Commit 391031c0 authored by Adam Lewenberg's avatar Adam Lewenberg
Browse files

support extra secrets

parent 1c00b571
......@@ -163,6 +163,7 @@ Service provider public/private key pair.
Service provider public/private key pair.
## SAML
The SAML entity ID for this Service Provider will be the URL
......
{{/*
More...
*/}}
{{- define "apache-shib.extra-secrets-volume-mounts.app" -}}
{{- $APP_NAMESPACE := .Values.APP_NAMESPACE -}}
{{- if .Values.extra_secrets }}
## EXTRA SECRETS
{{- range $i, $extra_secret := .Values.extra_secrets }}
- name: {{ .name }}
mountPath: {{ .mountPath }}
subpath: {{ .subPath }}
{{- end -}}
{{- end -}}
{{- end -}}
{{/*
More...
*/}}
{{- define "apache-shib.extra-secrets.app" -}}
{{- $APP_NAMESPACE := .Values.APP_NAMESPACE -}}
{{- if .Values.extra_secrets }}
## EXTRA SECRETS
{{- range $i, $extra_secret := .Values.extra_secrets }}
- name: {{ .name }}
secret:
secretName: {{ $APP_NAMESPACE }}-{{ .name }}
{{- end -}}
{{- end -}}
{{- end -}}
......@@ -45,11 +45,17 @@ spec:
- name: saml-key
mountPath: /etc/ssl/private/saml-key.pem
subPath: saml-key.pem
{{- include "apache-shib.extra-secrets-volume-mounts.app" . | indent 10 }}
## VOLUMES
volumes:
- name: saml-crt
secret:
secretName: "{{ .Values.APP_NAMESPACE }}-saml-crt"
secretName: {{ .Values.APP_NAMESPACE }}-saml-crt
- name: saml-key
secret:
secretName: "{{ .Values.APP_NAMESPACE }}-saml-key"
secretName: {{ .Values.APP_NAMESPACE }}-saml-key
{{- include "apache-shib.extra-secrets.app" . | indent 6 }}
- name: saml-crt2
secret:
secretName: {{ .Values.APP_NAMESPACE }}-saml-crt
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment