
secretName: kafka-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -66,9 +66,9 @@ spec:
- name: kafka-bin
configMap:
name: kafka-bin
defaultMode: 365
defaultMode: 0555
- name: kafka-etc
secret:
secretName: kafka-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -168,11 +168,11 @@ spec:
- name: kafka-bin
configMap:
name: kafka-bin
defaultMode: 365
defaultMode: 0555
- name: kafka-etc
secret:
secretName: kafka-etc
defaultMode: 292
defaultMode: 0444
{{ if $mounts_kafka.volumes }}{{ toYaml $mounts_kafka.volumes | indent 8 }}{{ end }}
{{- if not .Values.storage.enabled }}
- name: data

@ -167,9 +167,9 @@ spec:
- name: kibana-bin
configMap:
name: kibana-bin
defaultMode: 365
defaultMode: 0555
- name: kibana-etc
secret:
secretName: kibana-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -96,5 +96,5 @@ spec:
- name: kibana-bin
configMap:
name: kibana-bin
defaultMode: 493
defaultMode: 0755
{{- end }}

@ -80,5 +80,5 @@ spec:
- name: kibana-bin
configMap:
name: kibana-bin
defaultMode: 493
defaultMode: 0755
{{- end }}

@ -83,13 +83,13 @@ spec:
- name: key-kubernetes-keystone-webhook
secret:
secretName: {{ $envAll.Values.secrets.certificates.api }}
defaultMode: 292
defaultMode: 0444
- name: kubernetes-keystone-webhook-etc
configMap:
name: kubernetes-keystone-webhook-etc
defaultMode: 292
defaultMode: 0444
- name: kubernetes-keystone-webhook-bin
configMap:
name: kubernetes-keystone-webhook-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -60,6 +60,6 @@ spec:
- name: kubernetes-keystone-webhook-bin
configMap:
name: kubernetes-keystone-webhook-bin
defaultMode: 365
defaultMode: 0555
{{ if $mounts_kubernetes_keystone_webhook_tests.volumes }}{{ toYaml $mounts_kubernetes_keystone_webhook_tests.volumes | indent 4 }}{{ end }}
{{- end }}

@ -207,11 +207,11 @@ spec:
- name: libvirt-bin
configMap:
name: libvirt-bin
defaultMode: 365
defaultMode: 0555
- name: libvirt-etc
secret:
secretName: {{ $configMapName }}
defaultMode: 292
defaultMode: 0444
{{- if .Values.conf.ceph.enabled }}
- name: etcceph
hostPath:
@ -219,7 +219,7 @@ spec:
- name: ceph-etc
configMap:
name: {{ .Values.ceph_client.configmap }}
defaultMode: 292
defaultMode: 0444
{{- if empty .Values.conf.ceph.cinder.keyring }}
- name: ceph-keyring
secret:

@ -205,9 +205,9 @@ spec:
- name: mariadb-bin
configMap:
name: mariadb-bin
defaultMode: 365
defaultMode: 0555
- name: mariadb-ingress-etc
configMap:
name: mariadb-ingress-etc
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -67,9 +67,9 @@ spec:
- name: mariadb-bin
configMap:
name: mariadb-bin
defaultMode: 365
defaultMode: 0555
- name: mariadb-secrets
secret:
secretName: mariadb-secrets
defaultMode: 292
defaultMode: 0444
{{- end }}

@ -239,15 +239,15 @@ spec:
- name: mariadb-bin
configMap:
name: mariadb-bin
defaultMode: 365
defaultMode: 0555
- name: mariadb-etc
configMap:
name: mariadb-etc
defaultMode: 292
defaultMode: 0444
- name: mariadb-secrets
secret:
secretName: mariadb-secrets
defaultMode: 292
defaultMode: 0444
{{- if not .Values.volume.enabled }}
- name: mysql-data
{{- if .Values.volume.use_local_path_for_single_pod_cluster.enabled }}

@ -86,6 +86,6 @@ spec:
- name: memcached-bin
configMap:
name: {{ $configMapBinName | quote }}
defaultMode: 365
defaultMode: 0555
{{ dict "envAll" $envAll "component" "memcached" "requireSys" true | include "helm-toolkit.snippets.kubernetes_apparmor_volumes" | indent 8 }}
{{- end }}

@ -118,7 +118,7 @@ spec:
- name: mongodb-bin
configMap:
name: mongodb-bin
defaultMode: 365
defaultMode: 0555
{{- if not .Values.volume.enabled }}
- name: mongodb-data
hostPath:

@ -241,9 +241,9 @@ spec:
- name: nagios-etc
secret:
secretName: nagios-etc
defaultMode: 292
defaultMode: 0444
- name: nagios-bin
configMap:
name: nagios-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -75,5 +75,5 @@ spec:
- name: nagios-bin
configMap:
name: nagios-bin
defaultMode: 365
defaultMode: 0555
{{- end }}

@ -108,7 +108,7 @@ spec:
- name: openvswitch-bin
configMap:
name: openvswitch-bin
defaultMode: 365
defaultMode: 0555
- name: run
hostPath:
path: /run/openvswitch

@ -153,7 +153,7 @@ It should be handled through lcore and pmd core masks. */}}
- name: openvswitch-bin
configMap:
name: openvswitch-bin
defaultMode: 365
defaultMode: 0555
- name: run
hostPath:
path: /run

@ -72,6 +72,6 @@ spec:
- name: postgresql-bin
secret:
secretName: postgresql-bin
defaultMode: 365
defaultMode: 0555
...
{{- end }}

@ -416,7 +416,7 @@ spec:
- name: postgresql-bin
secret:
secretName: postgresql-bin
defaultMode: 365
defaultMode: 0555
- name: client-certs-temp
emptyDir: {}
- name: server-certs-temp
@ -428,15 +428,15 @@ spec:
- name: replication-pki
secret:
secretName: {{ .Values.secrets.postgresql.replica }}
defaultMode: 416
defaultMode: 0640
- name: postgresql-pki
secret:
secretName: {{ .Values.secrets.postgresql.server }}
defaultMode: 416
defaultMode: 0640
- name: postgresql-etc
secret:
secretName: postgresql-etc
defaultMode: 292
defaultMode: 0444
{{- if not .Values.storage.pvc.enabled }}
- name: postgresql-data
hostPath:

Some files were not shown because too many files have changed in this diff Show More