[bitnami/harbor]: fix: 🔒 Move jobservice and exporter redis configuration to a secret. (#9784)

* [bitnami/harbor]: fix: 🔒 Move jobservice and exporter redis configuration to a secret.

Signed-off-by: Javier Salmeron Garcia <jsalmeron@vmware.com>

* [bitnami/harbor] Update components versions

Signed-off-by: Bitnami Containers <containers@bitnami.com>

* Update README.md with readme-generator-for-helm

Signed-off-by: Bitnami Containers <containers@bitnami.com>

Co-authored-by: Bitnami Containers <containers@bitnami.com>
This commit is contained in:
Javier J. Salmerón-García
2022-04-18 15:46:14 +02:00
committed by GitHub
parent 123d19a2a4
commit 7e2b08690c
8 changed files with 58 additions and 40 deletions

View File

@@ -4,9 +4,9 @@ dependencies:
version: 16.8.5
- name: postgresql
repository: https://charts.bitnami.com/bitnami
version: 11.1.19
version: 11.1.20
- name: common
repository: https://charts.bitnami.com/bitnami
version: 1.13.0
digest: sha256:bacb82da06378a6a30f052bc39df9892c4efd588023a62177b5312a89d2892f0
generated: "2022-04-11T12:37:14.145512323Z"
digest: sha256:5630c3c57948d0ab432d3de391d2018a12a9f30adcc2801eb89f31b8c3aae5a2
generated: "2022-04-18T10:14:24.377932024Z"

