feat(container)!: Update image ghcr.io/bjw-s-labs/helm/app-template ( 4.6.2 β 5.0.1 )#1300
Open
renovate[bot] wants to merge 1 commit into
Open
feat(container)!: Update image ghcr.io/bjw-s-labs/helm/app-template ( 4.6.2 β 5.0.1 )#1300renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: actions-runner-system/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: actions-runner-system/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: cert-manager/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: cert-manager/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: database/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: database/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: default/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: default/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: external-secrets/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: external-secrets/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: flux-system/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: flux-system/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: kube-system/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: kube-system/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: network/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: network/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: observability/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: observability/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: openebs-system/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: openebs-system/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: rook-ceph/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: rook-ceph/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: servarr/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: servarr/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: system-upgrade/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: system-upgrade/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
--- kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: volsync-system/app-template
+++ kubernetes/apps Kustomization: flux-system/cluster-apps OCIRepository: volsync-system/app-template
@@ -10,9 +10,9 @@
spec:
interval: 5m
layerSelector:
mediaType: application/vnd.cncf.helm.chart.content.v1.tar+gzip
operation: copy
ref:
- tag: 4.6.2
+ tag: 5.0.1
url: oci://ghcr.io/bjw-s-labs/helm/app-template
|
--- HelmRelease: default/home-assistant Deployment: default/home-assistant
+++ HelmRelease: default/home-assistant Deployment: default/home-assistant
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: home-assistant
app.kubernetes.io/instance: home-assistant
app.kubernetes.io/name: home-assistant
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: home-assistant
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: default/home-assistant ServiceAccount: default/home-assistant
+++ HelmRelease: default/home-assistant ServiceAccount: default/home-assistant
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: home-assistant
+ labels:
+ app.kubernetes.io/instance: home-assistant
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: home-assistant
+ namespace: default
+
--- HelmRelease: default/flame Deployment: default/flame
+++ HelmRelease: default/flame Deployment: default/flame
@@ -25,13 +25,13 @@
app.kubernetes.io/controller: flame
app.kubernetes.io/instance: flame
app.kubernetes.io/name: flame
spec:
enableServiceLinks: false
serviceAccountName: flame
- automountServiceAccountToken: true
+ automountServiceAccountToken: false
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
containers:
- envFrom:
--- HelmRelease: kube-system/amd-gpu-node-labeller DaemonSet: kube-system/amd-gpu-node-labeller
+++ HelmRelease: kube-system/amd-gpu-node-labeller DaemonSet: kube-system/amd-gpu-node-labeller
@@ -23,13 +23,13 @@
app.kubernetes.io/controller: amd-gpu-node-labeller
app.kubernetes.io/instance: amd-gpu-node-labeller
app.kubernetes.io/name: amd-gpu-node-labeller
spec:
enableServiceLinks: false
serviceAccountName: amd-gpu-node-labeller
- automountServiceAccountToken: true
+ automountServiceAccountToken: false
priorityClassName: system-node-critical
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
nodeSelector:
--- HelmRelease: kube-system/amd-gpu-node-labeller ServiceAccount: kube-system/amd-gpu-node-labeller
+++ HelmRelease: kube-system/amd-gpu-node-labeller ServiceAccount: kube-system/amd-gpu-node-labeller
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: amd-gpu-node-labeller
+ labels:
+ app.kubernetes.io/instance: amd-gpu-node-labeller
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: amd-gpu-node-labeller
+ namespace: kube-system
+
--- HelmRelease: default/thelounge Deployment: default/thelounge
+++ HelmRelease: default/thelounge Deployment: default/thelounge
