Skip to content

Commit

Permalink
Fix typo
Browse files Browse the repository at this point in the history
  • Loading branch information
isindir committed Jan 29, 2024
1 parent 4545e3c commit f21cad8
Show file tree
Hide file tree
Showing 5 changed files with 100 additions and 97 deletions.
5 changes: 3 additions & 2 deletions chart/helm3/sops-secrets-operator/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -156,8 +156,9 @@ The following table lists the configurable parameters of the Sops-secrets-operat
| resources | object | `{}` | Operator container resources |
| secretsAsEnvVars | list | `[]` | configure custom secrets to be used as environment variables at runtime, see values.yaml |
| secretsAsFiles | list | `[]` | configure custom secrets to be mounted at runtime, see values.yaml |
| securityContext.container | object | `{"capabilities":{"add":["NET_BIND_SERVICE"],"drop":["all"]}}` | container/initContainer |
| securityContext.container.capabilities | object | `{"add":["NET_BIND_SERVICE"],"drop":["all"]}` | capabilities |
| securityContext.container | object | `{"capabilities":{"add":["NET_BIND_SERVICE"],"drop":["all"],"enabled":false}}` | container/initContainer |
| securityContext.container.capabilities | object | `{"add":["NET_BIND_SERVICE"],"drop":["all"],"enabled":false}` | capabilities |
| securityContext.container.capabilities.enabled | bool | `false` | enables securityContext capabilities feature in containers |
| securityContext.enabled | bool | `false` | Enable securityContext |
| securityContext.fsGroup | int | `13001` | fs group |
| securityContext.runAsGroup | int | `13001` | GID to run as |
Expand Down
4 changes: 2 additions & 2 deletions chart/helm3/sops-secrets-operator/templates/operator.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ spec:
image: "{{ .Values.initImage.repository }}:{{ .Values.initImage.tag }}"
imagePullPolicy: {{ .Values.initImage.pullPolicy }}
command: ['/bin/sh', '-c', 'cp -Lr /var/secrets/gpg-secrets/* /var/secrets/gpg/']
{{- if .Values.securityContext.enabled }}
{{- if and .Values.securityContext.enabled .Values.securityContext.container.capabilities.enabled }}
securityContext:
capabilities:
drop: {{ .Values.securityContext.container.capabilities.drop }}
Expand All @@ -52,7 +52,7 @@ spec:
- name: {{ .Chart.Name }}
image: "{{ .Values.image.repository }}:{{ .Values.image.tag }}"
imagePullPolicy: {{ .Values.image.pullPolicy }}
{{- if .Values.securityContext.enabled }}
{{- if and .Values.securityContext.enabled .Values.securityContext.container.capabilities.enabled }}
securityContext:
capabilities:
drop: {{ .Values.securityContext.container.capabilities.drop }}
Expand Down
2 changes: 2 additions & 0 deletions chart/helm3/sops-secrets-operator/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -166,6 +166,8 @@ securityContext:
container:
# -- capabilities
capabilities:
# -- enables securityContext capabilities feature in containers
enabled: false
drop:
- all
add:
Expand Down
Loading

0 comments on commit f21cad8

Please sign in to comment.