View File

@@ -245,7 +245,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `volumePermissions.enabled` | Enable init container that changes the owner and group of the persistent volume | `false` |
| `volumePermissions.image.registry` | Init container volume-permissions image registry | `docker.io` |
| `volumePermissions.image.repository` | Init container volume-permissions image repository | `bitnami/bitnami-shell` |
| `volumePermissions.image.tag` | Init container volume-permissions image tag (immutable tags are recommended) | `10-debian-10-r387` |
| `volumePermissions.image.tag` | Init container volume-permissions image tag (immutable tags are recommended) | `10-debian-10-r399` |
| `volumePermissions.image.pullPolicy` | Init container volume-permissions image pull policy | `IfNotPresent` |
| `volumePermissions.image.pullSecrets` | Init container volume-permissions image pull secrets | `[]` |
| `volumePermissions.resources.limits` | Init container volume-permissions resource limits | `{}` |
@@ -260,7 +260,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| --------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------ | ---------------------- |
| `nginx.image.registry` | NGINX image registry | `docker.io` |
| `nginx.image.repository` | NGINX image repository | `bitnami/nginx` |
| `nginx.image.tag` | NGINX image tag (immutable tags are recommended) | `1.21.6-debian-10-r68` |
| `nginx.image.tag` | NGINX image tag (immutable tags are recommended) | `1.21.6-debian-10-r79` |
| `nginx.image.pullPolicy` | NGINX image pull policy | `IfNotPresent` |
| `nginx.image.pullSecrets` | NGINX image pull secrets | `[]` |
| `nginx.image.debug` | Enable NGINX image debug mode | `false` |
@@ -333,7 +333,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| ---------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------ | ----------------------- |
| `portal.image.registry` | Harbor Portal image registry | `docker.io` |
| `portal.image.repository` | Harbor Portal image repository | `bitnami/harbor-portal` |
| `portal.image.tag` | Harbor Portal image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `portal.image.tag` | Harbor Portal image tag (immutable tags are recommended) | `2.5.0-debian-10-r8` |
| `portal.image.pullPolicy` | Harbor Portal image pull policy | `IfNotPresent` |
| `portal.image.pullSecrets` | Harbor Portal image pull secrets | `[]` |
| `portal.image.debug` | Enable Harbor Portal image debug mode | `false` |
@@ -405,7 +405,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| -------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | --------------------- |
| `core.image.registry` | Harbor Core image registry | `docker.io` |
| `core.image.repository` | Harbor Core image repository | `bitnami/harbor-core` |
| `core.image.tag` | Harbor Core image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `core.image.tag` | Harbor Core image tag (immutable tags are recommended) | `2.5.0-debian-10-r8` |
| `core.image.pullPolicy` | Harbor Core image pull policy | `IfNotPresent` |
| `core.image.pullSecrets` | Harbor Core image pull secrets | `[]` |
| `core.image.debug` | Enable Harbor Core image debug mode | `false` |
@@ -487,7 +487,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| -------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------ |
| `jobservice.image.registry` | Harbor Jobservice image registry | `docker.io` |
| `jobservice.image.repository` | Harbor Jobservice image repository | `bitnami/harbor-jobservice` |
| `jobservice.image.tag` | Harbor Jobservice image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `jobservice.image.tag` | Harbor Jobservice image tag (immutable tags are recommended) | `2.4.2-debian-10-r30` |
| `jobservice.image.pullPolicy` | Harbor Jobservice image pull policy | `IfNotPresent` |
| `jobservice.image.pullSecrets` | Harbor Jobservice image pull secrets | `[]` |
| `jobservice.image.debug` | Enable Harbor Jobservice image debug mode | `false` |
@@ -600,7 +600,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `registry.automountServiceAccountToken` | Automount service account token | `false` |
| `registry.server.image.registry` | Harbor Registry image registry | `docker.io` |
| `registry.server.image.repository` | Harbor Registry image repository | `bitnami/harbor-registry` |
| `registry.server.image.tag` | Harbor Registry image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `registry.server.image.tag` | Harbor Registry image tag (immutable tags are recommended) | `2.5.0-debian-10-r7` |
| `registry.server.image.pullPolicy` | Harbor Registry image pull policy | `IfNotPresent` |
| `registry.server.image.pullSecrets` | Harbor Registry image pull secrets | `[]` |
| `registry.server.image.debug` | Enable Harbor Registry image debug mode | `false` |
@@ -646,7 +646,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `registry.server.service.ports.metrics` | Harbor Registry metrics service port | `8001` |
| `registry.controller.image.registry` | Harbor Registryctl image registry | `docker.io` |
| `registry.controller.image.repository` | Harbor Registryctl image repository | `bitnami/harbor-registryctl` |
| `registry.controller.image.tag` | Harbor Registryctl image tag (immutable tags are recommended) | `2.4.2-debian-10-r20` |
| `registry.controller.image.tag` | Harbor Registryctl image tag (immutable tags are recommended) | `2.5.0-debian-10-r8` |
| `registry.controller.image.pullPolicy` | Harbor Registryctl image pull policy | `IfNotPresent` |
| `registry.controller.image.pullSecrets` | Harbor Registryctl image pull secrets | `[]` |
| `registry.controller.image.debug` | Enable Harbor Registryctl image debug mode | `false` |
@@ -695,7 +695,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| --------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------ | ---------------------- |
| `chartmuseum.image.registry` | ChartMuseum image registry | `docker.io` |
| `chartmuseum.image.repository` | ChartMuseum image repository | `bitnami/chartmuseum` |
| `chartmuseum.image.tag` | ChartMuseum image tag (immutable tags are recommended) | `0.14.0-debian-10-r62` |
| `chartmuseum.image.tag` | ChartMuseum image tag (immutable tags are recommended) | `0.14.0-debian-10-r74` |
| `chartmuseum.image.pullPolicy` | ChartMuseum image pull policy | `IfNotPresent` |