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: thelounge
app.kubernetes.io/instance: thelounge
app.kubernetes.io/name: thelounge
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: thelounge
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: default/thelounge ServiceAccount: default/thelounge
+++ HelmRelease: default/thelounge ServiceAccount: default/thelounge
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: thelounge
+ labels:
+ app.kubernetes.io/instance: thelounge
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: thelounge
+ namespace: default
+
--- HelmRelease: default/echo-server Deployment: default/echo-server
+++ HelmRelease: default/echo-server Deployment: default/echo-server
@@ -24,14 +24,14 @@
labels:
app.kubernetes.io/controller: echo-server
app.kubernetes.io/instance: echo-server
app.kubernetes.io/name: echo-server
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: echo-server
+ automountServiceAccountToken: false
securityContext:
runAsGroup: 65534
runAsNonRoot: true
runAsUser: 65534
hostIPC: false
hostNetwork: false
--- HelmRelease: default/echo-server ServiceMonitor: default/echo-server
+++ HelmRelease: default/echo-server ServiceMonitor: default/echo-server
@@ -6,13 +6,13 @@
labels:
app.kubernetes.io/instance: echo-server
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: echo-server
namespace: default
spec:
- jobLabel: echo-server
+ jobLabel: app.kubernetes.io/name
namespaceSelector:
matchNames:
- default
selector:
matchLabels:
app.kubernetes.io/service: echo-server
--- HelmRelease: default/echo-server ServiceAccount: default/echo-server
+++ HelmRelease: default/echo-server ServiceAccount: default/echo-server
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: echo-server
+ labels:
+ app.kubernetes.io/instance: echo-server
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: echo-server
+ namespace: default
+
--- HelmRelease: default/glance Deployment: default/glance
+++ HelmRelease: default/glance Deployment: default/glance
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: glance
app.kubernetes.io/instance: glance
app.kubernetes.io/name: glance
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: glance
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: default/glance ServiceAccount: default/glance
+++ HelmRelease: default/glance ServiceAccount: default/glance
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: glance
+ labels:
+ app.kubernetes.io/instance: glance
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: glance
+ namespace: default
+
--- HelmRelease: default/manyfold Deployment: default/manyfold
+++ HelmRelease: default/manyfold Deployment: default/manyfold
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: manyfold
app.kubernetes.io/instance: manyfold
app.kubernetes.io/name: manyfold
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: manyfold
+ automountServiceAccountToken: false
securityContext:
fsGroup: 2000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 2000
runAsUser: 2000
hostIPC: false
--- HelmRelease: default/manyfold Deployment: default/manyfold-redis
+++ HelmRelease: default/manyfold Deployment: default/manyfold-redis
@@ -24,14 +24,14 @@
labels:
app.kubernetes.io/controller: redis
app.kubernetes.io/instance: manyfold
app.kubernetes.io/name: manyfold
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: manyfold
+ automountServiceAccountToken: false
securityContext:
runAsGroup: 65534
runAsUser: 65534
hostIPC: false
hostNetwork: false
hostPID: false
--- HelmRelease: default/manyfold ServiceAccount: default/manyfold
+++ HelmRelease: default/manyfold ServiceAccount: default/manyfold
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: manyfold
+ labels:
+ app.kubernetes.io/instance: manyfold
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: manyfold
+ namespace: default
+
--- HelmRelease: default/open-webui Deployment: default/open-webui
+++ HelmRelease: default/open-webui Deployment: default/open-webui
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: open-webui
app.kubernetes.io/instance: open-webui
app.kubernetes.io/name: open-webui
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: open-webui
+ automountServiceAccountToken: false
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
containers:
- env:
--- HelmRelease: default/open-webui ServiceAccount: default/open-webui
+++ HelmRelease: default/open-webui ServiceAccount: default/open-webui
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: open-webui
+ labels:
+ app.kubernetes.io/instance: open-webui
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: open-webui
+ namespace: default
+
--- HelmRelease: observability/gatus Deployment: observability/gatus
+++ HelmRelease: observability/gatus Deployment: observability/gatus
@@ -27,13 +27,13 @@
app.kubernetes.io/controller: gatus
app.kubernetes.io/instance: gatus
app.kubernetes.io/name: gatus
