|
2 | 2 |
|
3 | 3 | #@ image_pull_secret_name = "canonical-registry-credentials" |
4 | 4 |
|
5 | | -#@ def is_oci_registry_secret_available(): |
6 | | -#@ return data.values.oci_registry.secret.name != "" and data.values.oci_registry.secret.namespace != "" |
| 5 | +#@ def is_oci_pull_secret_available(): |
| 6 | +#@ return data.values.oci.pull_secret.name != "" and data.values.oci.pull_secret.namespace != "" |
7 | 7 | #@ end |
8 | 8 |
|
9 | 9 | #@ def is_cosign_secret_available(): |
|
16 | 16 |
|
17 | 17 | #! SECRET EXPORTS |
18 | 18 |
|
19 | | -#@ if/end is_oci_registry_secret_available(): |
| 19 | +#@ if/end is_oci_pull_secret_available(): |
20 | 20 | --- |
21 | 21 | apiVersion: secretgen.carvel.dev/v1alpha1 |
22 | 22 | kind: SecretExport |
23 | 23 | metadata: |
24 | | - name: #@ data.values.oci_registry.secret.name |
25 | | - namespace: #@ data.values.oci_registry.secret.namespace |
| 24 | + name: #@ data.values.oci.pull_secret.name |
| 25 | + namespace: #@ data.values.oci.pull_secret.namespace |
26 | 26 | spec: |
27 | 27 | toNamespaces: |
28 | | - - kpack #! Used by kpack to publish Buildpacks artifacts. |
29 | 28 | #@ for namespace in data.values.namespaces: |
30 | 29 | - #@ namespace.name |
31 | 30 | #@ end |
@@ -83,20 +82,6 @@ type: kubernetes.io/dockerconfigjson |
83 | 82 | data: |
84 | 83 | .dockerconfigjson: e30K |
85 | 84 |
|
86 | | -#! OCI Registry |
87 | | - |
88 | | -#@ if/end is_oci_registry_secret_available(): |
89 | | ---- |
90 | | -apiVersion: secretgen.carvel.dev/v1alpha1 |
91 | | -kind: SecretImport |
92 | | -metadata: |
93 | | - name: #@ data.values.oci_registry.secret.name |
94 | | - namespace: #@ namespace.name |
95 | | - annotations: |
96 | | - kapp.k14s.io/create-strategy: fallback-on-update |
97 | | -spec: |
98 | | - fromNamespace: #@ data.values.oci_registry.secret.namespace |
99 | | - |
100 | 85 | #! Cosign |
101 | 86 |
|
102 | 87 | #@ if/end is_cosign_secret_available(): |
@@ -137,16 +122,12 @@ metadata: |
137 | 122 | annotations: |
138 | 123 | kapp.k14s.io/create-strategy: fallback-on-update |
139 | 124 | secrets: |
140 | | - #@ if/end is_oci_registry_secret_available(): |
141 | | - - name: #@ data.values.oci_registry.secret.name |
142 | 125 | #@ if/end is_cosign_secret_available(): |
143 | 126 | - name: #@ data.values.cosign.secret.name |
144 | 127 | #@ if/end is_git_secret_available(): |
145 | 128 | - name: #@ data.values.git.secret.name |
146 | 129 | imagePullSecrets: |
147 | 130 | - name: #@ image_pull_secret_name |
148 | | - #@ if/end is_oci_registry_secret_available(): |
149 | | - - name: #@ data.values.oci_registry.secret.name |
150 | 131 |
|
151 | 132 | --- |
152 | 133 | apiVersion: rbac.authorization.k8s.io/v1 |
|
0 commit comments