diff --git a/apps/base/forte-drop/kustomization.yaml b/apps/base/forte-drop/kustomization.yaml index f79762a..af947b2 100644 --- a/apps/base/forte-drop/kustomization.yaml +++ b/apps/base/forte-drop/kustomization.yaml @@ -1,6 +1,7 @@ apiVersion: kustomize.config.k8s.io/v1beta1 kind: Kustomization resources: +- namespace.yaml - forte-drop.yaml - keycloak-client-forte-drop.yaml - forte-drop-pdb.yaml diff --git a/apps/base/forte-drop/namespace.yaml b/apps/base/forte-drop/namespace.yaml new file mode 100644 index 0000000..dd91428 --- /dev/null +++ b/apps/base/forte-drop/namespace.yaml @@ -0,0 +1,17 @@ +# Owns the forte-drop namespace shared by the web + mcp deployments and the +# postgres StatefulSet (infra overlay). sync-wave -1 ensures the namespace exists +# before the namespaced Secrets/PDB in this base apply (avoids a first-sync +# "namespaces forte-drop not found" race when the business-apps parent syncs). +# Prune=false so removing this base never cascade-deletes the namespace (and with +# it postgres data + the mcp deployment) — matches the earlier decision to keep +# namespace ownership decoupled from any single workload. +apiVersion: v1 +kind: Namespace +metadata: + name: forte-drop + annotations: + argocd.argoproj.io/sync-wave: "-1" + argocd.argoproj.io/sync-options: Prune=false + labels: + app.kubernetes.io/managed-by: argocd + app.kubernetes.io/part-of: apps