generated from onedr0p/cluster-template
-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
feat(helm): update external-secrets ( 0.9.18 → 0.10.5 ) #285
Open
parsec-renovate
wants to merge
1
commit into
main
Choose a base branch
from
renovate/external-secrets-0.x
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
--- kubernetes/apps/external-secrets/external-secrets/app Kustomization: flux-system/external-secrets HelmRelease: external-secrets/external-secrets
+++ kubernetes/apps/external-secrets/external-secrets/app Kustomization: flux-system/external-secrets HelmRelease: external-secrets/external-secrets
@@ -13,13 +13,13 @@
spec:
chart: external-secrets
sourceRef:
kind: HelmRepository
name: external-secrets
namespace: flux-system
- version: 0.9.18
+ version: 0.10.5
install:
remediation:
retries: 3
interval: 30m
uninstall:
keepHistory: false |
--- HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-cert-controller
+++ HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-cert-controller
@@ -20,15 +20,23 @@
- patch
- apiGroups:
- admissionregistration.k8s.io
resources:
- validatingwebhookconfigurations
verbs:
- - get
- list
- watch
+ - get
+- apiGroups:
+ - admissionregistration.k8s.io
+ resources:
+ - validatingwebhookconfigurations
+ resourceNames:
+ - secretstore-validate
+ - externalsecret-validate
+ verbs:
- update
- patch
- apiGroups:
- ''
resources:
- endpoints
--- HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-controller
+++ HelmRelease: external-secrets/external-secrets ClusterRole: external-secrets/external-secrets-controller
@@ -36,12 +36,13 @@
- clusterexternalsecrets/status
- clusterexternalsecrets/finalizers
- pushsecrets
- pushsecrets/status
- pushsecrets/finalizers
verbs:
+ - get
- update
- patch
- apiGroups:
- generators.external-secrets.io
resources:
- acraccesstokens
--- HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-cert-controller
+++ HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-cert-controller
@@ -34,23 +34,26 @@
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
- image: ghcr.io/external-secrets/external-secrets:v0.9.18
+ image: oci.external-secrets.io/external-secrets/external-secrets:v0.10.5
imagePullPolicy: IfNotPresent
args:
- certcontroller
- --crd-requeue-interval=5m
- --service-name=external-secrets-webhook
- --service-namespace=external-secrets
- --secret-name=external-secrets-webhook
- --secret-namespace=external-secrets
- --metrics-addr=:8080
- --healthz-addr=:8081
+ - --loglevel=info
+ - --zap-time-encoding=epoch
+ - --enable-partial-cache=true
ports:
- containerPort: 8080
protocol: TCP
name: metrics
readinessProbe:
httpGet:
--- HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets
+++ HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets
@@ -34,17 +34,19 @@
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
- image: ghcr.io/external-secrets/external-secrets:v0.9.18
+ image: oci.external-secrets.io/external-secrets/external-secrets:v0.10.5
imagePullPolicy: IfNotPresent
args:
- --concurrent=1
- --metrics-addr=:8080
+ - --loglevel=info
+ - --zap-time-encoding=epoch
ports:
- containerPort: 8080
protocol: TCP
name: metrics
dnsPolicy: ClusterFirst
--- HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-webhook
+++ HelmRelease: external-secrets/external-secrets Deployment: external-secrets/external-secrets-webhook
@@ -34,22 +34,24 @@
- ALL
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
seccompProfile:
type: RuntimeDefault
- image: ghcr.io/external-secrets/external-secrets:v0.9.18
+ image: oci.external-secrets.io/external-secrets/external-secrets:v0.10.5
imagePullPolicy: IfNotPresent
args:
- webhook
- --port=10250
- --dns-name=external-secrets-webhook.external-secrets.svc
- --cert-dir=/tmp/certs
- --check-interval=5m
- --metrics-addr=:8080
- --healthz-addr=:8081
+ - --loglevel=info
+ - --zap-time-encoding=epoch
ports:
- containerPort: 8080
protocol: TCP
name: metrics
- containerPort: 10250
protocol: TCP |
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
July 6, 2024 19:04
479023f
to
aeff011
Compare
parsec-renovate
bot
changed the title
fix(helm): update external-secrets ( 0.9.18 → 0.9.19 )
fix(helm): update external-secrets ( 0.9.18 → 0.9.20 )
Jul 6, 2024
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
August 3, 2024 08:07
aeff011
to
9cbd049
Compare
parsec-renovate
bot
changed the title
fix(helm): update external-secrets ( 0.9.18 → 0.9.20 )
feat(helm): update external-secrets ( 0.9.18 → 0.10.0 )
Aug 3, 2024
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
August 28, 2024 08:08
9cbd049
to
5b0b31c
Compare
parsec-renovate
bot
changed the title
feat(helm): update external-secrets ( 0.9.18 → 0.10.0 )
feat(helm): update external-secrets ( 0.9.18 → 0.10.1 )
Aug 28, 2024
parsec-renovate
bot
changed the title
feat(helm): update external-secrets ( 0.9.18 → 0.10.1 )
feat(helm): update external-secrets ( 0.9.18 → 0.10.2 )
Aug 28, 2024
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
August 28, 2024 17:08
5b0b31c
to
e9d3a02
Compare
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
September 9, 2024 16:08
