82 lines
2.0 KiB
YAML
82 lines
2.0 KiB
YAML
adminToken:
|
|
existingSecret: "prod-db-creds"
|
|
existingSecretKey: "adminToken"
|
|
domain: "https://vaultwarden.forteapps.net"
|
|
signupsAllowed: false
|
|
resourceType: StatefulSet
|
|
database:
|
|
type: postgresql
|
|
host: vaultwarden-postgresql
|
|
port: "5432"
|
|
dbName: vaultwarden
|
|
existingSecret: prod-db-creds
|
|
existingSecretKey: DATABASE_URL
|
|
existingSecretUserKey: pgusername
|
|
existingSecretPasswordKey: pgpassword
|
|
ingress:
|
|
enabled: true
|
|
class: "traefik"
|
|
tls: true
|
|
tlsSecret: vaultwarden-tls
|
|
hostname: vaultwarden.forteapps.net
|
|
additionalAnnotations:
|
|
cert-manager.io/cluster-issuer: letsencrypt-prod
|
|
gethomepage.dev/enabled: "true"
|
|
gethomepage.dev/name: "VaultWarden"
|
|
gethomepage.dev/description: "Password management"
|
|
gethomepage.dev/group: "Security"
|
|
gethomepage.dev/icon: "vaultwarden"
|
|
gethomepage.dev/href: "https://vaultwarden.forteapps.net"
|
|
|
|
replicas: 1
|
|
# Multi-Attach error for volume "pvc-102ec9a4-dccd-4cba-bb4b-650f7d934c81" Volume is already used by pod(s) vaultwarden-7f568875c7-m9cgs
|
|
|
|
service:
|
|
sessionAffinity: ClientIP
|
|
sessionAffinityConfig:
|
|
clientIP:
|
|
timeoutSeconds: 10800
|
|
|
|
smtp:
|
|
host: smtp.office365.com
|
|
security: starttls
|
|
port: 587
|
|
authMechanism: "Login"
|
|
from: noreply@fortedigital.com
|
|
fromName: "Forte Bitwarden Administrator"
|
|
debug: true
|
|
existingSecret: prod-db-creds
|
|
username:
|
|
existingSecretKey: SMTP_USERNAME
|
|
password:
|
|
existingSecretKey: SMTP_PASSWORD
|
|
|
|
storage:
|
|
data:
|
|
name: "vaultwarden-data"
|
|
size: "5Gi"
|
|
class: ""
|
|
path: "/data"
|
|
keepPvc: true
|
|
accessMode: "ReadWriteOnce"
|
|
|
|
attachments:
|
|
name: "vaultwarden-files"
|
|
size: "5Gi"
|
|
class: ""
|
|
path: /files
|
|
keepPvc: true
|
|
accessMode: "ReadWriteOnce"
|
|
|
|
sso:
|
|
enabled: true
|
|
existingSecret: vaultwarden-oidc-credentials
|
|
authority: "https://id.forteapps.net/realms/forte"
|
|
scopes: "email profile"
|
|
pkce: true
|
|
signupsMatchEmail: true
|
|
clientId:
|
|
existingSecretKey: client-id
|
|
clientSecret:
|
|
existingSecretKey: client-secret
|