Edit deployment.yaml

This commit is contained in:
inikulin 2025-07-23 11:44:25 +00:00
parent 0b6113f29b
commit 883a591eae

View File

@ -43,11 +43,16 @@ spec:
- sh
- -c
- |
cp /usr/lib/jvm/java-21-amazon-corretto/lib/security/cacerts /tmp/cacerts/cacerts &&
keytool -import -trustcacerts -storepass changeit -noprompt \
-alias gemcert \
-file /app/resources/RootCA_${CERT_ALIAS}.crt \
-keystore /tmp/cacerts/cacerts
cp /usr/lib/jvm/java-21-amazon-corretto/lib/security/cacerts /tmp/cacerts/cacerts
if keytool -list -keystore /tmp/cacerts/cacerts -storepass changeit -alias gemcert > /dev/null 2>&1; then
echo "Certificate with alias gemcert already exists, skipping import"
else
echo "Importing certificate with alias gemcert"
keytool -import -trustcacerts -storepass changeit -noprompt \
-alias gemcert \
-file /app/resources/RootCA_${CERT_ALIAS}.crt \
-keystore /tmp/cacerts/cacerts
fi
containers:
- name: {{ .Chart.Name }}
image: "{{ .Values.global.dockerRegistryPrefix }}{{ .Chart.Name }}:{{ .Values.image.tag }}"
@ -61,6 +66,8 @@ spec:
{{- include "global.env.cassandra" . | nindent 12 }}
{{- include "global.env.kafka" . | nindent 12 }}
{{- include "global.env.redis" . | nindent 12 }}
{{- include "global.env.general" . | nindent 12 }}
{{- include "global.env.call" . | nindent 12 }}
- name: LIVEKIT_API_KEY
valueFrom:
secretKeyRef:
@ -71,8 +78,6 @@ spec:
secretKeyRef:
name: {{ .Values.secrets.livekit.name }}
key: {{ .Values.secrets.livekit.secretKey }}
- name: RECORDING_API_HOST
value: {{ .Values.env.recording.apiHost | quote }}
volumeMounts:
- name: cacerts-volume
mountPath: /usr/lib/jvm/java-21-amazon-corretto/lib/security/cacerts