spec:
enableServiceLinks: false
serviceAccountName: gatus
- automountServiceAccountToken: true
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: observability/gatus ServiceMonitor: observability/gatus
+++ HelmRelease: observability/gatus ServiceMonitor: observability/gatus
@@ -6,13 +6,13 @@
labels:
app.kubernetes.io/instance: gatus
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: gatus
namespace: observability
spec:
- jobLabel: gatus
+ jobLabel: app.kubernetes.io/name
namespaceSelector:
matchNames:
- observability
selector:
matchLabels:
app.kubernetes.io/service: gatus
--- HelmRelease: servarr/bazarr Deployment: servarr/bazarr
+++ HelmRelease: servarr/bazarr Deployment: servarr/bazarr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: bazarr
app.kubernetes.io/instance: bazarr
app.kubernetes.io/name: bazarr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: bazarr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/bazarr ServiceAccount: servarr/bazarr
+++ HelmRelease: servarr/bazarr ServiceAccount: servarr/bazarr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: bazarr
+ labels:
+ app.kubernetes.io/instance: bazarr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: bazarr
+ namespace: servarr
+
--- HelmRelease: default/litellm Deployment: default/litellm
+++ HelmRelease: default/litellm Deployment: default/litellm
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: litellm
app.kubernetes.io/instance: litellm
app.kubernetes.io/name: litellm
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: litellm
+ automountServiceAccountToken: false
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
containers:
- args:
--- HelmRelease: default/litellm ServiceAccount: default/litellm
+++ HelmRelease: default/litellm ServiceAccount: default/litellm
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: litellm
+ labels:
+ app.kubernetes.io/instance: litellm
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: litellm
+ namespace: default
+
--- HelmRelease: default/n8n Deployment: default/n8n
+++ HelmRelease: default/n8n Deployment: default/n8n
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: n8n
app.kubernetes.io/instance: n8n
app.kubernetes.io/name: n8n
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: n8n
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: default/n8n ServiceAccount: default/n8n
+++ HelmRelease: default/n8n ServiceAccount: default/n8n
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: n8n
+ labels:
+ app.kubernetes.io/instance: n8n
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: n8n
+ namespace: default
+
--- HelmRelease: observability/unpoller Deployment: observability/unpoller
+++ HelmRelease: observability/unpoller Deployment: observability/unpoller
@@ -24,14 +24,14 @@
labels:
app.kubernetes.io/controller: unpoller
app.kubernetes.io/instance: unpoller
app.kubernetes.io/name: unpoller
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: unpoller
+ automountServiceAccountToken: false
securityContext:
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
hostIPC: false
hostNetwork: false
--- HelmRelease: observability/unpoller ServiceMonitor: observability/unpoller
+++ HelmRelease: observability/unpoller ServiceMonitor: observability/unpoller
@@ -6,13 +6,13 @@
labels:
app.kubernetes.io/instance: unpoller
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: unpoller
namespace: observability
spec:
- jobLabel: unpoller
+ jobLabel: app.kubernetes.io/name
namespaceSelector:
matchNames:
- observability
selector:
matchLabels:
app.kubernetes.io/service: unpoller
--- HelmRelease: observability/unpoller ServiceAccount: observability/unpoller
+++ HelmRelease: observability/unpoller ServiceAccount: observability/unpoller
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: unpoller
+ labels:
+ app.kubernetes.io/instance: unpoller
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: unpoller
+ namespace: observability
+
--- HelmRelease: kube-system/amd-device-plugin DaemonSet: kube-system/amd-device-plugin
+++ HelmRelease: kube-system/amd-device-plugin DaemonSet: kube-system/amd-device-plugin
@@ -22,14 +22,14 @@
labels:
app.kubernetes.io/controller: amd-device-plugin
app.kubernetes.io/instance: amd-device-plugin
app.kubernetes.io/name: amd-device-plugin
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: amd-device-plugin
+ automountServiceAccountToken: false
priorityClassName: system-node-critical
hostIPC: false
hostNetwork: false
hostPID: false
dnsPolicy: ClusterFirst
nodeSelector:
--- HelmRelease: kube-system/amd-device-plugin ServiceAccount: kube-system/amd-device-plugin
+++ HelmRelease: kube-system/amd-device-plugin ServiceAccount: kube-system/amd-device-plugin
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: amd-device-plugin
+ labels:
+ app.kubernetes.io/instance: amd-device-plugin
