- .sops.yaml with 3 age keys (admin, dev, prod) - infra/gitea/values/*.enc.yaml — per-env encrypted Helm values - infra/kargo/values/*.enc.yaml — per-env encrypted Kargo admin secrets - kargo/credentials/*.enc.yaml — per-env encrypted git credentials (ksops) - infra/kargo-credentials/ — ArgoCD app for deploying Kargo creds via ksops - All repoURLs point to deploy-app-kargo-private Structure from deploy-app-kargo (reference), adapted for SOPS workflow
15 lines
606 B
YAML
15 lines
606 B
YAML
{
|
|
"name": "kargo",
|
|
"namespace": "kargo",
|
|
"step": "4",
|
|
"syncOptions": ["Replace=true"],
|
|
"source": {
|
|
"repoURL": "ghcr.io/akuity/kargo-charts",
|
|
"chart": "kargo",
|
|
"targetRevision": "1.9.5"
|
|
},
|
|
"helm": {
|
|
"values": "api:\n service:\n type: ClusterIP\n adminAccount:\n enabled: true\n passwordHash: \"$2b$10$jk2IIBCWP.5mEzp30J0kkO1CyCXEBvCWzaPsUGVfsusvH0M2kl2aS\"\n tokenSigningKey: \"d76a6d38c725db844e799224ae2d0a2d38c0d31f5ca510aac44abc87c973b6e3\"\ncontroller:\n argocd:\n integrationEnabled: true\n namespace: argocd\n"
|
|
}
|
|
}
|