fix(helm): prevent JWT secret regeneration on upgrade

This commit is contained in:
Tuan-Dat Tran
2026-02-24 00:03:23 +01:00
parent 5c28b5c4fd
commit bf3c581da8
2 changed files with 4 additions and 3 deletions

View File

@@ -1,3 +1,4 @@
{{- if eq .Values.backend.auth.mode "simple" }}
apiVersion: v1 apiVersion: v1
kind: Secret kind: Secret
metadata: metadata:
@@ -6,6 +7,5 @@ metadata:
{{- include "cv-app.labels" . | nindent 4 }} {{- include "cv-app.labels" . | nindent 4 }}
type: Opaque type: Opaque
data: data:
{{- if eq .Values.backend.auth.mode "simple" }} JWT_SECRET: {{ .Values.backend.auth.jwtSecret | default (randAlphaNum 32) | b64enc | quote }}
JWT_SECRET: {{ randAlphaNum 32 | b64enc | quote }} {{- end }}
{{- end }}

View File

@@ -14,6 +14,7 @@ backend:
pullPolicy: IfNotPresent pullPolicy: IfNotPresent
auth: auth:
mode: simple mode: simple
jwtSecret: ""
keycloak: keycloak:
url: "" url: ""
realm: "" realm: ""