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: amd-device-plugin
+ namespace: kube-system
+
--- HelmRelease: observability/kromgo Deployment: observability/kromgo
+++ HelmRelease: observability/kromgo Deployment: observability/kromgo
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: kromgo
app.kubernetes.io/instance: kromgo
app.kubernetes.io/name: kromgo
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: kromgo
+ automountServiceAccountToken: false
securityContext:
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
hostIPC: false
hostNetwork: false
--- HelmRelease: observability/kromgo ServiceAccount: observability/kromgo
+++ HelmRelease: observability/kromgo ServiceAccount: observability/kromgo
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: kromgo
+ labels:
+ app.kubernetes.io/instance: kromgo
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: kromgo
+ namespace: observability
+
--- HelmRelease: servarr/qui Deployment: servarr/qui
+++ HelmRelease: servarr/qui Deployment: servarr/qui
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: qui
app.kubernetes.io/instance: qui
app.kubernetes.io/name: qui
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: qui
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/qui ServiceAccount: servarr/qui
+++ HelmRelease: servarr/qui ServiceAccount: servarr/qui
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: qui
+ labels:
+ app.kubernetes.io/instance: qui
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: qui
+ namespace: servarr
+
--- HelmRelease: servarr/radarr Deployment: servarr/radarr
+++ HelmRelease: servarr/radarr Deployment: servarr/radarr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: radarr
app.kubernetes.io/instance: radarr
app.kubernetes.io/name: radarr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: radarr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/radarr ServiceAccount: servarr/radarr
+++ HelmRelease: servarr/radarr ServiceAccount: servarr/radarr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: radarr
+ labels:
+ app.kubernetes.io/instance: radarr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: radarr
+ namespace: servarr
+
--- HelmRelease: default/readeck Deployment: default/readeck
+++ HelmRelease: default/readeck Deployment: default/readeck
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: readeck
app.kubernetes.io/instance: readeck
app.kubernetes.io/name: readeck
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: readeck
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: default/readeck ServiceAccount: default/readeck
+++ HelmRelease: default/readeck ServiceAccount: default/readeck
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: readeck
+ labels:
+ app.kubernetes.io/instance: readeck
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: readeck
+ namespace: default
+
--- HelmRelease: servarr/autobrr Deployment: servarr/autobrr
+++ HelmRelease: servarr/autobrr Deployment: servarr/autobrr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: autobrr
app.kubernetes.io/instance: autobrr
app.kubernetes.io/name: autobrr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: autobrr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/autobrr ServiceMonitor: servarr/autobrr
+++ HelmRelease: servarr/autobrr ServiceMonitor: servarr/autobrr
@@ -6,13 +6,13 @@
labels:
app.kubernetes.io/instance: autobrr
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: autobrr
namespace: servarr
spec:
- jobLabel: autobrr
+ jobLabel: app.kubernetes.io/name
namespaceSelector:
matchNames:
- servarr
selector:
matchLabels:
app.kubernetes.io/service: autobrr
--- HelmRelease: servarr/autobrr ServiceAccount: servarr/autobrr
+++ HelmRelease: servarr/autobrr ServiceAccount: servarr/autobrr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: autobrr
+ labels:
+ app.kubernetes.io/instance: autobrr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: autobrr
+ namespace: servarr
+
--- HelmRelease: external-secrets/onepassword Deployment: external-secrets/onepassword
+++ HelmRelease: external-secrets/onepassword Deployment: external-secrets/onepassword
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: onepassword
app.kubernetes.io/instance: onepassword
app.kubernetes.io/name: onepassword
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: onepassword
+ automountServiceAccountToken: false
securityContext:
fsGroup: 999
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 999
runAsNonRoot: true
runAsUser: 999
--- HelmRelease: external-secrets/onepassword ServiceAccount: external-secrets/onepassword
+++ HelmRelease: external-secrets/onepassword ServiceAccount: external-secrets/onepassword
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: onepassword
+ labels:
+ app.kubernetes.io/instance: onepassword
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: onepassword
+ namespace: external-secrets