| `chartmuseum.image.pullSecrets` | ChartMuseum image pull secrets | `[]` |
| `chartmuseum.image.debug` | Enable ChartMuseum image debug mode | `false` |
@@ -812,7 +812,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `clair.automountServiceAccountToken` | Automount service account token | `false` |
| `clair.adapter.image.registry` | Harbor Adapter for Clair image registry | `docker.io` |
| `clair.adapter.image.repository` | Harbor Adapter for Clair image repository | `bitnami/harbor-adapter-clair` |
| `clair.adapter.image.tag` | Harbor Adapter for Clair image tag (immutable tags are recommended) | `2.4.2-debian-10-r20` |
| `clair.adapter.image.tag` | Harbor Adapter for Clair image tag (immutable tags are recommended) | `2.5.0-debian-10-r7` |
| `clair.adapter.image.pullPolicy` | Harbor Adapter for Clair image pull policy | `IfNotPresent` |
| `clair.adapter.image.pullSecrets` | Harbor Adapter for Clair image pull secrets | `[]` |
| `clair.adapter.image.debug` | Enable Harbor Adapter for Clair image debug mode | `false` |
@@ -855,7 +855,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `clair.adapter.service.ports.https` | Harbor Adapter for Clair HTTPS service port | `8443` |
| `clair.server.image.registry` | Harbor Clair image registry | `docker.io` |
| `clair.server.image.repository` | Harbor Clair image repository | `bitnami/harbor-clair` |
| `clair.server.image.tag` | Harbor Clair image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `clair.server.image.tag` | Harbor Clair image tag (immutable tags are recommended) | `2.5.0-debian-10-r7` |
| `clair.server.image.pullPolicy` | Harbor Clair image pull policy | `IfNotPresent` |
| `clair.server.image.pullSecrets` | Harbor Clair image pull secrets | `[]` |
| `clair.server.image.debug` | Enable Harbor Clair image debug mode | `false` |
@@ -906,7 +906,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `notary.secretName` | Fill the name of a kubernetes secret if you want to use your own TLS certificate authority, certificate and private key for notary communications. The secret must contain keys named `notary-signer-ca.crt`, `notary-signer.key` and `notary-signer.crt` that contain the CA, certificate and private key. They will be generated if not set. | `""` |
| `notary.server.image.registry` | Harbor Notary Server image registry | `docker.io` |
| `notary.server.image.repository` | Harbor Notary Server image repository | `bitnami/harbor-notary-server` |
| `notary.server.image.tag` | Harbor Notary Server image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `notary.server.image.tag` | Harbor Notary Server image tag (immutable tags are recommended) | `2.5.0-debian-10-r8` |
| `notary.server.image.pullPolicy` | Harbor Notary Server image pull policy | `IfNotPresent` |
| `notary.server.image.pullSecrets` | Harbor Notary Server image pull secrets | `[]` |
| `notary.server.image.debug` | Enable Harbor Notary Server image debug mode | `false` |
@@ -968,7 +968,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `notary.server.automountServiceAccountToken` | Automount service account token | `false` |
| `notary.signer.image.registry` | Harbor Notary Signer image registry | `docker.io` |
| `notary.signer.image.repository` | Harbor Notary Signer image repository | `bitnami/harbor-notary-signer` |
| `notary.signer.image.tag` | Harbor Notary Signer image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `notary.signer.image.tag` | Harbor Notary Signer image tag (immutable tags are recommended) | `2.5.0-debian-10-r7` |
| `notary.signer.image.pullPolicy` | Harbor Notary Signer image pull policy | `IfNotPresent` |
| `notary.signer.image.pullSecrets` | Harbor Notary Signer image pull secrets | `[]` |
| `notary.signer.image.debug` | Enable Harbor Notary Signer image debug mode | `false` |
@@ -1038,7 +1038,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| --------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------ | -------------------------------------- |
| `trivy.image.registry` | Harbor Adapter Trivy image registry | `docker.io` |
| `trivy.image.repository` | Harbor Adapter Trivy image repository | `bitnami/harbor-adapter-trivy` |
| `trivy.image.tag` | Harbor Adapter Trivy image tag (immutable tags are recommended) | `2.4.2-debian-10-r19` |
| `trivy.image.tag` | Harbor Adapter Trivy image tag (immutable tags are recommended) | `2.5.0-debian-10-r8` |
| `trivy.image.pullPolicy` | Harbor Adapter Trivy image pull policy | `IfNotPresent` |
| `trivy.image.pullSecrets` | Harbor Adapter Trivy image pull secrets | `[]` |
| `trivy.image.debug` | Enable Harbor Adapter Trivy image debug mode | `false` |
@@ -1119,7 +1119,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| ------------------------------------------------ | ----------------------------------------------------------------------------------------------------------------------------------------------- | ------------------------- |
| `exporter.image.registry` | Registry for exporter image | `docker.io` |
| `exporter.image.repository` | Repository for exporter image | `bitnami/harbor-exporter` |
| `exporter.image.tag` | Tag for exporter image | `2.4.2-debian-10-r20` |
| `exporter.image.tag` | Tag for exporter image | `2.5.0-debian-10-r8` |
| `exporter.image.pullPolicy` | Harbor exporter image pull policy | `IfNotPresent` |
| `exporter.image.pullSecrets` | Specify docker-registry secret names as an array | `[]` |
| `exporter.image.debug` | Specify if debug logs should be enabled | `false` |
@@ -1195,7 +1195,7 @@ Additionally, if `persistence.resourcePolicy` is set to `keep`, you should manua
| `postgresql.primary.initdb.scripts` | Initdb scripts to create Harbor databases | `{}` |
| `postgresql.image.registry` | PostgreSQL image registry | `docker.io` |
| `postgresql.image.repository` | PostgreSQL image repository | `bitnami/postgresql` |
| `postgresql.image.tag` | PostgreSQL image tag (immutable tags are recommended) | `11.15.0-debian-10-r56` |
| `postgresql.image.tag` | PostgreSQL image tag (immutable tags are recommended) | `11.15.0-debian-10-r67` |
| `externalDatabase.host` | Database host | `localhost` |
| `externalDatabase.port` | Database port number | `5432` |
| `externalDatabase.user` | Non-root username for Harbor | `bn_harbor` |

