fixup! fixup! fixup! Ensure that jobs run with the controller service account if no service account is specified.

This commit is contained in:
2024-12-20 10:43:16 +00:00
parent 75ab889fa2
commit 0b12097f6f
6 changed files with 23 additions and 14 deletions
+2 -2
View File
@@ -10,9 +10,9 @@ description: |
type: application
version: 0.2.17
version: 0.2.20
appVersion: "0.2.17"
appVersion: "0.2.20"
home: https://github.com/lukaszraczylo/kubernetes-images-sync-operator
+1 -2
View File
@@ -48,7 +48,6 @@ spec:
resources: {{- toYaml .Values.sa.manager.resources | nindent 10 }}
securityContext: {{- toYaml .Values.sa.manager.containerSecurityContext | nindent
10 }}
securityContext:
runAsNonRoot: true
securityContext: {{- toYaml .Values.sa.podSecurityContext | nindent 8 }}
serviceAccountName: {{ include "chart.fullname" . }}-sa
terminationGracePeriodSeconds: 10
+2 -2
View File
@@ -9,6 +9,6 @@ spec:
type: {{ .Values.saMetricsService.type }}
selector:
control-plane: sa
{{- include "chart.selectorLabels" . | nindent 4 }}
{{- include "chart.selectorLabels" . | nindent 4 }}
ports:
{{- .Values.saMetricsService.ports | toYaml | nindent 2 }}
{{- .Values.saMetricsService.ports | toYaml | nindent 2 }}
+3 -1
View File
@@ -12,7 +12,7 @@ sa:
- ALL
image:
repository: ghcr.io/lukaszraczylo/kubernetes-images-sync-operator
tag: 0.2.17
tag: 0.2.20
resources:
limits:
cpu: 500m
@@ -20,6 +20,8 @@ sa:
requests:
cpu: 10m
memory: 64Mi
podSecurityContext:
runAsNonRoot: true
replicas: 1
serviceAccount:
annotations: {}