+
--- HelmRelease: default/webhook Deployment: default/webhook
+++ HelmRelease: default/webhook Deployment: default/webhook
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: webhook
app.kubernetes.io/instance: webhook
app.kubernetes.io/name: webhook
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: webhook
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: default/webhook ServiceAccount: default/webhook
+++ HelmRelease: default/webhook ServiceAccount: default/webhook
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: webhook
+ labels:
+ app.kubernetes.io/instance: webhook
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: webhook
+ namespace: default
+
--- HelmRelease: servarr/jellyfin Deployment: servarr/jellyfin
+++ HelmRelease: servarr/jellyfin Deployment: servarr/jellyfin
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: jellyfin
app.kubernetes.io/instance: jellyfin
app.kubernetes.io/name: jellyfin
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: jellyfin
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/jellyfin ServiceAccount: servarr/jellyfin
+++ HelmRelease: servarr/jellyfin ServiceAccount: servarr/jellyfin
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: jellyfin
+ labels:
+ app.kubernetes.io/instance: jellyfin
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: jellyfin
+ namespace: servarr
+
--- HelmRelease: servarr/jellyseerr Deployment: servarr/jellyseerr
+++ HelmRelease: servarr/jellyseerr Deployment: servarr/jellyseerr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: jellyseerr
app.kubernetes.io/instance: jellyseerr
app.kubernetes.io/name: jellyseerr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: jellyseerr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/jellyseerr ServiceAccount: servarr/jellyseerr
+++ HelmRelease: servarr/jellyseerr ServiceAccount: servarr/jellyseerr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: jellyseerr
+ labels:
+ app.kubernetes.io/instance: jellyseerr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: jellyseerr
+ namespace: servarr
+
--- HelmRelease: network/cloudflare-tunnel Deployment: network/cloudflare-tunnel
+++ HelmRelease: network/cloudflare-tunnel Deployment: network/cloudflare-tunnel
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: cloudflare-tunnel
app.kubernetes.io/instance: cloudflare-tunnel
app.kubernetes.io/name: cloudflare-tunnel
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: cloudflare-tunnel
+ automountServiceAccountToken: false
securityContext:
runAsGroup: 65534
runAsNonRoot: true
runAsUser: 65534
hostIPC: false
hostNetwork: false
--- HelmRelease: network/cloudflare-tunnel ServiceMonitor: network/cloudflare-tunnel
+++ HelmRelease: network/cloudflare-tunnel ServiceMonitor: network/cloudflare-tunnel
@@ -6,13 +6,13 @@
labels:
app.kubernetes.io/instance: cloudflare-tunnel
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: cloudflare-tunnel
namespace: network
spec:
- jobLabel: cloudflare-tunnel
+ jobLabel: app.kubernetes.io/name
namespaceSelector:
matchNames:
- network
selector:
matchLabels:
app.kubernetes.io/service: cloudflare-tunnel
--- HelmRelease: network/cloudflare-tunnel ServiceAccount: network/cloudflare-tunnel
+++ HelmRelease: network/cloudflare-tunnel ServiceAccount: network/cloudflare-tunnel
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: cloudflare-tunnel
+ labels:
+ app.kubernetes.io/instance: cloudflare-tunnel
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: cloudflare-tunnel
+ namespace: network
+
--- HelmRelease: servarr/unpackerr Deployment: servarr/unpackerr
+++ HelmRelease: servarr/unpackerr Deployment: servarr/unpackerr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: unpackerr
app.kubernetes.io/instance: unpackerr
app.kubernetes.io/name: unpackerr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: unpackerr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/unpackerr ServiceMonitor: servarr/unpackerr
+++ HelmRelease: servarr/unpackerr ServiceMonitor: servarr/unpackerr
@@ -6,13 +6,13 @@
labels:
app.kubernetes.io/instance: unpackerr
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: unpackerr
namespace: servarr
spec:
- jobLabel: unpackerr
+ jobLabel: app.kubernetes.io/name
namespaceSelector:
matchNames:
- servarr
selector:
matchLabels:
app.kubernetes.io/service: unpackerr
--- HelmRelease: servarr/unpackerr ServiceAccount: servarr/unpackerr
+++ HelmRelease: servarr/unpackerr ServiceAccount: servarr/unpackerr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: unpackerr
+ labels:
+ app.kubernetes.io/instance: unpackerr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: unpackerr
+ namespace: servarr
+
--- HelmRelease: servarr/prowlarr Deployment: servarr/prowlarr
+++ HelmRelease: servarr/prowlarr Deployment: servarr/prowlarr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: prowlarr