View File

@@ -18,7 +18,6 @@ data:
HARBOR_EXPORTER_METRICS_PATH: {{ .Values.metrics.path | quote }}
HARBOR_METRIC_NAMESPACE: harbor
HARBOR_METRIC_SUBSYSTEM: exporter
HARBOR_REDIS_URL: {{ include "harbor.redisForJobservice" . | quote }}
HARBOR_REDIS_NAMESPACE: {{ .Values.jobservice.redisNamespace | quote }}
HARBOR_SERVICE_SCHEME: {{ ternary "https" "http" .Values.internalTLS.enabled | quote }}
HARBOR_SERVICE_HOST: {{ include "harbor.core" . | quote }}

View File

@@ -113,6 +113,8 @@ spec:
envFrom:
- configMapRef:
name: "{{ include "harbor.exporter" . }}-envvars"
- secretRef:
name: "{{ include "harbor.exporter" . }}-envvars"
ports:
- containerPort: {{ .Values.exporter.containerPorts.metrics }}
name: metrics

View File

@@ -0,0 +1,17 @@
{{- if .Values.metrics.enabled }}
apiVersion: v1
kind: Secret
metadata:
name: {{ include "harbor.exporter" . }}-envvars
namespace: {{ .Release.Namespace | quote }}
labels: {{- include "common.labels.standard" . | nindent 4 }}
{{- if .Values.commonLabels }}
{{- include "common.tplvalues.render" ( dict "value" .Values.commonLabels "context" $ ) | nindent 4 }}
{{- end }}
app.kubernetes.io/component: exporter
{{- if .Values.commonAnnotations }}
annotations: {{- include "common.tplvalues.render" ( dict "value" .Values.commonAnnotations "context" $ ) | nindent 4 }}
{{- end }}
data:
HARBOR_REDIS_URL: {{ include "harbor.redisForJobservice" . | b64enc | quote }}
{{- end }}

View File

@@ -1,7 +1,7 @@
apiVersion: v1
kind: ConfigMap
kind: Secret
metadata:
name: {{ include "harbor.jobservice" . }}
name: {{ include "harbor.jobservice" . }}-config
namespace: {{ .Release.Namespace | quote }}
labels: {{- include "common.labels.standard" . | nindent 4 }}
{{- if .Values.commonLabels }}
@@ -11,7 +11,7 @@ metadata:
{{- if .Values.commonAnnotations }}
annotations: {{- include "common.tplvalues.render" ( dict "value" .Values.commonAnnotations "context" $ ) | nindent 4 }}
{{- end }}
data:
stringData:
config.yml: |+
#Server listening port
protocol: {{ ternary "https" "http" .Values.internalTLS.enabled | quote }}

