cw-infra-apps/charts/backend/charts/bff-vcs-app-k8s/templates/deployment.yaml
2025-07-18 11:38:43 +03:00

59 lines
2.1 KiB
YAML
Executable File

apiVersion: apps/v1
kind: Deployment
metadata:
name: {{ include "bff-vcs-app.fullname" . }}
labels:
{{- include "bff-vcs-app.labels" . | nindent 4 }}
spec:
replicas: {{ .Values.replicaCount }}
selector:
matchLabels:
{{- include "bff-vcs-app.selectorLabels" . | nindent 6 }}
template:
metadata:
labels:
{{- include "bff-vcs-app.selectorLabels" . | nindent 8 }}
spec:
volumes:
- name: ca-cert
configMap:
name: auth-app-ca-cert
items:
- key: RootCA_{{ .Values.global.cert_alias }}.crt
path: RootCA_{{ .Values.global.cert_alias }}.crt
- name: cacerts-volume
emptyDir: {}
# initContainers:
# - name: import-ca
# image: "{{ .Values.image.repository }}:{{ .Values.image.tag }}"
# env:
# - name: CERT_ALIAS
# value: {{ .Values.global.cert_alias | quote }}
# volumeMounts:
# - name: ca-cert
# mountPath: /app/resources
# - name: cacerts-volume
# mountPath: /tmp/cacerts
# command:
# - sh
# - -c
# - |
# cp /usr/lib/jvm/java-21-amazon-corretto/lib/security/cacerts /tmp/cacerts/cacerts &&
# keytool -import -trustcacerts -storepass changeit -noprompt \
# -alias gemcert \
# -file /app/resources/RootCA_${CERT_ALIAS}.crt \
# -keystore /tmp/cacerts/cacerts
containers:
- name: bff-vcs-app
image: "{{ .Values.image.repository }}:{{ .Values.image.tag }}"
imagePullPolicy: {{ .Values.image.pullPolicy }}
env:
- name: GRPC_CLIENT_CALL_URL
value: "{{ .Values.env.grpc_client_call_url }}"
- name: GRPC_CLIENT_CALL_REALTIME_URL
value: "{{ .Values.env.grpc_client_call_realtime_url }}"
volumeMounts:
- name: cacerts-volume
mountPath: /usr/lib/jvm/java-21-amazon-corretto/lib/security/cacerts
subPath: cacerts