app.kubernetes.io/instance: prowlarr
app.kubernetes.io/name: prowlarr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: prowlarr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/prowlarr ServiceAccount: servarr/prowlarr
+++ HelmRelease: servarr/prowlarr ServiceAccount: servarr/prowlarr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: prowlarr
+ labels:
+ app.kubernetes.io/instance: prowlarr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: prowlarr
+ namespace: servarr
+
--- HelmRelease: servarr/recyclarr CronJob: servarr/recyclarr
+++ HelmRelease: servarr/recyclarr CronJob: servarr/recyclarr
@@ -25,14 +25,14 @@
labels:
app.kubernetes.io/controller: recyclarr
app.kubernetes.io/instance: recyclarr
app.kubernetes.io/name: recyclarr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: recyclarr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/recyclarr ServiceAccount: servarr/recyclarr
+++ HelmRelease: servarr/recyclarr ServiceAccount: servarr/recyclarr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: recyclarr
+ labels:
+ app.kubernetes.io/instance: recyclarr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: recyclarr
+ namespace: servarr
+
--- HelmRelease: servarr/sonarr Deployment: servarr/sonarr
+++ HelmRelease: servarr/sonarr Deployment: servarr/sonarr
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: sonarr
app.kubernetes.io/instance: sonarr
app.kubernetes.io/name: sonarr
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: sonarr
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/sonarr ServiceAccount: servarr/sonarr
+++ HelmRelease: servarr/sonarr ServiceAccount: servarr/sonarr
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: sonarr
+ labels:
+ app.kubernetes.io/instance: sonarr
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: sonarr
+ namespace: servarr
+
--- HelmRelease: servarr/sabnzbd Deployment: servarr/sabnzbd
+++ HelmRelease: servarr/sabnzbd Deployment: servarr/sabnzbd
@@ -26,14 +26,14 @@
labels:
app.kubernetes.io/controller: sabnzbd
app.kubernetes.io/instance: sabnzbd
app.kubernetes.io/name: sabnzbd
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: sabnzbd
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/sabnzbd ServiceAccount: servarr/sabnzbd
+++ HelmRelease: servarr/sabnzbd ServiceAccount: servarr/sabnzbd
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: sabnzbd
+ labels:
+ app.kubernetes.io/instance: sabnzbd
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: sabnzbd
+ namespace: servarr
+
--- HelmRelease: observability/unifi-client-check Deployment: observability/unifi-client-check
+++ HelmRelease: observability/unifi-client-check Deployment: observability/unifi-client-check
@@ -24,14 +24,14 @@
labels:
app.kubernetes.io/controller: unifi-client-check
app.kubernetes.io/instance: unifi-client-check
app.kubernetes.io/name: unifi-client-check
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: unifi-client-check
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: observability/unifi-client-check ServiceAccount: observability/unifi-client-check
+++ HelmRelease: observability/unifi-client-check ServiceAccount: observability/unifi-client-check
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: unifi-client-check
+ labels:
+ app.kubernetes.io/instance: unifi-client-check
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: unifi-client-check
+ namespace: observability
+
--- HelmRelease: servarr/qbittorrent StatefulSet: servarr/qbittorrent
+++ HelmRelease: servarr/qbittorrent StatefulSet: servarr/qbittorrent
@@ -28,14 +28,14 @@
labels:
app.kubernetes.io/controller: qbittorrent
app.kubernetes.io/instance: qbittorrent
app.kubernetes.io/name: qbittorrent
spec:
enableServiceLinks: false
- serviceAccountName: default
- automountServiceAccountToken: true
+ serviceAccountName: qbittorrent
+ automountServiceAccountToken: false
securityContext:
fsGroup: 1000
fsGroupChangePolicy: OnRootMismatch
runAsGroup: 1000
runAsNonRoot: true
runAsUser: 1000
--- HelmRelease: servarr/qbittorrent ServiceAccount: servarr/qbittorrent
+++ HelmRelease: servarr/qbittorrent ServiceAccount: servarr/qbittorrent
@@ -0,0 +1,11 @@
+---
+apiVersion: v1
+kind: ServiceAccount
+metadata:
+ name: qbittorrent
+ labels:
+ app.kubernetes.io/instance: qbittorrent
+ app.kubernetes.io/managed-by: Helm
+ app.kubernetes.io/name: qbittorrent
+ namespace: servarr
+ |
02bf5ea to
bded18c
Compare
β¦ 4.6.2 β 5.0.1 )
bded18c to
76fae0e
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
4.6.2β5.0.1Release Notes
bjw-s-labs/helm-charts (ghcr.io/bjw-s-labs/helm/app-template)
v5.0.1Changelog:
Changed
v5.0.0Changelog:
Changed
Configuration
π Schedule: (in timezone America/Los_Angeles)
π¦ Automerge: Disabled by config. Please merge this manually once you are satisfied.
β» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
π Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.