View File

@@ -30,9 +30,9 @@ spec:
{{- end }}
app.kubernetes.io/component: jobservice
annotations:
checksum/configmap: {{ include (print $.Template.BasePath "/jobservice/jobservice-cm.yaml") . | sha256sum }}
checksum/configmap-env: {{ include (print $.Template.BasePath "/jobservice/jobservice-cm-envvars.yaml") . | sha256sum }}
checksum/secret-env: {{ include (print $.Template.BasePath "/jobservice/jobservice-secret-envvars.yaml") . | sha256sum }}
checksum/secret-config: {{ include (print $.Template.BasePath "/jobservice/jobservice-config-secret.yaml") . | sha256sum }}
checksum/secret: {{ include (print $.Template.BasePath "/jobservice/jobservice-secrets.yaml") . | sha256sum }}
checksum/secret-core: {{ include (print $.Template.BasePath "/core/core-secret.yaml") . | sha256sum }}
{{- if and .Values.internalTLS.enabled (not .Values.core.tls.existingSecret) }}
@@ -217,8 +217,8 @@ spec:
{{- end }}
volumes:
- name: jobservice-config
configMap:
name: {{ include "harbor.jobservice" . }}
secret:
secretName: {{ include "harbor.jobservice" . }}-config
- name: job-logs
{{- if and .Values.persistence.enabled (eq .Values.jobservice.jobLogger "file") }}
persistentVolumeClaim:

View File

@@ -631,7 +631,7 @@ volumePermissions:
image:
registry: docker.io
repository: bitnami/bitnami-shell
tag: 10-debian-10-r394
tag: 10-debian-10-r399
pullPolicy: IfNotPresent
## Optionally specify an array of imagePullSecrets.
## Secrets must be manually created in the namespace.
@@ -675,7 +675,7 @@ nginx:
image:
registry: docker.io
repository: bitnami/nginx
tag: 1.21.6-debian-10-r75
tag: 1.21.6-debian-10-r79
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -938,7 +938,7 @@ portal:
image:
registry: docker.io
repository: bitnami/harbor-portal
tag: 2.5.0-debian-10-r3
tag: 2.5.0-debian-10-r8
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -1196,7 +1196,7 @@ core:
image:
registry: docker.io
repository: bitnami/harbor-core
tag: 2.5.0-debian-10-r3
tag: 2.5.0-debian-10-r8
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -1487,7 +1487,7 @@ jobservice:
image:
registry: docker.io
repository: bitnami/harbor-jobservice
tag: 2.4.2-debian-10-r26
tag: 2.4.2-debian-10-r30
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -1928,7 +1928,7 @@ registry:
image:
registry: docker.io
repository: bitnami/harbor-registry
tag: 2.5.0-debian-10-r2
tag: 2.5.0-debian-10-r7
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -2073,7 +2073,7 @@ registry:
image:
registry: docker.io
repository: bitnami/harbor-registryctl
tag: 2.5.0-debian-10-r3
tag: 2.5.0-debian-10-r8
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -2214,7 +2214,7 @@ chartmuseum:
image:
registry: docker.io
repository: bitnami/chartmuseum
tag: 0.14.0-debian-10-r69
tag: 0.14.0-debian-10-r74
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -2655,7 +2655,7 @@ clair:
image:
registry: docker.io
repository: bitnami/harbor-adapter-clair
tag: 2.5.0-debian-10-r2
tag: 2.5.0-debian-10-r7
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -2794,7 +2794,7 @@ clair:
image:
registry: docker.io
repository: bitnami/harbor-clair
tag: 2.5.0-debian-10-r2
tag: 2.5.0-debian-10-r7
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -2949,7 +2949,7 @@ notary:
image:
registry: docker.io
repository: bitnami/harbor-notary-server
tag: 2.5.0-debian-10-r3
tag: 2.5.0-debian-10-r8
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -3184,7 +3184,7 @@ notary:
image:
registry: docker.io
repository: bitnami/harbor-notary-signer
tag: 2.5.0-debian-10-r2
tag: 2.5.0-debian-10-r7
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -3432,7 +3432,7 @@ trivy:
image:
registry: docker.io
repository: bitnami/harbor-adapter-trivy
tag: 2.5.0-debian-10-r3
tag: 2.5.0-debian-10-r8
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -3738,7 +3738,7 @@ exporter:
image:
registry: docker.io
repository: bitnami/harbor-exporter
tag: 2.5.0-debian-10-r3
tag: 2.5.0-debian-10-r8
## Specify a imagePullPolicy
## Defaults to 'Always' if image tag is 'latest', else set to 'IfNotPresent'
## ref: https://kubernetes.io/docs/user-guide/images/#pre-pulling-images
@@ -3977,7 +3977,7 @@ postgresql:
image:
registry: docker.io
repository: bitnami/postgresql
tag: 11.15.0-debian-10-r62
tag: 11.15.0-debian-10-r67
auth:
enablePostgresUser: true
postgresPassword: not-secure-database-password