e9d3a02
to
e54e501
Compare
parsec-renovate
bot
changed the title
feat(helm): update external-secrets ( 0.9.18 → 0.10.2 )
feat(helm): update external-secrets ( 0.9.18 → 0.10.3 )
Sep 9, 2024
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
September 25, 2024 11:09
e54e501
to
5bdf7d4
Compare
parsec-renovate
bot
changed the title
feat(helm): update external-secrets ( 0.9.18 → 0.10.3 )
feat(helm): update external-secrets ( 0.9.18 → 0.10.4 )
Sep 25, 2024
parsec-renovate
bot
force-pushed
the
renovate/external-secrets-0.x
branch
from
October 25, 2024 06:10
5bdf7d4
to
d9e1324
Compare
parsec-renovate
bot
changed the title
feat(helm): update external-secrets ( 0.9.18 → 0.10.4 )
feat(helm): update external-secrets ( 0.9.18 → 0.10.5 )
Oct 25, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
0.9.18
->0.10.5
Release Notes
external-secrets/external-secrets (external-secrets)
v0.10.5
Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.10.5
Image:
ghcr.io/external-secrets/external-secrets:v0.10.5-ubi
Image:
ghcr.io/external-secrets/external-secrets:v0.10.5-ubi-boringssl
What's Changed
1a5326b
todba79eb
in /e2e by @dependabot in https://github.com/external-secrets/external-secrets/pull/3968ac67716
toac67716
by @dependabot in https://github.com/external-secrets/external-secrets/pull/3969b033683
to69830f2
by @dependabot in https://github.com/external-secrets/external-secrets/pull/39709dd2625
to9dd2625
by @dependabot in https://github.com/external-secrets/external-secrets/pull/400718d2f94
to2341ddf
in /e2e by @dependabot in https://github.com/external-secrets/external-secrets/pull/40249dd2625
to9dd2625
by @dependabot in https://github.com/external-secrets/external-secrets/pull/4025New Contributors
Full Changelog: external-secrets/external-secrets@v0.10.4...v0.10.5
v0.10.4
Compare Source
WARNING: With this update, Pulumi has added
projectID
to it's required properties.Image:
oci.external-secrets.io/external-secrets/external-secrets:v0.10.4
Image:
oci.external-secrets.io/external-secrets/external-secrets:v0.10.4-ubi
Image:
oci.external-secrets.io/external-secrets/external-secrets:v0.10.4-ubi-boringssl
Default image registry change
From this version onwards, the default image registry name will be oci.external-secrets.io. While GHCR.io will keep on working for the foreseeable future, this change is to allow an eventual migration away from GHCR.
deprecation of GHCR - if performed, will be announced previous to its implementation and switch.
What's Changed
ac67716
toac67716
by @dependabot in https://github.com/external-secrets/external-secrets/pull/391495eb83a
tob033683
by @dependabot in https://github.com/external-secrets/external-secrets/pull/3947New Contributors
Full Changelog: external-secrets/external-secrets@v0.10.3...v0.10.4
v0.10.3
Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.10.3
Image:
ghcr.io/external-secrets/external-secrets:v0.10.3-ubi
Image:
ghcr.io/external-secrets/external-secrets:v0.10.3-ubi-boringssl
What's Changed
0a4eaa0
tobeefdbd
in /hack/api-docs by @dependabot in https://github.com/external-secrets/external-secrets/pull/38840a4eaa0
tobeefdbd
by @dependabot in https://github.com/external-secrets/external-secrets/pull/3886ce46866
to95eb83a
by @dependabot in https://github.com/external-secrets/external-secrets/pull/3887New Contributors
Full Changelog: external-secrets/external-secrets@v0.10.2...v0.10.3
v0.10.2
Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.10.2
Image:
ghcr.io/external-secrets/external-secrets:v0.10.2-ubi
Image:
ghcr.io/external-secrets/external-secrets:v0.10.2-ubi-boringssl
What's Changed
Full Changelog: external-secrets/external-secrets@v0.10.1...v0.10.2
v0.10.1
Compare Source
Image:
ghcr.io/external-secrets/external-secrets:v0.10.1
Image:
ghcr.io/external-secrets/external-secrets:v0.10.1-ubi
Image:
ghcr.io/external-secrets/external-secrets:v0.10.1-ubi-boringssl
What's Changed
New Contributors
Full Changelog: external-secrets/external-secrets@v0.10.0...v0.10.1
v0.10.0
Compare Source
Webhook Generator
Webhook generator labels have changed from
generators.external-secrets.io/type: webhook
toexternal-secrets.io/type: webhook
.Webhook Provider
Webhook provider now can only use secrets that are labeled with
external-secrets.io/type: webhook
. This enforces explicit setup for webhook secrets by users.Fixing the issue:
add the label for the secret used by the webhook:
Image:
ghcr.io/external-secrets/external-secrets:v0.10.0
Image:
ghcr.io/external-secrets/external-secrets:v0.10.0-ubi
Image:
ghcr.io/external-secrets/external-secrets:v0.10.0-ubi-boringssl
What's Changed
4197211
toce46866
by @dependabot in https://github.com/external-secrets/external-secrets/pull/3663namespaceRegexes
in full-cluster-secret-store.yaml by @excalq in https://github.com/external-secrets/external-secrets/pull/36818c9183f
to8c9183f
by @dependabot in https://github.com/external-secrets/external-secrets/pull/3687PushSecret
support for Pulumi ESC by @dirien in https://github.com/external-secrets/external-secrets/pull/3597Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Renovate Bot.