chore: fix for volsync

This commit is contained in:
2026-02-26 17:00:30 +01:00
parent 2a327d40f6
commit 359f878134
7 changed files with 30 additions and 36 deletions

View File

@@ -26,7 +26,7 @@ spec:
enabled: false
secretName:
datadirVolumeClaimTemplate:
storageClassName: openebs-hostpath
storageClassName: openebs-zfs
accessModes: ReadWriteOnce
resources:
requests:
@@ -132,7 +132,6 @@ spec:
# sink:
## rawConfig:
#keyring:
# file:
# fileName:
@@ -158,7 +157,6 @@ spec:
# vaults: "vaults.<region>.oci.oraclecloud.com"
# secrets: "secrets.vaults.<region>.oci.oraclecloud.com"
#podSpec:
# containers:
# - name: mysql
@@ -179,7 +177,6 @@ spec:
# core_file
# local_infile=off
#datadirVolumeClaimTemplate:
# accessModes:
# resources:
@@ -212,7 +209,6 @@ spec:
# rootUser:
# credentials:
#backupProfiles:
#- name: dump-instance-profile-pvc
# dumpInstance:
@@ -271,7 +267,6 @@ spec:
# bucketName: idbcluster_backup
# credentials: oci-credentials
# If you would like to debug the Helm output with `helm template`, you need
# to turn disableLookups on as during `helm template` Helm won't contact the kube API
# and all lookups will thus fail
@@ -287,4 +282,4 @@ spec:
- targetPath: credentials.root.password
kind: Secret
name: mysql-secret
valuesKey: rootPassword
valuesKey: rootPassword

View File

@@ -18,12 +18,12 @@ spec:
enable_gzip: "true"
root_url: https://grafana.laurivan.com
auth: {disable_login_form: "false"}
auth.anonymous: {enabled: "true"}
metrics: {enabled: "true"}
news: {news_feed_enabled: "false"}
plugins: {plugin_admin_enabled: "false"}
security: {angular_support_enabled: "true"}
auth: { disable_login_form: "false" }
auth.anonymous: { enabled: "true" }
metrics: { enabled: "true" }
news: { news_feed_enabled: "false" }
plugins: { plugin_admin_enabled: "false" }
security: { angular_support_enabled: "true" }
deployment:
spec:
@@ -42,7 +42,7 @@ spec:
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
capabilities: {drop: ["ALL"]}
capabilities: { drop: ["ALL"] }
securityContext:
runAsNonRoot: true
runAsUser: 1000
@@ -71,5 +71,5 @@ spec:
resources:
requests:
storage: 10Gi
storageClassName: openebs-hostpath
disableDefaultSecurityContext: All
storageClassName: openebs-zfs
disableDefaultSecurityContext: All

View File

@@ -10,7 +10,7 @@ spec:
name: kube-prometheus-stack
values:
crds: {enabled: true}
crds: { enabled: true }
cleanPrometheusOperatorObjectNames: true
# ==========================================================================
@@ -48,7 +48,7 @@ spec:
storage:
volumeClaimTemplate:
spec:
storageClassName: openebs-hostpath
storageClassName: openebs-zfs
resources:
requests:
storage: 1Gi
@@ -141,12 +141,11 @@ spec:
storageSpec:
volumeClaimTemplate:
spec:
storageClassName: openebs-hostpath
storageClassName: openebs-zfs
resources:
requests:
storage: 50Gi
# ==========================================================================
# Grafana
# ==========================================================================
@@ -162,19 +161,19 @@ spec:
# ==========================================================================
# Exporters
# ==========================================================================
coreDns: {enabled: true}
kubelet: {enabled: true}
kubeApiServer: {enabled: true}
kubeControllerManager: {enabled: true}
kubeScheduler: {enabled: true}
kubeProxy: {enabled: true}
coreDns: { enabled: true }
kubelet: { enabled: true }
kubeApiServer: { enabled: true }
kubeControllerManager: { enabled: true }
kubeScheduler: { enabled: true }
kubeProxy: { enabled: true }
kubeEtcd:
enabled: true
service:
selector:
component: kube-apiserver
nodeExporter: {enabled: true}
nodeExporter: { enabled: true }
prometheus-node-exporter:
resources:
requests:
@@ -183,7 +182,7 @@ spec:
limits:
memory: 64Mi
kubeStateMetrics: {enabled: true}
kubeStateMetrics: { enabled: true }
kube-state-metrics:
resources:
requests:
@@ -205,4 +204,4 @@ spec:
summary: Container {{ $labels.container }} in pod {{ $labels.namespace }}/{{ $labels.pod }} has been OOMKilled {{ $value }} times in the last 10 minutes.
expr: (kube_pod_container_status_restarts_total - kube_pod_container_status_restarts_total offset 10m >= 1) and ignoring (reason) min_over_time(kube_pod_container_status_last_terminated_reason{reason="OOMKilled"}[10m]) == 1
labels:
severity: critical
severity: critical

