d7594df9a0
Remove external registry Ingress (repo.3fase.ir) and route Kaniko push and app pulls through the internal ClusterIP registry. Add RegistryService, ensure StorageClass and pull secrets on deploy, make Elasticsearch install/repair more resilient, and add per-cluster Deploy Elastic controls in admin UI. Co-authored-by: Cursor <cursoragent@cursor.com>
46 lines
1.0 KiB
YAML
46 lines
1.0 KiB
YAML
# Example production overrides for cloudhost-platform
|
|
# cp values-production.example.yaml values-production.yaml && edit secrets/hosts
|
|
|
|
namespace: cloudhost
|
|
createNamespace: true
|
|
|
|
global:
|
|
storageClass: local-path # k3s example
|
|
|
|
images:
|
|
backend:
|
|
repository: registry.example.com/cloudhost-backend
|
|
tag: "1.0.0"
|
|
pullPolicy: Always
|
|
frontend:
|
|
repository: registry.example.com/cloudhost-frontend
|
|
tag: "1.0.0"
|
|
pullPolicy: Always
|
|
|
|
postgres:
|
|
password: "CHANGE_ME_STRONG_POSTGRES_PASSWORD"
|
|
|
|
secrets:
|
|
jwtSecret: "CHANGE_ME_LONG_JWT_SECRET"
|
|
jwtRefreshSecret: "CHANGE_ME_LONG_REFRESH_SECRET"
|
|
|
|
ingress:
|
|
enabled: true
|
|
className: nginx
|
|
frontend:
|
|
host: platform.example.com
|
|
api:
|
|
host: api.platform.example.com
|
|
tls:
|
|
enabled: true
|
|
clusterIssuer: letsencrypt-prod
|
|
|
|
backend:
|
|
env:
|
|
PLATFORM_DOMAIN: apps.example.com
|
|
REGISTRY_URL: registry.cloudhost-builds.svc.cluster.local:5000
|
|
REGISTRY_PULL_URL: registry.cloudhost-builds.svc.cluster.local:5000
|
|
|
|
migrations:
|
|
enabled: true
|