replace namespace placeholders across all manifests and update CiliumNetworkPolicy
All checks were successful
Dynamic Branch Deploy / build-and-deploy (push) Successful in 15s
All checks were successful
Dynamic Branch Deploy / build-and-deploy (push) Successful in 15s
This commit is contained in:
6
.github/workflows/deploy.yaml
vendored
6
.github/workflows/deploy.yaml
vendored
@@ -164,10 +164,12 @@ jobs:
|
|||||||
# Namespace erstellen (falls nicht existiert)
|
# Namespace erstellen (falls nicht existiert)
|
||||||
kubectl create namespace ${{ env.TARGET_NS }} --dry-run=client -o yaml | kubectl apply -f -
|
kubectl create namespace ${{ env.TARGET_NS }} --dry-run=client -o yaml | kubectl apply -f -
|
||||||
|
|
||||||
# Ingress und App-Manifest anpassen
|
# Platzhalter in allen K8s-Manifesten ersetzen
|
||||||
sed -i "s|\${APP_URL}|${{ env.APP_URL }}|g" k8s/ingress.yaml
|
sed -i "s|\${APP_URL}|${{ env.APP_URL }}|g" k8s/ingress.yaml
|
||||||
sed -i "s|\${TARGET_NS}|${{ env.TARGET_NS }}|g" k8s/ingress.yaml
|
|
||||||
sed -i "s|\${IMAGE_NAME}|${{ env.DEPLOY_IMAGE }}|g" k8s/app.yaml
|
sed -i "s|\${IMAGE_NAME}|${{ env.DEPLOY_IMAGE }}|g" k8s/app.yaml
|
||||||
|
|
||||||
|
# TARGET_NS überall ersetzen (z.B. für Middlewares oder explizite Namespaces)
|
||||||
|
find k8s/ -name "*.yaml" -exec sed -i "s|\${TARGET_NS}|${{ env.TARGET_NS }}|g" {} +
|
||||||
|
|
||||||
# Admin-Credentials Secret anlegen/aktualisieren (aus Gitea Secret)
|
# Admin-Credentials Secret anlegen/aktualisieren (aus Gitea Secret)
|
||||||
kubectl create secret generic admin-credentials \
|
kubectl create secret generic admin-credentials \
|
||||||
|
|||||||
@@ -3,7 +3,7 @@ apiVersion: cilium.io/v2
|
|||||||
kind: CiliumNetworkPolicy
|
kind: CiliumNetworkPolicy
|
||||||
metadata:
|
metadata:
|
||||||
name: default-deny-all
|
name: default-deny-all
|
||||||
namespace: escapefromteacher
|
namespace: ${TARGET_NS}
|
||||||
spec:
|
spec:
|
||||||
endpointSelector: {}
|
endpointSelector: {}
|
||||||
ingress:
|
ingress:
|
||||||
|
|||||||
Reference in New Issue
Block a user