| gio | 3cdee59 | 2024-04-17 10:15:56 +0400 | [diff] [blame] | 1 | import ( |
| 2 | "encoding/base64" | ||||
| 3 | ) | ||||
| 4 | |||||
| 5 | input: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 6 | sshPrivateKey: string |
| gio | f55ab36 | 2025-04-11 17:48:17 +0400 | [diff] [blame] | 7 | controllerReplicaCount: int | *3 |
| gio | 3cdee59 | 2024-04-17 10:15:56 +0400 | [diff] [blame] | 8 | } |
| Giorgi Lekveishvili | e009a5d | 2024-01-05 14:10:11 +0400 | [diff] [blame] | 9 | |
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 10 | name: "ingress-public" |
| Giorgi Lekveishvili | 03d6f4b | 2024-03-08 13:05:21 +0400 | [diff] [blame] | 11 | namespace: "ingress-public" |
| 12 | |||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 13 | out: { |
| 14 | images: { | ||||
| 15 | ingressNginx: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 16 | registry: "registry.k8s.io" |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 17 | repository: "ingress-nginx" |
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 18 | name: "controller" |
| 19 | tag: "v1.8.0" | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 20 | pullPolicy: "IfNotPresent" |
| 21 | } | ||||
| 22 | portAllocator: { | ||||
| 23 | repository: "giolekva" | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 24 | name: "port-allocator" |
| 25 | tag: "latest" | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 26 | pullPolicy: "Always" |
| Giorgi Lekveishvili | e009a5d | 2024-01-05 14:10:11 +0400 | [diff] [blame] | 27 | } |
| 28 | } | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 29 | |
| 30 | charts: { | ||||
| 31 | ingressNginx: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 32 | kind: "GitRepository" |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 33 | address: "https://code.v1.dodo.cloud/helm-charts" |
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 34 | branch: "main" |
| 35 | path: "charts/ingress-nginx" | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 36 | } |
| 37 | portAllocator: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 38 | kind: "GitRepository" |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 39 | address: "https://code.v1.dodo.cloud/helm-charts" |
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 40 | branch: "main" |
| 41 | path: "charts/port-allocator" | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 42 | } |
| 43 | } | ||||
| 44 | |||||
| 45 | helm: { | ||||
| 46 | "ingress-public": { | ||||
| 47 | chart: charts.ingressNginx | ||||
| 48 | values: { | ||||
| 49 | fullnameOverride: "\(global.pcloudEnvName)-ingress-public" | ||||
| 50 | controller: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 51 | kind: "Deployment" |
| gio | f55ab36 | 2025-04-11 17:48:17 +0400 | [diff] [blame] | 52 | replicaCount: input.controllerReplicaCount |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 53 | topologySpreadConstraints: [{ |
| 54 | labelSelector: { | ||||
| 55 | matchLabels: { | ||||
| 56 | "app.kubernetes.io/instance": "ingress-public" | ||||
| 57 | } | ||||
| 58 | } | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 59 | maxSkew: 1 |
| 60 | topologyKey: "kubernetes.io/hostname" | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 61 | whenUnsatisfiable: "DoNotSchedule" |
| 62 | }] | ||||
| 63 | hostNetwork: false | ||||
| 64 | hostPort: enabled: false | ||||
| 65 | updateStrategy: { | ||||
| 66 | type: "RollingUpdate" | ||||
| 67 | rollingUpdate: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 68 | maxSurge: "50%" |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 69 | maxUnavailable: "30%" |
| 70 | } | ||||
| 71 | } | ||||
| 72 | service: { | ||||
| 73 | enabled: true | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 74 | type: "NodePort" |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 75 | nodePorts: { |
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 76 | http: 80 |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 77 | https: 443 |
| 78 | tcp: { | ||||
| 79 | "53": 53 | ||||
| 80 | } | ||||
| 81 | udp: { | ||||
| 82 | "53": 53 | ||||
| 83 | } | ||||
| 84 | } | ||||
| 85 | } | ||||
| 86 | ingressClassByName: true | ||||
| 87 | ingressClassResource: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 88 | name: networks.public.ingressClass |
| 89 | enabled: true | ||||
| 90 | default: false | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 91 | controllerValue: "k8s.io/\(networks.public.ingressClass)" |
| 92 | } | ||||
| 93 | config: { | ||||
| 94 | "proxy-body-size": "200M" // TODO(giolekva): configurable | ||||
| 95 | "server-snippet": """ | ||||
| 96 | more_clear_headers "X-Frame-Options"; | ||||
| 97 | """ | ||||
| 98 | } | ||||
| 99 | image: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 100 | registry: images.ingressNginx.registry |
| 101 | image: images.ingressNginx.imageName | ||||
| 102 | tag: images.ingressNginx.tag | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 103 | pullPolicy: images.ingressNginx.pullPolicy |
| 104 | } | ||||
| 105 | } | ||||
| 106 | tcp: { | ||||
| 107 | "53": "\(global.pcloudEnvName)-dns-gateway/coredns:53" | ||||
| 108 | } | ||||
| 109 | udp: { | ||||
| 110 | "53": "\(global.pcloudEnvName)-dns-gateway/coredns:53" | ||||
| 111 | } | ||||
| 112 | } | ||||
| 113 | } | ||||
| 114 | "port-allocator": { | ||||
| 115 | chart: charts.portAllocator | ||||
| 116 | values: { | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 117 | repoAddr: release.repoAddr |
| 118 | sshPrivateKey: base64.Encode(null, input.sshPrivateKey) | ||||
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 119 | ingressNginxPath: "\(release.appDir)/ingress-public.yaml" |
| 120 | image: { | ||||
| 121 | repository: images.portAllocator.fullName | ||||
| gio | 9bd87ca | 2025-04-20 08:05:34 +0400 | [diff] [blame] | 122 | tag: images.portAllocator.tag |
| gio | 7fbd4ad | 2024-08-27 10:06:39 +0400 | [diff] [blame] | 123 | pullPolicy: images.portAllocator.pullPolicy |
| 124 | } | ||||
| gio | 3cdee59 | 2024-04-17 10:15:56 +0400 | [diff] [blame] | 125 | } |
| 126 | } | ||||
| 127 | } | ||||
| Giorgi Lekveishvili | e009a5d | 2024-01-05 14:10:11 +0400 | [diff] [blame] | 128 | } |