feat(helm): update external-secrets ( 0.9.18 → 0.20.4 )#390
Open
parsec-renovate[bot] wants to merge 1 commit into
Open
feat(helm): update external-secrets ( 0.9.18 → 0.20.4 )#390parsec-renovate[bot] wants to merge 1 commit into
parsec-renovate[bot] wants to merge 1 commit into
Conversation
--- kubernetes/apps/external-secrets/external-secrets/app Kustomization: flux-system/external-secrets HelmRelease: external-secrets/external-secrets
+++ kubernetes/apps/external-secrets/external-secrets/app Kustomization: flux-system/external-secrets HelmRelease: external-secrets/external-secrets
@@ -13,13 +13,13 @@
spec:
chart: external-secrets
sourceRef:
kind: HelmRepository
name: external-secrets
namespace: flux-system
- version: 0.9.18
+ version: 0.14.3
install:
remediation:
retries: 3
interval: 30m
uninstall:
keepHistory: false |
--- HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-cert-controller
+++ HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-cert-controller
@@ -20,15 +20,23 @@
- patch
- apiGroups:
- admissionregistration.k8s.io
resources:
- validatingwebhookconfigurations
verbs:
- - get
- list
- watch
+ - get
+- apiGroups:
+ - admissionregistration.k8s.io
+ resources:
+ - validatingwebhookconfigurations
+ resourceNames:
+ - secretstore-validate
+ - externalsecret-validate
+ verbs:
- update
- patch
- apiGroups:
- ''
resources:
- endpoints
--- HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-controller
+++ HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-controller
@@ -36,25 +36,44 @@
- clusterexternalsecrets/status
- clusterexternalsecrets/finalizers
- pushsecrets
- pushsecrets/status
- pushsecrets/finalizers
verbs:
+ - get
- update
- patch
- apiGroups:
- generators.external-secrets.io
resources:
+ - generatorstates
+ verbs:
+ - get
+ - list
+ - watch
+ - create
+ - update
+ - patch
+ - delete
+ - deletecollection
+- apiGroups:
+ - generators.external-secrets.io
+ resources:
- acraccesstokens
+ - clustergenerators
- ecrauthorizationtokens
- fakes
- gcraccesstokens
- githubaccesstokens
+ - quayaccesstokens
- passwords
+ - stssessiontokens
+ - uuids
- vaultdynamicsecrets
- webhooks
+ - grafanas
verbs:
- get
- list
- watch
- apiGroups:
- ''
--- HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-view
+++ HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-view
@@ -23,18 +23,22 @@
- watch
- list
- apiGroups:
- generators.external-secrets.io
resources:
- acraccesstokens
+ - clustergenerators
- ecrauthorizationtokens
- fakes
- gcraccesstokens
- githubaccesstokens
+ - quayaccesstokens
- passwords
- vaultdynamicsecrets
- webhooks
+ - grafanas
+ - generatorstates
verbs:
- get
- watch
- list
--- HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-edit
+++ HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-edit
@@ -24,19 +24,23 @@
- patch
- update
- apiGroups:
- generators.external-secrets.io
resources:
- acraccesstokens
+ - clustergenerators
- ecrauthorizationtokens
- fakes
- gcraccesstokens
- githubaccesstokens
+ - quayaccesstokens
- passwords
- vaultdynamicsecrets
- webhooks
+ - grafanas
+ - generatorstates
verbs:
- create
- delete
- deletecollection
- patch
- update
--- HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-cert-controller
+++ HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-cert-controller
@@ -34,23 +34,26 @@
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
- image: ghcr.io/external-secrets/external-secrets:v0.9.18
+ image: oci.external-secrets.io/external-secrets/external-secrets:v0.14.3
imagePullPolicy: IfNotPresent
args:
- certcontroller
- --crd-requeue-interval=5m
- --service-name=external-secrets-webhook
- --service-namespace=external-secrets
- --secret-name=external-secrets-webhook
- --secret-namespace=external-secrets
- --metrics-addr=:8080
- --healthz-addr=:8081
+ - --loglevel=info
+ - --zap-time-encoding=epoch
+ - --enable-partial-cache=true
ports:
- containerPort: 8080
protocol: TCP
name: metrics
readinessProbe:
httpGet:
--- HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets
+++ HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets
@@ -34,17 +34,19 @@
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
- image: ghcr.io/external-secrets/external-secrets:v0.9.18
+ image: oci.external-secrets.io/external-secrets/external-secrets:v0.14.3
imagePullPolicy: IfNotPresent
args:
- --concurrent=1
- --metrics-addr=:8080
+ - --loglevel=info
+ - --zap-time-encoding=epoch
ports:
- containerPort: 8080
protocol: TCP
name: metrics
dnsPolicy: ClusterFirst
--- HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-webhook
