This repository has been archived by the owner on Oct 8, 2024. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 1
/
sonarqube-flux-values.yaml
108 lines (98 loc) · 3.5 KB
/
sonarqube-flux-values.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
application:
name: sonarqube
createNamespace: ###ZARF_VAR_SONARQUBE_CREATE_NAMESPACE###
namespace: sonarqube
path: chart
repository: https://repo1.dso.mil/big-bang/product/packages/sonarqube.git
ref:
# renovate: datasource=gitlab-tags depName=big-bang/product/packages/sonarqube versioning=loose registryUrl=https://repo1.dso.mil
tag: 8.0.3-bb.0
dependsOn:
###ZARF_VAR_SONARQUBE_DEPENDS_ON###
baseValues:
# hostname is deprecated and replaced with domain. But if hostname exists then use it.
domain: ###ZARF_VAR_DOMAIN###
# Define variables to help with conditionals later
OpenShift:
enabled: false
sonarProperties:
sonar.auth.saml.enabled: ###ZARF_VAR_SONARQUBE_IDAM_ENABLED###
sonar.core.serverBaseURL: https://sonarqube.###ZARF_VAR_DOMAIN###
sonar.auth.saml.applicationId: ###ZARF_VAR_SONARQUBE_IDAM_CLIENT_ID###
sonar.auth.saml.providerName: ###ZARF_VAR_SONARQUBE_IDAM_PROVIDER_NAME###
sonar.auth.saml.providerId: ###ZARF_VAR_SONARQUBE_IDAM_REALM_URL###
sonar.auth.saml.loginUrl: ###ZARF_VAR_SONARQUBE_IDAM_REALM_URL###/protocol/saml
sonar.auth.saml.certificate.secured: ###ZARF_VAR_SONARQUBE_IDAM_SAML_CERT###
sonar.auth.saml.user.login: ###ZARF_VAR_SONARQUBE_IDAM_ATTR_LOGIN###
sonar.auth.saml.user.name: ###ZARF_VAR_SONARQUBE_IDAM_ATTR_NAME###
sonar.auth.saml.user.email: ###ZARF_VAR_SONARQUBE_IDAM_ATTR_EMAIL###
sonar.auth.saml.group.name: ###ZARF_VAR_SONARQUBE_IDAM_ATTR_GROUP###
istio:
enabled: true
sonarqube:
gateways:
- istio-system/tenant
injection: enabled
monitoring:
enabled: true
networkPolicies:
enabled: true
ingressLabels:
app: null
istio: null
networkPolicy:
enabled: true
additionalNetworkPolicys:
ingress:
- from:
- namespaceSelector:
matchLabels:
kubernetes.io/metadata.name: gitlab-runner-sandbox
podSelector: {}
ports:
- port: 9000
protocol: TCP
egress:
- to:
- namespaceSelector:
matchLabels:
kubernetes.io/metadata.name: gitlab
podSelector:
matchLabels:
app: webservice
- to:
- namespaceSelector:
matchLabels:
kubernetes.io/metadata.name: gitlab-runner-sandbox
podSelector: {}
podSelector:
matchLabels: {}
policyTypes:
- Egress
- Ingress
image:
pullPolicy: IfNotPresent
annotations:
bigbang.dev/istioVersion: ###ZARF_VAR_ISTIO_VERSION###
jdbcOverwrite:
enable: true
jdbcUrl: jdbc:postgresql://sonarqube-postgres.sonarqube.svc.cluster.local:5432/###ZARF_VAR_SONARQUBE_DB_NAME###
jdbcUsername: ###ZARF_VAR_SONARQUBE_DB_USERNAME###
jdbcSecretName: sonarqube-postgres
jdbcSecretPasswordKey: password
postgresql:
# Use internal database, defaults are fine
enabled: false
master:
podAnnotations:
bigbang.dev/istioVersion: ###ZARF_VAR_ISTIO_VERSION###
slave:
podAnnotations:
bigbang.dev/istioVersion: ###ZARF_VAR_ISTIO_VERSION###
postgresqlServer: sonarqube-postgres
existingSecret: "sonarqube-postgres"
existingSecretPasswordKey: "password"
postgresqlUsername: ###ZARF_VAR_SONARQUBE_DB_USERNAME###
postgresqlDatabase: ###ZARF_VAR_SONARQUBE_DB_NAME###
service:
port: 5432