View File

@@ -21,7 +21,7 @@ spec:
basePath: &hostPath /var/mnt/local-hostpath
hostpathClass:
enabled: true
name: openebs-hostpath
name: openebs-zfs
isDefaultClass: false
basePath: *hostPath
helperPod:
@@ -52,4 +52,4 @@ spec:
alloy:
enabled: false
minio:
enabled: false
enabled: false

View File

@@ -7,7 +7,7 @@ metadata:
annotations:
kustomize.toolkit.fluxcd.io/prune: disabled
spec:
storageClassName: "${VOLSYNC_STORAGECLASS:=openebs-hostpath}"
storageClassName: "${VOLSYNC_STORAGECLASS:=openebs-zfs}"
accessModes: ["${VOLSYNC_ACCESSMODES:=ReadWriteOnce}"]
dataSourceRef:

View File

@@ -12,10 +12,10 @@ spec:
repository: "${APP}-volsync-secret"
copyMethod: Snapshot
volumeSnapshotClassName: "${VOLSYNC_SNAPSHOTCLASS:=openebs-snapshots}"
cacheStorageClassName: "${VOLSYNC_CACHE_SNAPSHOTCLASS:=openebs-hostpath}"
cacheStorageClassName: "${VOLSYNC_CACHE_SNAPSHOTCLASS:=openebs-zfs}"
cacheAccessModes: ["${VOLSYNC_CACHE_ACCESSMODES:=ReadWriteOnce}"]
cacheCapacity: "${VOLSYNC_CACHE_CAPACITY:=5Gi}"
storageClassName: "${VOLSYNC_STORAGECLASS:=openebs-hostpath}"
storageClassName: "${VOLSYNC_STORAGECLASS:=openebs-zfs}"
accessModes: ["${VOLSYNC_ACCESSMODES:=ReadWriteOnce}"]
capacity: "${VOLSYNC_CAPACITY:=5Gi}"
moverSecurityContext:

View File

@@ -15,9 +15,9 @@ spec:
repository: "${APP}-volsync-secret"
volumeSnapshotClassName: "${VOLSYNC_SNAPSHOTCLASS:=openebs-snapshots}"
cacheCapacity: "${VOLSYNC_CACHE_CAPACITY:=5Gi}"
cacheStorageClassName: "${VOLSYNC_CACHE_SNAPSHOTCLASS:=openebs-hostpath}"
cacheStorageClassName: "${VOLSYNC_CACHE_SNAPSHOTCLASS:=openebs-zfs}"
cacheAccessModes: ["${VOLSYNC_CACHE_ACCESSMODES:=ReadWriteOnce}"]
storageClassName: "${VOLSYNC_STORAGECLASS:=openebs-hostpath}"
storageClassName: "${VOLSYNC_STORAGECLASS:=openebs-zfs}"
accessModes: ["${VOLSYNC_SNAP_ACCESSMODES:=ReadWriteOnce}"]
moverSecurityContext: