Compare commits

...

4 Commits
prod ... main

12 changed files with 23 additions and 52 deletions

View File

@ -61,7 +61,6 @@ apiVersion: v1
kind: Service kind: Service
metadata: metadata:
name: backend-service name: backend-service
namespace: intern-workspace
labels: labels:
app: employee-backend app: employee-backend
spec: spec:
@ -72,7 +71,3 @@ spec:
protocol: TCP protocol: TCP
selector: selector:
app: employee-backend app: employee-backend
template:
spec:
containers:
- image: docker.io/adelyao/employee-be:test

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: backend-policy name: backend-policy
namespace: intern-workspace # namespace: intern-workspace
spec: spec:
podSelector: podSelector:
matchLabels: matchLabels:

View File

@ -16,7 +16,7 @@ apiVersion: apps/v1
kind: Deployment kind: Deployment
metadata: metadata:
name: mysql-deployment name: mysql-deployment
namespace: intern-workspace # namespace: intern-workspace
labels: labels:
app: mysql app: mysql
spec: spec:

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: db-policy name: db-policy
namespace: intern-workspace # namespace: intern-workspace
spec: spec:
podSelector: podSelector:
matchLabels: matchLabels:

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: frontend-policy name: frontend-policy
namespace: intern-workspace # namespace: intern-workspace
spec: spec:
podSelector: podSelector:
matchLabels: matchLabels:

View File

@ -61,7 +61,7 @@ apiVersion: v1
kind: Service kind: Service
metadata: metadata:
name: frontend-service name: frontend-service
namespace: intern-workspace # namespace: intern-workspace
labels: labels:
app: employee-frontend app: employee-frontend
spec: spec:
@ -73,7 +73,3 @@ spec:
protocol: TCP protocol: TCP
selector: selector:
app: employee-frontend app: employee-frontend
template:
spec:
containers:
- image: docker.io/adelyao/employee-fe:test

View File

@ -2,7 +2,7 @@ apiVersion: networking.k8s.io/v1
kind: NetworkPolicy kind: NetworkPolicy
metadata: metadata:
name: default-deny name: default-deny
namespace: your-namespace # namespace: intern-workspace
spec: spec:
podSelector: {} podSelector: {}
policyTypes: policyTypes:

View File

@ -4,13 +4,13 @@ apiVersion: v1
kind: ServiceAccount kind: ServiceAccount
metadata: metadata:
name: frontend-sa name: frontend-sa
namespace: intern-workspace # namespace: intern-workspace
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: Role
metadata: metadata:
name: frontend-role name: frontend-role
namespace: intern-workspace # namespace: intern-workspace
rules: rules:
- apiGroups: [""] - apiGroups: [""]
resources: ["pods"] resources: ["pods"]
@ -23,11 +23,11 @@ apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding
metadata: metadata:
name: frontend-rolebinding name: frontend-rolebinding
namespace: intern-workspace # namespace: intern-workspace
subjects: subjects:
- kind: ServiceAccount - kind: ServiceAccount
name: frontend-sa name: frontend-sa
namespace: intern-workspace # namespace: intern-workspace
roleRef: roleRef:
kind: Role kind: Role
name: frontend-role name: frontend-role
@ -40,13 +40,13 @@ apiVersion: v1
kind: ServiceAccount kind: ServiceAccount
metadata: metadata:
name: backend-sa name: backend-sa
namespace: intern-workspace # namespace: intern-workspace
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: Role
metadata: metadata:
name: backend-role name: backend-role
namespace: intern-workspace # namespace: intern-workspace
rules: rules:
- apiGroups: [""] - apiGroups: [""]
resources: ["secrets", "configmaps"] resources: ["secrets", "configmaps"]
@ -60,11 +60,11 @@ apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding
metadata: metadata:
name: backend-rolebinding name: backend-rolebinding
namespace: intern-workspace # namespace: intern-workspace
subjects: subjects:
- kind: ServiceAccount - kind: ServiceAccount
name: backend-sa name: backend-sa
namespace: intern-workspace # namespace: intern-workspace
roleRef: roleRef:
kind: Role kind: Role
name: backend-role name: backend-role
@ -77,13 +77,13 @@ apiVersion: v1
kind: ServiceAccount kind: ServiceAccount
metadata: metadata:
name: database-sa name: database-sa
namespace: intern-workspace # namespace: intern-workspace
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: Role
metadata: metadata:
name: database-role name: database-role
namespace: intern-workspace # namespace: intern-workspace
rules: rules:
- apiGroups: [""] - apiGroups: [""]
resources: ["pods"] resources: ["pods"]
@ -93,11 +93,11 @@ apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding
metadata: metadata:
name: database-rolebinding name: database-rolebinding
namespace: intern-workspace # namespace: intern-workspace
subjects: subjects:
- kind: ServiceAccount - kind: ServiceAccount
name: database-sa name: database-sa
namespace: intern-workspace # namespace: intern-workspace
roleRef: roleRef:
kind: Role kind: Role
name: database-role name: database-role

View File

@ -4,16 +4,10 @@ kind: Kustomization
resources: resources:
- ../../base - ../../base
namespace: intern-workspace # namespace: intern-workspace
namePrefix: dev- namePrefix: dev-
commonLabels: commonLabels:
environment: dev environment: dev
images:
- name: docker.io/adelyao/employee-be
newTag: latest
- name: docker.io/adelyao/employee-fe
newTag: latest
patches: patches:
- path: patch-deployment.yaml - path: patch-deployment.yaml

View File

@ -3,12 +3,11 @@ kind: Deployment
metadata: metadata:
name: backend-deployment name: backend-deployment
spec: spec:
replicas: 2 replicas: 1
template: template:
spec: spec:
containers: containers:
- name: employee-backend - name: employee-backend
imagePullPolicy: Always
env: env:
- name: NODE_ENV - name: NODE_ENV
value: "development" value: "development"
@ -21,12 +20,11 @@ kind: Deployment
metadata: metadata:
name: frontend-deployment name: frontend-deployment
spec: spec:
replicas: 2 replicas: 1
template: template:
spec: spec:
containers: containers:
- name: employee-frontend - name: employee-frontend
imagePullPolicy: Always
env: env:
- name: VITE_API_URL - name: VITE_API_URL
value: "http://backend-service:4000" value: "http://backend-service:4000"

View File

@ -4,16 +4,10 @@ kind: Kustomization
resources: resources:
- ../../base - ../../base
namespace: intern-workspace # namespace: intern-workspace
namePrefix: prod- namePrefix: prod-
commonLabels: commonLabels:
environment: production environment: production
images:
- name: docker.io/adelyao/employee-be
newTag: prod-latest
- name: docker.io/adelyao/employee-fe
newTag: prod-latest
patches: patches:
- path: patch-deployment.yaml - path: patch-deployment.yaml

View File

@ -4,16 +4,10 @@ kind: Kustomization
resources: resources:
- ../../base - ../../base
namespace: intern-workspace # namespace: intern-workspace
namePrefix: staging- namePrefix: staging-
commonLabels: commonLabels:
environment: staging environment: staging
images:
- name: docker.io/adelyao/employee-be
newTag: staging-latest
- name: docker.io/adelyao/employee-fe
newTag: staging-latest
patches: patches:
- path: patch-deployment.yaml - path: patch-deployment.yaml