+++ HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-webhook
@@ -34,22 +34,24 @@
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
- image: ghcr.io/external-secrets/external-secrets:v0.9.18
+ image: oci.external-secrets.io/external-secrets/external-secrets:v0.14.3
imagePullPolicy: IfNotPresent
args:
- webhook
- --port=10250
- --dns-name=external-secrets-webhook.external-secrets.svc
- --cert-dir=/tmp/certs
- --check-interval=5m
- --metrics-addr=:8080
- --healthz-addr=:8081
+ - --loglevel=info
+ - --zap-time-encoding=epoch
ports:
- containerPort: 8080
protocol: TCP
name: metrics
- containerPort: 10250
protocol: TCP
--- HelmRelease: external-secrets/external-secrets ValidatingWebhookConfiguration: external-secrets/secretstore-validate
+++ HelmRelease: external-secrets/external-secrets ValidatingWebhookConfiguration: external-secrets/secretstore-validate
@@ -1,12 +1,15 @@
---
apiVersion: admissionregistration.k8s.io/v1
kind: ValidatingWebhookConfiguration
metadata:
name: secretstore-validate
labels:
+ app.kubernetes.io/name: external-secrets-webhook
+ app.kubernetes.io/instance: external-secrets
+ app.kubernetes.io/managed-by: Helm
external-secrets.io/component: webhook
webhooks:
- name: validate.secretstore.external-secrets.io
rules:
- apiGroups:
- external-secrets.io
--- HelmRelease: external-secrets/external-secrets ValidatingWebhookConfiguration: external-secrets/externalsecret-validate
+++ HelmRelease: external-secrets/external-secrets ValidatingWebhookConfiguration: external-secrets/externalsecret-validate
@@ -1,12 +1,15 @@
---
apiVersion: admissionregistration.k8s.io/v1
kind: ValidatingWebhookConfiguration
metadata:
name: externalsecret-validate
labels:
+ app.kubernetes.io/name: external-secrets-webhook
+ app.kubernetes.io/instance: external-secrets
+ app.kubernetes.io/managed-by: Helm
external-secrets.io/component: webhook
webhooks:
- name: validate.externalsecret.external-secrets.io
rules:
- apiGroups:
- external-secrets.io |
a4d807c to
89e7b1d
Compare
89e7b1d to
e7b68ff
Compare
e7b68ff to
3af44e8
Compare
3af44e8 to
03d6871
Compare
03d6871 to
c48870c
Compare
c48870c to
ebb4598
Compare
ebb4598 to
bcb0596
Compare
bcb0596 to
a4b1b3a
Compare
a4b1b3a to
111c528
Compare
111c528 to
77b31f3
Compare
77b31f3 to
05aee41
Compare
05aee41 to
f9ca0e4
Compare
f9ca0e4 to
295125e
Compare
295125e to
294287d
Compare
294287d to
ef4e4bb
Compare
ef4e4bb to
3c33fc7
Compare
3c33fc7 to
17558b5
Compare
17558b5 to
82ef164
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
0.9.18→0.20.4Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
external-secrets/external-secrets (external-secrets)
v0.20.4Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.20.4Image:
ghcr.io/external-secrets/external-secrets:v0.20.4-ubiImage:
ghcr.io/external-secrets/external-secrets:v0.20.4-ubi-boringsslWhat's Changed
General
apiandcmdpackage by @Lumexralph in #5413Dependencies
534c2c0to2f698e1by @dependabot[bot] in #54524bcff63to4b7ce07by @dependabot[bot] in #545106083b7to5dc01dbby @dependabot[bot] in #5482New Contributors
Full Changelog: external-secrets/external-secrets@v0.20.3...v0.20.4
v0.20.3Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.20.3Image:
ghcr.io/external-secrets/external-secrets:v0.20.3-ubiImage:
ghcr.io/external-secrets/external-secrets:v0.20.3-ubi-boringsslWhat's Changed
General
pkgby @Lumexralph in #5412Dependencies
6ad9415toc423747in /e2e by @dependabot[bot] in #5423b6ed3fdtob6ed3fdby @dependabot[bot] in #5419New Contributors
Full Changelog: external-secrets/external-secrets@v0.20.2...v0.20.3
v0.20.2Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.20.2Image:
ghcr.io/external-secrets/external-secrets:v0.20.2-ubiImage:
ghcr.io/external-secrets/external-secrets:v0.20.2-ubi-boringsslWhat's Changed
General
enableby @Skarlso in #5369(pkg/providers)by @Lumexralph in #5362Dependencies
New Contributors
Full Changelog: external-secrets/external-secrets@v0.20.0...v0.20.2
v0.20.1Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.20.1Image:
ghcr.io/external-secrets/external-secrets:v0.20.1-ubiImage:
ghcr.io/external-secrets/external-secrets:v0.20.1-ubi-boringsslWhat's Changed
General
ADOPTERS.mdto include SAP by @jakobmoellerdev in #5165helm-values-schema-jsonschema plugin management logic by @jakobmoellerdev in #5212Dependencies
4f0a4e4to7010e70by @dependabot[bot] in #51937010e70to534c2c0by @dependabot[bot] in #52372e114d2tof2ff10aby @dependabot[bot] in #5240b6ed3fdtob6ed3fdby @dependabot[bot] in #5318f2ff10ato87bce11by @dependabot[bot] in #5320Configuration
📅 Schedule: (in timezone America/New_York)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate.