Compare commits

...

16 Commits
main ... dev

17 changed files with 36 additions and 158 deletions

View File

@ -61,7 +61,7 @@ apiVersion: v1
kind: Service kind: Service
metadata: metadata:
name: backend-service name: backend-service
namespace: intern-workspace # namespace: intern-workspace
labels: labels:
app: employee-backend app: employee-backend
spec: spec:
@ -72,7 +72,3 @@ spec:
protocol: TCP protocol: TCP
selector: selector:
app: employee-backend app: employee-backend
template:
spec:
containers:
- image: docker.io/adelyao/employee-be:test

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: backend-policy name: backend-policy
namespace: intern-workspace # namespace: intern-workspace
spec: spec:
podSelector: podSelector:
matchLabels: matchLabels:

View File

@ -16,7 +16,7 @@ apiVersion: apps/v1
kind: Deployment kind: Deployment
metadata: metadata:
name: mysql-deployment name: mysql-deployment
namespace: intern-workspace # namespace: intern-workspace
labels: labels:
app: mysql app: mysql
spec: spec:

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: db-policy name: db-policy
namespace: intern-workspace # namespace: intern-workspace
spec: spec:
podSelector: podSelector:
matchLabels: matchLabels:

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: frontend-policy name: frontend-policy
namespace: intern-workspace # namespace: intern-workspace
spec: spec:
podSelector: podSelector:
matchLabels: matchLabels:

View File

@ -61,7 +61,7 @@ apiVersion: v1
kind: Service kind: Service
metadata: metadata:
name: frontend-service name: frontend-service
namespace: intern-workspace # namespace: intern-workspace
labels: labels:
app: employee-frontend app: employee-frontend
spec: spec:
@ -73,7 +73,3 @@ spec:
protocol: TCP protocol: TCP
selector: selector:
app: employee-frontend app: employee-frontend
template:
spec:
containers:
- image: docker.io/adelyao/employee-fe:test

View File

@ -9,4 +9,3 @@ resources:
- configmap.yaml - configmap.yaml
- secret.yaml - secret.yaml
- rbac.yaml - rbac.yaml
- namespace.yaml

View File

@ -1,6 +0,0 @@
apiVersion: v1
kind: Namespace
metadata:
name: intern-workspace
annotations:
argocd.argoproj.io/managed-by: argocd

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: default-deny name: default-deny
namespace: your-namespace # namespace: intern-workspace
spec: spec:
podSelector: {} podSelector: {}
policyTypes: policyTypes:

View File

@ -4,13 +4,13 @@ apiVersion: v1
kind: ServiceAccount kind: ServiceAccount
metadata: metadata:
name: frontend-sa name: frontend-sa
namespace: intern-workspace # namespace: intern-workspace
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: Role
metadata: metadata:
name: frontend-role name: frontend-role
namespace: intern-workspace # namespace: intern-workspace
rules: rules:
- apiGroups: [""] - apiGroups: [""]
resources: ["pods"] resources: ["pods"]
@ -23,11 +23,11 @@ apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding
metadata: metadata:
name: frontend-rolebinding name: frontend-rolebinding
namespace: intern-workspace # namespace: intern-workspace
subjects: subjects:
- kind: ServiceAccount - kind: ServiceAccount
name: frontend-sa name: frontend-sa
namespace: intern-workspace # namespace: intern-workspace
roleRef: roleRef:
kind: Role kind: Role
name: frontend-role name: frontend-role
@ -40,13 +40,13 @@ apiVersion: v1
kind: ServiceAccount kind: ServiceAccount
metadata: metadata:
name: backend-sa name: backend-sa
namespace: intern-workspace # namespace: intern-workspace
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: Role
metadata: metadata:
name: backend-role name: backend-role
namespace: intern-workspace # namespace: intern-workspace
rules: rules:
- apiGroups: [""] - apiGroups: [""]
resources: ["secrets", "configmaps"] resources: ["secrets", "configmaps"]
@ -60,11 +60,11 @@ apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding
metadata: metadata:
name: backend-rolebinding name: backend-rolebinding
namespace: intern-workspace # namespace: intern-workspace
subjects: subjects:
- kind: ServiceAccount - kind: ServiceAccount
name: backend-sa name: backend-sa
namespace: intern-workspace # namespace: intern-workspace
roleRef: roleRef:
kind: Role kind: Role
name: backend-role name: backend-role
@ -77,13 +77,13 @@ apiVersion: v1
kind: ServiceAccount kind: ServiceAccount
metadata: metadata:
name: database-sa name: database-sa
namespace: intern-workspace # namespace: intern-workspace
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: Role
metadata: metadata:
name: database-role name: database-role
namespace: intern-workspace # namespace: intern-workspace
rules: rules:
- apiGroups: [""] - apiGroups: [""]
resources: ["pods"] resources: ["pods"]
@ -93,11 +93,11 @@ apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding
metadata: metadata:
name: database-rolebinding name: database-rolebinding
namespace: intern-workspace # namespace: intern-workspace
subjects: subjects:
- kind: ServiceAccount - kind: ServiceAccount
name: database-sa name: database-sa
namespace: intern-workspace # namespace: intern-workspace
roleRef: roleRef:
kind: Role kind: Role
name: database-role name: database-role

