Files
homelab/k8s/apps/gitea/external-secrets.yaml
ab a4f043c5c6
All checks were successful
Check with kubeconform / lint (push) Successful in 27s
Update k8s/apps/gitea/external-secrets.yaml
2025-07-03 11:14:03 +00:00

57 lines
1.3 KiB
YAML

---
apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret
metadata:
name: gitea-runner-token
spec:
refreshInterval: 1m
target:
name: gitea-runner-act-runner-secrets
deletionPolicy: Delete
template:
type: Opaque
data:
token: |-
{{ .password }}
data:
- secretKey: password
sourceRef:
storeRef:
name: vaultwarden-login
kind: ClusterSecretStore
remoteRef:
key: e475b5ab-ea3c-48a5-bb4c-a6bc552fc064
property: login.password
---
apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret
metadata:
name: gitea-recapcha-creds
spec:
refreshInterval: 1m
target:
name: gitea-recapcha-creds
deletionPolicy: Delete
template:
type: Opaque
data:
token: |-
{{ .password }}
data:
- secretKey: RECAPTCHA_SITEKEY
sourceRef:
storeRef:
name: vaultwarden-login
kind: ClusterSecretStore
remoteRef:
key: ae02b5b6-cbc6-4dff-bc14-16057eca83e8
property: login.username
- secretKey: RECAPTCHA_SECRET
sourceRef:
storeRef:
name: vaultwarden-login
kind: ClusterSecretStore
remoteRef:
key: ae02b5b6-cbc6-4dff-bc14-16057eca83e8
property: login.password