View File

@ -5,5 +5,5 @@ metadata:
type: Opaque type: Opaque
data: data:
DB_USER: "ZW1wX3VzZXI=" DB_USER: "ZW1wX3VzZXI="
DB_PASSWORD: "a2FyeWF3YW4h" DB_PASS: "a2FyeWF3YW4h"
MYSQL_ROOT_PASSWORD: "YWRtaW4=" MYSQL_ROOT_PASSWORD: "YWRtaW4="

View File

@ -4,16 +4,10 @@ kind: Kustomization
resources: resources:
- ../../base - ../../base
namespace: intern-workspace # namespace: intern-workspace
namePrefix: dev- namePrefix: dev-
commonLabels: commonLabels:
environment: dev environment: dev
images:
- name: docker.io/adelyao/employee-be
newTag: latest
- name: docker.io/adelyao/employee-fe
newTag: latest
patches: patches:
- path: patch-deployment.yaml - path: patch-deployment.yaml

View File

@ -3,33 +3,40 @@ kind: Deployment
metadata: metadata:
name: backend-deployment name: backend-deployment
spec: spec:
replicas: 2 replicas: 1
template: template:
spec: spec:
containers: containers:
- name: employee-backend - name: employee-backend
imagePullPolicy: Always image: docker.io/adelyao/employee-be:build-28
env: env:
- name: NODE_ENV - name: NODE_ENV
value: "development" value: "development"
- name: LOG_LEVEL - name: LOG_LEVEL
value: "debug" value: "debug"
image: docker.io/adelyao/employee-be:build-28 - name: DB_HOST
value: "dev-db"
- name: DB_NAME
value: "employee_app"
envFrom:
- configMapRef:
name: dev-app-config
- secretRef:
name: dev-db-secret
--- ---
apiVersion: apps/v1 apiVersion: apps/v1
kind: Deployment kind: Deployment
metadata: metadata:
name: frontend-deployment name: frontend-deployment
spec: spec:
replicas: 2 replicas: 1
template: template:
spec: spec:
containers: containers:
- name: employee-frontend - name: employee-frontend
imagePullPolicy: Always image: docker.io/adelyao/employee-fe:build-28
env: env:
- name: VITE_API_URL - name: VITE_API_URL
value: "http://backend-service:4000" value: "http://backend-service:4000"
- name: MODE - name: MODE
value: "development" value: "development"
image: docker.io/adelyao/employee-fe:build-28

View File

@ -1,19 +0,0 @@
apiVersion: kustomize.config.k8s.io/v1beta1
kind: Kustomization
resources:
- ../../base
namespace: intern-workspace
namePrefix: prod-
commonLabels:
environment: production
images:
- name: docker.io/adelyao/employee-be
newTag: prod-latest
- name: docker.io/adelyao/employee-fe
newTag: prod-latest
patches:
- path: patch-deployment.yaml

View File

@ -1,35 +0,0 @@
# BACKEND
apiVersion: apps/v1
kind: Deployment
metadata:
name: backend-deployment
spec:
replicas: 3
template:
spec:
containers:
- name: employee-backend
env:
- name: NODE_ENV
value: "production"
- name: LOG_LEVEL
value: "warn"
---
# FRONTEND PATCH
apiVersion: apps/v1
kind: Deployment
metadata:
name: frontend-deployment
spec:
replicas: 3
template:
spec:
containers:
- name: employee-frontend
env:
- name: VITE_API_URL
value: "https://api.example.com"
- name: MODE
value: "production"

View File

@ -1,19 +0,0 @@
apiVersion: kustomize.config.k8s.io/v1beta1
kind: Kustomization
resources:
- ../../base
namespace: intern-workspace
namePrefix: staging-
commonLabels:
environment: staging
images:
- name: docker.io/adelyao/employee-be
newTag: staging-latest
- name: docker.io/adelyao/employee-fe
newTag: staging-latest
patches:
- path: patch-deployment.yaml

View File

@ -1,35 +0,0 @@
#BACKEND
apiVersion: apps/v1
kind: Deployment
metadata:
name: backend-deployment
spec:
replicas: 2
template:
spec:
containers:
- name: employee-backend
env:
- name: NODE_ENV
value: "staging"
- name: LOG_LEVEL
value: "info"
---
# FRONTEND
apiVersion: apps/v1
kind: Deployment
metadata:
name: frontend-deployment
spec:
replicas: 2
template:
spec:
containers:
- name: employee-frontend
env:
- name: VITE_API_URL
value: "https://staging-api.example.com"
- name: MODE
value: "staging"